Communication Module Filter Instruction for Malfunction Isolation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication networks in motor vehicles are vulnerable to malfunctions caused by hardware or software faults, including malicious software, which can impair other network elements and compromise security.

Innovation Solution

A communication module that inhibits or authorizes data transmission based on filter instructions, loaded from nonvolatile memory during startup and stored in a protected memory region, preventing manipulation by malicious software and defining a fixed communication pattern to isolate affected network elements.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If network elements are connected to bus systems to enhance availability and security, then communication capability is improved, but vulnerability to malfunctions and malicious software increases

Engineering Contradiction:
Improvecommunication availabilityVSAvoidmalfunction impact
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a connection node as an intermediary component between network elements and the communication network. This connection node physically and electrically independently monitors and controls data exchange, acting as a mediator that can read, modify, or inhibit data transmissions. The intermediary prevents direct malicious interactions between network elements while maintaining communication functionality, thus resolving the contradiction between communication availability and vulnerability to malfunctions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the communication system by separating the connection node from the network elements. The connection node is embodied as a physically independent entity that handles communication protocols and data filtering, while network elements focus on their specific functions. This segmentation isolates potential malfunctions to specific segments, preventing system-wide propagation and reducing the overall impact of harmful factors.

Inventive Principle:
Principle #1Segmentation

2Adaptability or versatility

If application software is allowed to execute on network elements, then functionality is improved, but security against malicious programs deteriorates

Engineering Contradiction:
Improvesoftware functionalityVSAvoidsecurity against attacks
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The connection node serves as a security intermediary that filters data transmissions from network elements before they reach other parts of the communication network. Even when malicious application software executes on network elements, the connection node monitors and can inhibit suspicious data patterns, preventing attacks while allowing legitimate software functionality to operate.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The connection node is pre-configured with filtering capabilities and security rules that prevent malicious actions before they can affect other network elements. By establishing these protective measures in advance, the system can block potential attacks from manipulated application software while maintaining normal operational versatility.

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentUS9479478B2Method for operating a communication module, and communication module
Publication Date: 2016.10.25 ROBERT BOSCH GMBH
  • US9479478B2 patent drawing
  • US9479478B2 patent drawing
  • US9479478B2 patent drawing

AI summary

A method for operating a communication module of a network element of a communication network as well as the communication module itself are described. The communication module is embodied for the transmission of data. The network element has a communication module and an interface for communication with further network elements of the communication network. The communication module is embodied in such a way that the transmission, via the interface, of data for transmission is inhibited or authorized on the basis of a filter instruction.