Rail Vehicle Data Link Hardware Filtering Against Tampering

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing software-based protection mechanisms for rail vehicle communication links are inadequate, as they can be manipulated by third parties, posing a risk to the operational integrity of the vehicle.

Innovation Solution

A system utilizing an electronic filter device, composed of discrete electronic components or integrated circuits, decouples the communication link between the in-vehicle interface and control unit, ensuring only approved data is forwarded, providing tamper-proof protection through hardware-based filtering.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If software-based protection mechanisms are used, then communication protection is provided, but the protection can be manipulated by third parties

Engineering Contradiction:
Improveprotection reliabilityVSAvoidmanipulation risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent replaces software-based protection mechanisms with a hardware-based electronic filter device. This substitution moves the protection mechanism from the software domain to the hardware domain, where the filter device physically separates and monitors data traffic between communication interfaces and control units, making manipulation significantly more difficult.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The electronic filter device acts as an intermediary component inserted between communication interfaces and control units. It monitors and filters data packets in real-time, allowing legitimate communication while blocking unauthorized access attempts, thus providing a neutral third-party protection layer that cannot be easily manipulated.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If hardware-based electronic filter device is used, then tamper-proof protection is achieved, but device complexity increases

Engineering Contradiction:
Improvetamper-proof protectionVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The protection system is segmented into distinct functional components: communication interfaces, electronic filter device, and control units. Each component has a specific role, with the filter device focusing solely on monitoring and filtering data packets. This segmentation allows for modular implementation and maintenance while providing comprehensive protection.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The electronic filter device is designed to handle multiple communication protocols and data types universally. It can filter various packet formats and communicate with different control units through standardized interfaces, reducing the need for multiple specialized components and thereby limiting the increase in overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP3688958B1System and method for the protected transmission of data
Publication Date: 2021.07.28 SIEMENS MOBILITY GMBH
  • EP3688958B1 patent drawingFigure 1~2

AI summary

The invention relates to a system for transmitting and receiving data, in particular for a rail vehicle, having at least one vehicle-internal control unit for processing and generating data, at least one external server unit with a communication device for establishing a communication connection with at least one vehicle-internal interface, and at least one vehicle-internal interface for transmitting data generated by the at least one vehicle-internal control unit and for receiving data transmitted by the at least one external server unit, wherein the at least one vehicle-internal control unit and the at least one vehicle-internal interface are connected together so as to transmit data via an electronic filter device.