USIM-Based Mutual Authentication for Vehicle Communication Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current vehicle communication technologies, such as DSRC and WAVE, lack sufficient security authentication, posing risks to personal information and service provision.

Innovation Solution

A method involving the use of a User Subscriber Identity Module (USIM) card for mutual authentication between on-board equipment and roadside equipment, generating session keys for encryption and decryption of data, and verifying authentication information through a vehicle service server, leveraging existing wireless network authentication protocols like AKA and EAP-AKA.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If vehicle communication uses DSRC or WAVE technology, then communication between road side equipment and on board equipment is enabled, but security authentication is insufficient

Engineering Contradiction:
Improvevehicle communication capabilityVSAvoidsecurity authentication
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a USIM card as an intermediary authentication element that mediates between the on board equipment and the authentication server. The USIM card stores authentication information and session keys, enabling secure verification without requiring direct trust between all system components. This intermediary approach resolves the contradiction by maintaining communication versatility while establishing reliable security authentication through the USIM card's authentication information.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a separate authentication server is deployed for vehicle communication, then security authentication is improved, but system complexity and cost increase

Engineering Contradiction:
Improvesecurity authenticationVSAvoidauthentication server infrastructure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent makes the USIM card multi-functional by integrating both authentication information storage and session key management capabilities into a single component. The USIM card serves as both the authentication credential and the key management device, eliminating the need for separate dedicated authentication servers. This multi-functionality resolves the contradiction by maintaining strong security authentication while reducing system complexity and infrastructure costs.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Ease of operation

If authentication information is transmitted without encryption, then data transmission is simple, but personal information security is compromised

Engineering Contradiction:
Improvedata transmissionVSAvoidpersonal information security risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent performs preliminary encryption of authentication information using session keys before transmission. The USIM card generates and stores session keys that are used to encrypt authentication information prior to transmission over the communication channel. This preliminary encryption action resolves the contradiction by ensuring personal information security without complicating the transmission process, as the encryption is performed automatically as part of the authentication flow.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8996868B2Method of authenticating vehicle communication
Publication Date: 2015.03.31 ELECTRONICS & TELECOMM RES INST
  • US8996868B2 patent drawing
  • US8996868B2 patent drawing
  • US8996868B2 patent drawing

AI summary

A vehicle communication authentication system performs mutual authentication with an authentication subject by performing a user subscriber identify module (USIM)-based authentication protocol in a wireless network, mounts a USIM card in which mutual authentication is succeeded in a vehicle terminal, and performs authentication of vehicle communication with a server that provides a vehicle service.