Gateway Security Circuit Isolating Vehicle Domains

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

As vehicles transition to autonomous driving, the increasing data transmission between internal and external vehicle domains via Ethernet networks poses a risk of unauthorized access, potentially leading to loss of vehicle control and safety hazards due to inadequate network security protection.

Innovation Solution

A gateway security circuit with an intranet and external domain controller, along with a communication module that encrypts and decrypts data, and a heat dissipation module to maintain circuit stability, isolates data transmission between domains, reducing the risk of intrusion and ensuring secure communication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If data transmission between internal and external vehicle domains is enabled via Ethernet network, then communication ability and interconnection ability are enhanced, but network security protection is insufficient leading to risk of unauthorized access

Engineering Contradiction:
Improvecommunication abilityVSAvoidnetwork security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

A gateway device is introduced as an intermediary between the internal vehicle domain and external network. The gateway includes a communication module that encrypts data before transmission and a heat dissipation module that maintains operational stability. This intermediary structure enables enhanced communication capability while providing security protection through encryption and reliable operation management.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If encryption and decryption operations are performed by communication module, then data transmission security is improved, but heat generation increases affecting circuit stability

Engineering Contradiction:
Improvedata transmission securityVSAvoidcircuit temperature
Core Design Contradiction:
ReliabilityVSTemperature

Solution Approach 1:

A heat dissipation module is introduced as an intermediary thermal management system between the encryption/decryption operations and the gateway circuit. This module includes a heat dissipation chamber positioned adjacent to the communication module, providing a dedicated thermal management path that allows secure encryption operations while maintaining circuit stability through active heat dissipation.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Stability of the object's composition

If gateway device with heat dissipation module is deployed, then circuit stability is maintained, but device complexity increases

Engineering Contradiction:
Improvecircuit stabilityVSAvoidgateway device structure
Core Design Contradiction:
Stability of the object's compositionVSDevice complexity

Solution Approach 1:

The heat dissipation module is merged with the existing gateway device structure. The heat dissipation chamber is integrated into the gateway housing, and the communication module is positioned to utilize this integrated thermal management structure. This merging approach maintains circuit stability while minimizing the increase in device complexity through unified design.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS20240233451A1Gateway safety circuit, gateway safety device, and vehicle employing device
Publication Date: 2024.07.11 FUTAIJING PRECISION ELECTRONICS (YANTAI) CO LTD
  • US20240233451A1 patent drawing
  • US20240233451A1 patent drawing
  • US20240233451A1 patent drawing

AI summary

A gateway security circuit for isolating an internal vehicle domain and an external vehicle domain comprises a first communication interface, a second communication interface, and a communication module. The communication module comprises an intranet domain controller electrically connected with the first communication interface and an external domain controller electrically connected with the second communication interface. The intranet domain controller is configured to communicate with the in-vehicle communication system of a vehicle, and the external domain controller is configured to communicate with the out-of-vehicle communication system of the vehicle. intranet domain controller and the external domain controller respectively control the data transmission with the in-vehicle communication system and the out-vehicle communication system, realizing the isolation of the intranet domain controller and the external domain controller, avoiding the cross transmission of data, reducing the risk of vehicle intrusion. A gateway security device and the vehicle are also provided.