On-Board Pseudonym Certificate Processing for Low-Latency V2X
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing V2X communication systems face challenges in efficiently acquiring pseudonym certificates due to high latency and low performance, particularly in the generation and management of certificates using conventional public key infrastructure (PKI) systems.
Innovation Solution
A method and device for processing pseudonym certificates on-board apparatuses, utilizing a secret key stored in a security storage unit to generate and manage pseudonym certificates locally, reducing reliance on external authorities and optimizing the certificate generation process through pipelining and direct data access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional PKI systems are used for pseudonym certificate generation and management, then certificate security is maintained through centralized authority, but system latency increases and performance decreases
Solution Approach 1:
The patent segments the centralized certificate management function into distributed components. Each on-board apparatus maintains its own secret key and security storage unit, enabling local certificate generation without continuous centralized authority involvement. This segmentation reduces latency while maintaining security through distributed trust.
Solution Approach 2:
The patent implements preliminary action by pre-generating and storing secret keys in security storage units before certificate issuance is needed. This allows rapid local certificate generation when required, eliminating the need for real-time centralized key management and reducing system latency.
2Reliability
If external authority involvement is maintained for certificate management, then centralized security control is ensured, but network resource usage increases and performance decreases
Solution Approach 1:
The patent enables self-service by allowing on-board apparatuses to autonomously generate and manage their own pseudonym certificates using locally stored secret keys. This eliminates repeated external authority involvement for each certificate operation, reducing network resource usage and improving performance while maintaining security through the initial trusted key distribution.
Data Source
Figure 1~2
Figure 3~4
Figure 5
AI summary
The present application provides a method, a device for processing pseudonym certificate of an on-board apparatus, and the on-board apparatus; the method is applied to on-board apparatus based on the vehicles to everything, and comprises: generating a secret key and storing the secret key into a security storage unit of the on-board apparatus, wherein the security storage unit is only used to store data corresponding to the pseudonym certificates; transmitting a pseudonym certificate request generated based on the secret key; acquiring a first pseudonym certificate corresponding to the pseudonym certificate request, and generating a pseudonym certificate private key based on the first pseudonym certificate and the secret key stored in the security storage unit.