Garbled Circuit Linkage Value Generation for Vehicle Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing Security Credential Management System (SCMS) for vehicle-to-vehicle communication faces inefficiencies, high operational costs, and vulnerability to insider attacks due to its complex organizational structure and large-scale linkage value generation, which compromises privacy and security.
Innovation Solution
The implementation of garbled circuits for secure computation to generate linkage values, reducing the number of organizational entities and optimizing processing time, while maintaining privacy and enhancing resistance to malicious insiders, by using a single garbled circuit to produce multiple linkage values and storing linkage seeds in garbled form for efficient revocation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If multiple semi-autonomous organizations (PCA, RA, two LAs) participate in issuing certificates to provide privacy against insiders, then security and privacy are improved, but organizational complexity and operational costs increase significantly
Solution Approach 1:
The patent merges the functions of multiple semi-autonomous organizations (PCA, RA, and two LAs) into a single trusted authority structure. The garbled circuit protocol enables this consolidation by allowing the trusted authority to generate linkage values without exposing the linkage seed, thus maintaining privacy guarantees while reducing organizational complexity from four separate entities to one integrated system.
Solution Approach 2:
The garbled circuit protocol acts as an intermediary mechanism that enables the trusted authority to securely generate linkage values without directly exposing sensitive information. This intermediary computational protocol allows the system to maintain strong privacy guarantees against insiders while using a simplified organizational structure, as the garbled circuits mediate the secure generation process without requiring multiple separate organizations.
2Reliability
If a large number of pseudonym certificates with unique linkage values are issued to each vehicle to ensure privacy, then privacy protection is improved, but the computational overhead and processing time increase
Solution Approach 1:
The system performs preliminary action by pre-generating multiple linkage values for each vehicle in advance, before the vehicle actually needs them for authentication. The trusted authority generates batches of linkage values and stores them securely, so when a vehicle needs a linkage value for pseudonym certificate issuance, it can be quickly retrieved or generated from pre-computed data, significantly reducing processing time during actual authentication operations.
Solution Approach 2:
The patent changes the parameter of linkage value generation from individual on-demand computation to batch pre-computation. By generating linkage values in batches ahead of time and storing them securely, the system transforms the computational workload from frequent small-scale operations to less frequent large-scale batch operations, improving the time efficiency of individual certificate issuance while maintaining privacy through the use of garbled circuits for secure generation.
3Reliability
If four separate organizational entities are used to generate linkage values securely, then privacy against insiders is improved, but operational costs and system maintenance complexity increase
Solution Approach 1:
The patent merges the functions of four separate organizational entities (PCA, RA, and two LAs) into a single trusted authority that uses garbled circuit protocols to securely generate linkage values. This consolidation maintains strong privacy guarantees against insiders because the garbled circuits prevent the trusted authority from learning the linkage seed or individual linkage values, while dramatically reducing operational costs by eliminating the need to maintain and coordinate four separate organizations.
Solution Approach 2:
The patent replaces the mechanical/organizational system of multiple separate entities with a cryptographic mechanism (garbled circuit protocol). Instead of relying on organizational separation to ensure security and privacy, the system uses cryptographic primitives to achieve the same goals with a single trusted authority, thereby reducing operational complexity and cost while maintaining or improving security properties.
Data Source
AI summary
A method for producing linkage values to be contained within pseudonym digital certificates of a security credential management system for connected vehicles, including the following steps: providing a linkage value function that expresses linkage values as a function of a number of input parameters that include a linkage seed input from a pseudonym certificate authority processor entity and a plurality of inputs from a registration authority processor entity including a vehicle identifier and at least one index relating to a time period for the linkage value; producing a Boolean circuit representative of the function for a particular combination of the number of input parameters; and executing a garbled circuit protocol on the Boolean circuit between the registration authority processor entity and the pseudonym certificate authority processor entity, whereby the pseudonym certificate authority processor entity privately derives a linkage value for the particular combination of the number of input parameters.


