Vehicular Digital Key Revocation for Guest Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing vehicular digital key systems do not provide a convenient method for owners to delete guest keys issued to mobile terminals, limiting user convenience and control over access to their vehicles.

Innovation Solution

A vehicular digital key system and method that allows owners to select and delete guest keys from their mobile terminals via a guest deletion screen, with the server transmitting deletion instructions to both the guest terminal and the in-vehicle authentication ECU, ensuring secure and convenient key management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If guest keys are distributed to multiple mobile terminals for vehicle access, then user convenience is improved, but security control and key management become more complex

Engineering Contradiction:
Improvevehicle access convenienceVSAvoidkey management complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent introduces a server as an intermediary between the owner terminal and guest terminals. The server receives deletion requests from the owner terminal, manages the key deletion process, and coordinates with both the owner terminal and guest terminals to remove keys from the authentication ECU. This intermediary architecture simplifies the key management complexity for end users while maintaining security control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If owners can delete guest keys remotely via mobile terminal, then ease of operation is improved, but system complexity increases

Engineering Contradiction:
Improveremote key deletion convenienceVSAvoiddeletion system complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent combines multiple functions into the server: receiving deletion requests, managing key data, coordinating communication between terminals, and controlling key deletion from the authentication ECU. By merging these functions into a centralized server, the system provides remote deletion convenience to users while consolidating system complexity in a dedicated component rather than distributing it across multiple devices.

Inventive Principle:
Principle #5Merging (Combining)

3Adaptability or versatility

If multiple terminals store guest key data, then access flexibility is improved, but security risks increase

Engineering Contradiction:
Improveaccess flexibilityVSAvoidsecurity control
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements a feedback mechanism where the owner terminal can request key deletion at any time, and the server responds by coordinating the removal of keys from all guest terminals and the authentication ECU. This feedback loop ensures that security control is maintained dynamically, allowing flexible access when needed while providing rapid security response when key revocation is required.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS20240227733A1Vehicular digital key system, vehicular digital key management method, vehicular device, and mobile terminal
Publication Date: 2024.07.11 DENSO CORP
  • US20240227733A1 patent drawing
  • US20240227733A1 patent drawing
  • US20240227733A1 patent drawing

AI summary

An owner terminal is configured so that a deletion target key, which is a guest key to be deleted, can be selected via a guest list screen. When the key to be deleted is selected, the owner terminal sends a signal requesting the deletion of the guest key to the server. The server deletes the key data from the corresponding terminal by transmitting a deletion instruction command to the mobile terminal corresponding to the key to be deleted. Further, the server transmits a data set for deleting the key to be deleted from an authentication ECU to each of the corresponding terminal and the owner terminal. When the data set is transferred from the corresponding terminal or the owner terminal to the authentication ECU by short-range communication, the key to be deleted is also deleted from the authentication ECU.