Method and apparatus for generating a digital access key for a motor vehicle

By receiving vehicle identification information and generating information through user terminal equipment, the problem of early identification during the generation of vehicle digital access keys in the existing technology is solved, and the targeted and security improvements of vehicle functions are achieved.

CN122458017APending Publication Date: 2026-07-24BAYERISCHE MOTOREN WERKE AG
View PDF 1 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
BAYERISCHE MOTOREN WERKE AG
Filing Date
2025-09-23
Publication Date
2026-07-24

AI Technical Summary

Technical Problem

In existing technologies, during the process of generating digital access keys for motor vehicles, smart devices cannot identify motor vehicles and generate initial keys in advance, resulting in insufficient targeting of function triggers and inadequate security.

Method used

The system receives vehicle identification information from a remote computing device via a user terminal device, calls on Internet resources to generate information and finally generates a digital access key, uses the vehicle identification information to identify vehicles in the early stages, and provides targeted information during the generation process to trigger vehicle functions.

Benefits of technology

It enables early identification of motor vehicles and generation of initial digital access keys, improving the targeting and security of function triggering, avoiding erroneous or forged references, and ensuring the reliability of key generation.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122458017A_ABST
    Figure CN122458017A_ABST
Patent Text Reader

Abstract

The invention relates to a method and an apparatus for generating a digital access key for a motor vehicle, wherein the method comprises the following steps: receiving identification information for a digital access key for a motor vehicle (1) on a user terminal device (20) from a first remote computing apparatus (4), the identification information comprising a reference to an internet resource, the reference to the internet resource comprising motor vehicle identification information for the motor vehicle (1); calling the internet resource, comprising providing the motor vehicle identification information from the user terminal device (20) to a second remote computing apparatus (5); generating generation information for a digital access key for the motor vehicle (1) on the basis of the motor vehicle identification information; and generating the digital access key for the motor vehicle (1) on the basis of the generation information.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to a method and apparatus for generating digital access keys for motor vehicles. Background Technology

[0002] Existing solutions enable access to, and in particular unlocking, vehicles using so-called smart devices. This typically occurs after a digital access key has been set on the smart device.

[0003] For example, a method for operating an authorization device for a vehicle is known from document DE 10 2015 223 342 A1, the authorization device being configured to communicate with the vehicle for the first time and having a positioning unit configured to determine the current position of the authorization device. Summary of the Invention

[0004] The objective of this invention is to provide an improved method and an improved apparatus.

[0005] According to the present invention, this task is accomplished by the technical solution of the independent claims. Advantageous embodiments of the present invention are the technical solutions of the dependent claims and the description.

[0006] The method for generating a digital access key for a motor vehicle according to the present invention includes the following steps: receiving identification information for a digital access key for a motor vehicle from a first remote computing device on a user terminal device, the identification information including a reference to an Internet resource, the reference to the Internet resource including motor vehicle identification information for the motor vehicle; invoking the Internet resource, including providing the motor vehicle identification information from the user terminal device to a second remote computing device; generating generation information for a digital access key for a motor vehicle based on the motor vehicle identification information and generating a digital access key for a motor vehicle based on the generation information.

[0007] The method according to the invention is particularly useful for identifying a motor vehicle as early as possible during the generation of a digital access key using motor vehicle identification information and providing that information to a user terminal device so that it can be used selectively on both the user terminal device and other devices, and especially for additional user terminal devices, during further generation processes. In the following, the term "information" is used synonymously in both the singular and plural forms and may include only one piece of information.

[0008] User terminal equipment (also referred to as user equipment) is a device or apparatus configured to receive operational inputs, user inputs and / or user instructions and to communicate with a motor vehicle, so as to provide such operational inputs to the motor vehicle and thereby trigger functions on the motor vehicle.

[0009] User terminal equipment, particularly portable or mobile devices distinct from motor vehicles, can be configured as so-called smart devices—that is, devices equipped with at least one processor, such as smartphones, phablets or tablets, smartwatches, smart glasses, and / or wearable devices. These devices also provide other functions, such as providing calling, internet browsing, or messaging services via applications or programs. User terminal equipment is also specifically configured to receive, process, and / or invoke references to internet resources and / or remote computing devices, as will be explained further below.

[0010] User terminal equipment is particularly configured to trigger or execute one or more functions related to one or more motor vehicles, such as locking and / or unlocking of one or more covers (e.g., doors) and especially the active opening and / or closing of one or more such covers, as well as the release of anti-theft locks, starting of the engine and / or continued movement of the motor vehicle.

[0011] This function, or interaction with a motor vehicle, especially the function or interaction that enables access or control and / or movement of the vehicle, can also be referred to as a secure and / or protected function and is supported or implemented, particularly through a security module in or on a user terminal device. This security module may include not only hardware components, such as in the form of a secure processor and / or secure storage area, but also software components, such as one or more applications, uses, or programs that work together.

[0012] For this purpose, the user terminal device requires a digital access key, but this digital access key is not yet available at the start of the method, at least not on the user terminal device, particularly because the digital access key has not been generated and / or has not yet been generated. The method according to the invention aims to generate, in particular, an initial digital access key for the vehicle. This digital access key can be based on and / or use such a system, in particular, an asymmetric encryption system, where both the vehicle and the user terminal device have private and public keys constructed for mutual authorization or legitimation. The digital access key may also contain other information, which will be described below.

[0013] In particular, this method generates the original or initial digital access key for the vehicle. This process can also be called owner pairing. The user terminal device (also called the owner device) is assigned to the same user or owner, especially as with the vehicle.

[0014] Therefore, the user terminal device receives identification information for the digital access key used for the motor vehicle from the first remote computing device.

[0015] The first remote computing device (also referred to as the first computing device and especially as the motor vehicle management device) is constructed herein separately from, independently of, and at a distance from the motor vehicle and user terminal equipment. The first remote computing device may include one or more servers, which are also partially or completely organized in the cloud. The first remote computing device may, in particular, be operated by the manufacturer and / or service provider of the motor vehicle and is specifically used solely for generating and / or managing one or more digital access keys for one or more motor vehicles.

[0016] Communication between the user terminal equipment and the first remote computing device can be conducted, in particular, via one or more wireless communication protocols or standards, especially far-field communication protocols, such as WLAN or WIFI and / or mobile radio (especially 3G, 4G, 5G, etc.). Identification information is sent via email, SMS, messaging, and / or push notifications (e.g., in applications).

[0017] Here, receiving identification information can be the first step of the method and, in particular, trigger the method. Alternatively, a request to generate information can precede the receipt of identification information, and this request triggers the method. This request can be triggered, for example, by the user and / or customer advisor or service personnel, to generate, in particular, an initial digital access key.

[0018] The generation request may be provided to the first remote computing device by the first user terminal device or by another device, especially authorized for this purpose. The generation request may contain further information, such as identifying the user and / or user terminal device, such as mobile phone number, username and / or email address, and provide identification information in response.

[0019] The identification information herein includes references to Internet resources, including vehicle identification information for motor vehicles.

[0020] Motor vehicle identification information (also referred to as motor vehicle information) includes one or more pieces of information that uniquely identify a motor vehicle. This information may, for example, include a vehicle identification number (VIN) or information derived from it. Alternatively, motor vehicle identification information may not include an indication of the VIN, but rather information managed or stored solely for this purpose. Motor vehicle identification information is stored, in particular, on or therein on a first telecomputing device.

[0021] Here, vehicle identification information is incorporated into or integrated into a reference to an Internet resource. This can be done in plaintext, encrypted, or not in plaintext (e.g., as a hash). In particular, vehicle identification information is incorporated or added to the reference as a parameter. This reference (also referred to as a link or Uniform Resource Locator (URL)) can include 4 to 16 characters, especially 8 characters, and even more specifically exactly 8 characters. The reference may also include further information, at least including a reference to the Internet resource itself, such as an Internet address or webpage address and / or domain name. The reference may also include other information, such as version, query, especially indications of the technology or mode used in key generation, and / or other information, such as control parameters used to invoke the Internet resource. The reference also includes, in particular, inspection information, as will be further described below.

[0022] In particular, URL references to internet resources can be combined as shown in the table below, and the references can be combined in the order described in the table from top to bottom (from left to right) (optional components can be omitted):

[0023]

[0024]

[0025] In another step, a previously received internet resource is invoked via a user terminal device. Through this invocation, the vehicle identification information contained in the internet resource is provided by the user terminal device to the second remote computing device. Specifically, the internet resource or a reference to it is directed to the second remote computing device.

[0026] The second remote computing device (also referred to as a second computing device and, in particular, a user terminal equipment management device) is constructed differently from, separately from, and spaced apart from the vehicle and user terminal equipment, and is constructed, in particular, substantially like the first remote computing device. In particular, the first and second computing devices can also be the same computing device. Alternatively, the second computing device is constructed differently from and / or separately from the first computing device. The second remote computing device can, in particular, be operated by the manufacturer and / or service provider of the user terminal equipment and is specifically used only for generating and / or managing one or more digital access keys for one or more user terminal equipment.

[0027] Then, generation information for a digital access key for the motor vehicle is created based on the vehicle identification information. This generation information is the information and / or data required to generate such a digital access key for the motor vehicle. However, this generation information is not final and may be generated, derived, and / or detected in further stages of the method, which is necessary for the final generation of one, especially an initial and / or additional, digital access key.

[0028] This generated information, particularly certificate information, especially the so-called instance CA certificate, can also be referred to as the original certificate, and can be used to sign one or more, particularly additional, digital access keys in further processes of the method. In other words, vehicle identification information is incorporated or embedded into such a certificate, so that the vehicle identification information is contained therein.

[0029] The generated information can be generated and / or stored on both the user terminal device and the second remote computing device. In particular, the generated information is generated on the second remote computing device and stored there, as well as provided to the user terminal device, based on vehicle identification information previously provided by the user terminal device.

[0030] Then, a digital access key for the motor vehicle is generated based on the generated information. Specifically, an initial digital access key for the motor vehicle is created for the user terminal device based on the generated information, which includes motor vehicle identification information. This is particularly important when the user terminal device uses the previously provided generated information and, in particular, the original certificate.

[0031] By using the generated digital access key, the functions of the vehicle can then be triggered via a user terminal device, such as locking and / or unlocking the vehicle as described above.

[0032] The method according to the invention enables the identification of motor vehicles using vehicle identification information as early as possible during the generation of digital access keys, and provides this information to the user terminal device so that it can be used in a targeted manner in further generation processes.

[0033] According to one extended approach, the identification information also includes inspection information, and the method further includes a step of inspecting the identification information based on the inspection information.

[0034] The verification information referred to here is information that enables a third party to verify whether the identification information, and in particular the references to Internet resources, is correct and authentic, or whether such information is incorrect, forged, and / or altered. This verification information is then added, in particular, as a further parameter to the references to the Internet resources.

[0035] This check information is typically derived from one or more identification information itself, as will be explained further below. The check information is, in particular, a checksum, which is generated and / or created and / or checked, especially by Cyclic Redundancy Check (CRC). This specifically involves methods according to CRC-8, CRC-16, or CRC-32 standards. In this case, the check information is, for example, a polynomial with 8, 16, or 32 bits.

[0036] This extended solution enables the verification of the accuracy and authenticity of identification information, particularly references to internet resources, and whether such information is incorrect, forged, and / or altered. This extended solution is particularly reliable.

[0037] According to one extended scheme, the step of calling the Internet resource is only executed if the check is successful.

[0038] Internet resources will only be invoked if the information, especially the checksum, is checked and deemed correct. Conversely, if the information is deemed incorrect, i.e., the check fails, internet resources will not be invoked.

[0039] Alternatively or additionally, vehicle identification information will only be provided from the user terminal device to the second remote computing device if the check is successful and / or the checksum is checked and deemed correct; otherwise, it will not be provided.

[0040] This extended scheme avoids opening incorrect and / or forged references, and in particular, prevents the provision of vehicle identification information to the wrong location. This extended scheme is particularly reliable.

[0041] According to one extended approach, the inspection information is based on vehicle identification information.

[0042] The inspection information here is formed or derived from at least the vehicle identification information. This is especially true when generating checksums with or without consideration of vehicle identification information. Furthermore, the inspection information is formed or derived from internet resources based on complete references to those resources, and this inspection information is subsequently added to those internet resources.

[0043] This extended approach enables highly accurate and cost-effective verification of the correctness of identification information or references.

[0044] According to one extended scheme, generating the information includes forming a hash value based on vehicle identification information.

[0045] According to this extended scheme, a hash value is generated when using vehicle identification information.

[0046] Other information can also be incorporated into the hash value formation, especially the user's terminal device, the user's or the user's associated account identification information, and / or the so-called salt (Salz), i.e., a random string. This is especially true when using a secure hash algorithm (SHA), particularly SHA256.

[0047] Then, specifically, this hash value can be added to the generated information and / or generated information based on the hash value. Specifically, the hash value is added to the original certificate. This hash value can also be called the account information hash. The hash value is particularly generated and / or added to the original certificate on a second remote computing device.

[0048] This extended scheme enables the generation of digital access keys with exceptional reliability.

[0049] According to one extension scheme, a digital access key is generated based on the hash value.

[0050] Therefore, a digital access key is created using the previously generated hash value. In particular, the hash value can be used to verify the generated digital access key.

[0051] This extended scheme enables the generation of digital access keys with exceptional reliability.

[0052] According to one extension scheme, a digital access key is generated for a user terminal device that is different from the user terminal device.

[0053] Specifically, two digital access keys are generated at this stage. First, as previously described, a first original digital access key is generated for the first user terminal device. Later, a second additional digital access key is generated for the second user terminal device, which differs from the previously described first user terminal device but may be built and designed in the same or similar manner as described above regarding the first user terminal device. The second user terminal device can here be assigned to the user of the first user terminal device or to another second user.

[0054] Specifically, second identification information for a second digital access key can be provided from the first user terminal device to the second user terminal device. This second identification information includes vehicle identification information and a reference to an Internet resource pointing to the second computing device. When this reference is subsequently invoked and the vehicle identification information is provided from the second user terminal device to the second remote computing device, the correctness of the reference or request can be checked on the second remote computing device using the vehicle identification information stored there.

[0055] This extended scheme enables the generation of digital access keys for second user terminal devices with exceptional reliability.

[0056] According to another aspect, an apparatus for generating digital access keys for motor vehicles is proposed.

[0057] The apparatus herein includes mechanisms configured to perform the method according to any one of the foregoing embodiments. In particular, the apparatus includes one or more processor devices for performing the described method. The apparatus also includes, in particular, a memory storing code, especially non-volatile code, which, when executed by the processor device, causes the processor device to perform the described method.

[0058] In particular, the device may include at least a user terminal device, one or more remote computing devices, especially a first and / or a second remote computing device and / or a motor vehicle, forming a system with and / or working together with it to perform the above-described method.

[0059] Regarding the advantages of the apparatus and its extensions, and their advantages, refer to the aforementioned advantages and extensions of the method.

[0060] Other features of the invention are derived from the claims, drawings, and description of the drawings. The features and combinations thereof mentioned above in the specification, as well as those mentioned below in the description of the drawings and / or shown separately in the drawings, can be used not only in the combinations given separately, but also in other combinations or individually. Attached Figure Description

[0061] The present invention will now be described in detail with reference to preferred embodiments and the accompanying drawings. The drawings are as follows:

[0062] Figure 1 A schematic perspective view showing one embodiment of a method and apparatus for generating digital access keys for motor vehicles. Detailed Implementation

[0063] Figure 1 A schematic perspective view showing one embodiment of a method and apparatus 10 for generating a digital access key for a motor vehicle 1.

[0064] The apparatus 10 includes a first user terminal device 20 for a first user 2 and optionally a first computing device 4 and / or a second computing device 5 and / or a second user terminal device 30 for a second user 3 and / or communicatively connected thereto. The apparatus 10 is configured to perform or at least cause the method steps described below.

[0065] The device 10 is first configured to receive identification information for the digital access key for the motor vehicle 1 from the first remote computing device 4 on the user terminal device 20.

[0066] The identification information herein includes references to Internet resources, which include vehicle identification information for motor vehicle 1.

[0067] The identification information also includes inspection information based on vehicle identification information.

[0068] Device 10 is also configured to examine identification information, and in particular the references, based on the examination information.

[0069] Device 10 is also configured to invoke Internet resources and thereby provide vehicle identification information from user terminal device 20 to second remote computing device 5, particularly only when the check is successful.

[0070] Device 10 also constructs generation information for generating a digital access key for vehicle 1 based on vehicle identification information. Generating the generation information also includes forming a hash value based on the vehicle identification information.

[0071] Device 10 also constructs a digital access key for motor vehicle 1 based on the generated information.

[0072] The digital access key can be generated here for the first user terminal device 20 and / or the second user terminal device 30.

[0073] List of reference numerals

[0074] 1 motor vehicle

[0075] 2 First User

[0076] 3 Second User

[0077] 4 First Remote Computing Device

[0078] 5 Second remote computing device

[0079] 10 devices

[0080] 20 First User Terminal Equipment

[0081] 30 Second User Terminal Equipment

Claims

1. A method for generating a digital access key for a motor vehicle (1), comprising: - Receive identification information for a digital access key for a motor vehicle (1) from a first remote computing device (4) on a user terminal device (20), the identification information including a reference to an Internet resource, the reference to the Internet resource including motor vehicle identification information for the motor vehicle (1); - Invoking Internet resources, including providing the vehicle identification information from the user terminal device (20) to the second remote computing device (5); - Generate information for generating a digital access key for the motor vehicle (1) based on the motor vehicle identification information; and - Generate a digital access key for the motor vehicle (1) based on the generated information.

2. The method according to claim 1, wherein, The identification information also includes inspection information, and the method further includes: - Check the identification information based on the inspection information.

3. The method according to claim 2, wherein, The calling step is executed only if the check is successful.

4. The method according to claim 2 or 3, wherein, The inspection information is based on the vehicle identification information.

5. The method according to any one of the preceding claims, wherein, The generated information includes forming a hash value based on the vehicle identification information.

6. The method according to claim 5, wherein, The digital access key is generated based on the hash value.

7. The method according to any one of the preceding claims, wherein, The digital access key is generated for a user terminal device that is different from the user terminal device.

8. An apparatus for generating a digital access key for a motor vehicle, wherein, The apparatus has a mechanism for performing the method according to any one of the preceding claims.

Citation Information

Patent Citations

  • Method of operating an authorization device for a vehicle, authorization device for a vehicle, method of operating a system for authorizing an operation of a vehicle and system for authorizing an operation of a vehicle

    DE102015223342A1