Certified On-Board Software Loading via Secure Wireless Link
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional software updates in highly regulated environments, such as commercial airplanes, require human intervention for activation, which is inefficient and limited by the availability of human resources, leading to latency and operational inconsistencies.
Innovation Solution
A system and method for remotely uploading and activating executable files in a regulated asset using a secure wireless link, incorporating encryption and load assurance checks to ensure the software originates from a trusted source, enabling autonomous execution without human intervention.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If human resources physically visit each airplane to manually install or activate software, then software security and control are ensured, but the update process becomes time-consuming and limited by human availability
Solution Approach 1:
The system enables self-service by allowing the data update module on the asset to autonomously verify credentials, perform load assurance checks, and activate software updates without human intervention. The automated authentication and verification processes replace manual human operations while maintaining security requirements.
Solution Approach 2:
An automated update management system acts as an intermediary between the software distribution source and the asset. This intermediary handles credential verification, load assurance checks, and activation commands, eliminating the need for human physical presence while ensuring controlled and secure updates.
2Productivity
If multiple human resources are deployed to update a fleet of airplanes, then update coverage increases, but operational complexity and coordination requirements increase
Solution Approach 1:
The update management system provides universal functionality by handling all update operations through a single automated platform that can service multiple assets simultaneously. The system performs credential verification, load assurance checks, and activation commands across the entire fleet through standardized automated processes, eliminating the need for multiple specialized human operators.
Solution Approach 2:
The patent replaces the mechanical system of human physical deployment and manual operations with an automated electronic system. The update management system transmits activation commands and performs verification processes electronically, substituting human physical presence and manual coordination with automated digital processes that can scale across the entire fleet without proportional increases in complexity.
3Measurement precision
If human resources are required to verify and activate software updates, then update accuracy and security are maintained, but the process cannot be completed remotely or asynchronously
Solution Approach 1:
The data update module on the asset performs self-verification by autonomously executing credential verification and load assurance checks. This self-service capability maintains verification accuracy through automated validation processes while eliminating the need for human physical presence, allowing updates to be completed remotely and asynchronously.
Solution Approach 2:
The system implements automated feedback mechanisms where the data update module verifies received credentials and load assurance information, then autonomously determines whether to proceed with activation. This feedback loop maintains verification accuracy through systematic validation while enabling remote operation, as the system automatically responds to verification results without requiring human interpretation or decision-making.
Data Source
AI summary
Provided is a method for remotely uploading certified software from a source to a data update module on an asset via a wireless communications link. The method includes encrypting the communications link between the source and the data update module to form a secure tunnel and verifying credentials of the source via the data update module when a software update file is transmitted. A load assurance check is performed on a portion of the transmitted update file to confirm integrity of the transmitted file when the credentials of the source are verified. The uploading of the certified software is immediately activated when the file integrity is verified, the activating occurring automatically and being devoid of human intervention.


