On-Vehicle Gateway Device Policy Management for Network Safety

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing vehicle gateway devices fail to effectively manage the co-working of information and control systems, particularly in ensuring compatibility and safety during changes in hardware and software versions, and do not adequately address abnormalities or stability issues in the control system network.

Innovation Solution

An on-vehicle gateway device with integrated access control units, monitoring and configuration management units, and policy update mechanisms that monitor and manage data flows between information and control systems, ensuring compatibility and safety by intercepting or converting access as needed and updating policies based on changes in system configurations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If gateway device allows information flow between information system and control system, then system functionality and versatility are improved, but system reliability and safety deteriorate due to potential adverse effects on vehicle control

Engineering Contradiction:
Improvesystem functionalityVSAvoidvehicle control safety
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The gateway device acts as an intermediary between the information system network and control system network, selectively allowing or blocking information flows based on predefined policies. This mediator structure enables the system to gain versatility from information system integration while maintaining control system safety through controlled access, resolving the contradiction between functionality and reliability.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The gateway device dynamically changes access control parameters (allow/block status) based on the operational state of the control system network. When the control system is in a stable state, more permissive access parameters are applied to enhance functionality. When instability is detected, access parameters are tightened to protect safety, thus resolving the contradiction through dynamic parameter adjustment.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If gateway device implements strict access control to prevent adverse effects, then system reliability is improved, but system adaptability and compatibility with different hardware/software versions deteriorate

Engineering Contradiction:
Improvecontrol system stabilityVSAvoidhardware/software compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The access control policies in the gateway device are dynamic rather than static, automatically adapting to changes in hardware and software configurations. The gateway monitors system states and updates access control decisions in real-time, enabling the system to maintain both reliability through active protection and adaptability through automatic policy adjustment to new configurations.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The gateway device implements feedback mechanisms that continuously monitor the operational state of both networks and use this information to adjust access control policies. This feedback loop allows the system to learn from actual system behavior and adapt access rules to accommodate different hardware and software versions while maintaining stability, resolving the contradiction between strict control and adaptability.

Inventive Principle:
Principle #23Feedback

3Reliability

If gateway device continuously monitors and manages data flows, then system reliability and safety are improved, but device complexity and processing requirements increase

Engineering Contradiction:
Improvesystem stabilityVSAvoidgateway processing complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The gateway device performs preliminary actions by pre-defining access control policies and thresholds before actual data flow occurs. This advance preparation allows the gateway to make rapid decisions during operation without complex real-time analysis, reducing processing complexity while maintaining continuous monitoring and protection capabilities.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The gateway uses parameter-based monitoring that tracks simplified system state indicators rather than analyzing every data flow detail. By changing monitoring parameters to reflect overall system health rather than individual packet analysis, the gateway achieves continuous reliability monitoring with reduced processing complexity.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS8693346B2On-vehicle gateway device, method for controlling an on-vehicle gateway device, connection device and connection control method
Publication Date: 2014.04.08 ASTEMO LTD
  • US8693346B2 patent drawing
  • US8693346B2 patent drawing
  • US8693346B2 patent drawing

AI summary

An on-vehicle gateway device connected to an information system network and a control system network of a vehicle executes monitoring the status of an information system via an information system access circuit taking charge of message transmission and reception to and from the information system network, and an information system management step to manage information acquired by the information system monitoring, monitoring the status of a control system via a control system access circuit taking charge of message transmission and reception to and from the control system network, and a control system management step to manage information acquired by the control system monitoring, managing policies for access control by the access control circuit controlling data flows between the information system access circuit and the control system access circuit, and determining whether or not to update the policies managed by policy management and to update the policies.