Encrypted GNSS Signal Simulation via Smart Card Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Standard computers used as GNSS simulators are vulnerable to security flaws, such as data copying and algorithm de-compilation, which compromise the security of protected cryptographic algorithms and secrets required for generating encrypted GNSS codes.
Innovation Solution
A method involving a simulator computing device that transmits cryptographic variable input to a detachably coupled smart card, where protected cryptographic algorithms are executed to generate cryptographic products, which are then used to produce an encrypted signal simulation, thereby physically isolating sensitive data from the simulator device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If standard computers are used to run simulation programs, then simulation functionality is achieved, but security vulnerabilities arise allowing data copying and algorithm de-compilation
Solution Approach 1:
The system divides the simulation functionality into two separate components: a standard computer running the simulation program and a secure smart card storing cryptographic secrets. This segmentation allows the simulation to run on easy-to-operate standard hardware while security-critical operations are isolated in the protected smart card environment, preventing both data copying and algorithm de-compilation
Solution Approach 2:
A cryptographic interface card (CIC) acts as an intermediary between the standard computer and the secure smart card. The CIC manages cryptographic operations by receiving requests from the simulation program, executing protected algorithms on the smart card, and returning results. This intermediary enables standard computers to perform secure simulations without directly accessing sensitive cryptographic materials
2Device complexity
If cryptographic algorithms and secrets are stored on the simulator computer, then simulation execution is simplified, but security flaws enable unauthorized access and data extraction
Solution Approach 1:
The system extracts cryptographic secrets (private keys, cryptographic constants) and protected algorithms from the simulator computer and stores them exclusively on the secure smart card. This extraction eliminates the security vulnerability of having sensitive data on the standard computer, while the simulation program can still execute by receiving cryptographic products from the smart card through the CIC interface
Solution Approach 2:
The smart card functions as a disposable or replaceable security token that can be inserted and removed as needed. If compromised or expired, the card can be replaced without affecting the simulation software or hardware infrastructure, providing a cost-effective security solution compared to securing the entire computer system
Data Source
AI summary
A method, non-transitory computer readable medium, and device that transmits a cryptographic variable input to a detachably coupled smart card. Execution of at least one of protected cryptographic algorithm operation by the smart card which requires the cryptographic variable input and a cryptographic constant input stored on the smart card to generate one or more cryptographic products is requested. The one or more generated cryptographic products from the smart card are received. An encrypted signal simulation based on execution of a simulator using the received one or more generated cryptographic products is generated and is output.


