Garbled Circuit Linkage Value Generation for Vehicle Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing Security Credential Management System (SCMS) for vehicle-to-vehicle communication faces inefficiencies, high operational costs, and vulnerability to insider attacks due to its complex organizational structure and large-scale linkage value generation, which compromises privacy and security.

Innovation Solution

The implementation of garbled circuits for secure computation to generate linkage values, reducing the number of organizational entities and optimizing processing time, while maintaining privacy and enhancing resistance to malicious insiders, by using a single garbled circuit to produce multiple linkage values and storing linkage seeds in garbled form for efficient revocation.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple semi-autonomous organizations (PCA, RA, two LAs) participate in issuing certificates to provide privacy against insiders, then security and privacy are improved, but organizational complexity and operational costs increase significantly

Engineering Contradiction:
Improvesecurity and privacyVSAvoidorganizational complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges the functions of multiple semi-autonomous organizations (PCA, RA, and two LAs) into a single trusted authority structure. The garbled circuit protocol enables this consolidation by allowing the trusted authority to generate linkage values without exposing the linkage seed, thus maintaining privacy guarantees while reducing organizational complexity from four separate entities to one integrated system.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The garbled circuit protocol acts as an intermediary mechanism that enables the trusted authority to securely generate linkage values without directly exposing sensitive information. This intermediary computational protocol allows the system to maintain strong privacy guarantees against insiders while using a simplified organizational structure, as the garbled circuits mediate the secure generation process without requiring multiple separate organizations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a large number of pseudonym certificates with unique linkage values are issued to each vehicle to ensure privacy, then privacy protection is improved, but the computational overhead and processing time increase

Engineering Contradiction:
Improveprivacy protectionVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary action by pre-generating multiple linkage values for each vehicle in advance, before the vehicle actually needs them for authentication. The trusted authority generates batches of linkage values and stores them securely, so when a vehicle needs a linkage value for pseudonym certificate issuance, it can be quickly retrieved or generated from pre-computed data, significantly reducing processing time during actual authentication operations.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent changes the parameter of linkage value generation from individual on-demand computation to batch pre-computation. By generating linkage values in batches ahead of time and storing them securely, the system transforms the computational workload from frequent small-scale operations to less frequent large-scale batch operations, improving the time efficiency of individual certificate issuance while maintaining privacy through the use of garbled circuits for secure generation.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If four separate organizational entities are used to generate linkage values securely, then privacy against insiders is improved, but operational costs and system maintenance complexity increase

Engineering Contradiction:
Improveprivacy against insidersVSAvoidoperational cost
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent merges the functions of four separate organizational entities (PCA, RA, and two LAs) into a single trusted authority that uses garbled circuit protocols to securely generate linkage values. This consolidation maintains strong privacy guarantees against insiders because the garbled circuits prevent the trusted authority from learning the linkage seed or individual linkage values, while dramatically reducing operational costs by eliminating the need to maintain and coordinate four separate organizations.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent replaces the mechanical/organizational system of multiple separate entities with a cryptographic mechanism (garbled circuit protocol). Instead of relying on organizational separation to ensure security and privacy, the system uses cryptographic primitives to achieve the same goals with a single trusted authority, thereby reducing operational complexity and cost while maintaining or improving security properties.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11018875B2Method and system for secure connected vehicle communication
Publication Date: 2021.05.25 ONBOARD SECURITY INC
  • US11018875B2 patent drawing
  • US11018875B2 patent drawing
  • US11018875B2 patent drawing

AI summary

A method for producing linkage values to be contained within pseudonym digital certificates of a security credential management system for connected vehicles, including the following steps: providing a linkage value function that expresses linkage values as a function of a number of input parameters that include a linkage seed input from a pseudonym certificate authority processor entity and a plurality of inputs from a registration authority processor entity including a vehicle identifier and at least one index relating to a time period for the linkage value; producing a Boolean circuit representative of the function for a particular combination of the number of input parameters; and executing a garbled circuit protocol on the Boolean circuit between the registration authority processor entity and the pseudonym certificate authority processor entity, whereby the pseudonym certificate authority processor entity privately derives a linkage value for the particular combination of the number of input parameters.