The invention relates to the technical field of
information security, and discloses a Bootloader signature
verification method based on
information security, which is characterized in that a security storage module is integrated in a vehicle-mounted instrument
system and is used for storing public key and
session key information; a Diffie-Hellman
algorithm operation environment is deployed, so that two communication parties support a
key exchange protocol, an initial key pair is generated in advance, the key pair comprises a public key and a private key, the public key is stored in a secure
storage area, and the private key is securely kept by a
server side; configuring a
firmware segmentation rule, and writing the
firmware segmentation rule into a
system signature
verification program; and defining signature
verification failure triggering conditions and response measures. According to the Bootloader signature verification method based on
information security, firstly,
transmission security is guaranteed through a
session key, then segmented signature verification is executed to ensure the legality of
firmware, and finally, the key is updated to prepare for next signature verification. Through
time sequence cooperation of key dynamic and signature verification segmentation,
full life cycle protection of security verification-installation-key refreshing in the vehicle-mounted instrument firmware updating process is realized, and the anti-
attack ability and updating efficiency of the
system are improved.