Adaptive Certificate Pre-Distribution for V2X Authentication Latency

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

V2X communication systems face challenges in maintaining low latency and efficient message authentication, especially in emergency situations or congested environments, due to the limitations of existing certificate management and authentication processes.

Innovation Solution

The proposed adaptive certificate pre-distribution (ACPD) scheme involves extracting and pre-authenticating short-term certificates based on predicted location and time, broadcasting these certificates in a group message (ACPDG) at specific times and locations, and managing certificate validity and cancellation information to optimize authentication efficiency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If real-time authentication is performed for every message, then message reliability is improved, but communication latency increases and channel efficiency deteriorates

Engineering Contradiction:
Improvemessage authentication reliabilityVSAvoidauthentication time latency
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs certificate authentication in advance before actual communication occurs. The authentication server pre-authenticates certificates and stores authentication results, so that when real-time communication happens, the authentication is already completed, eliminating the need for real-time authentication delays

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The authentication process is segmented into two distinct phases: offline pre-authentication phase where certificates are authenticated and stored, and online communication phase where pre-authenticated certificates are used for message verification. This segmentation separates the time-consuming authentication task from the real-time communication requirement

Inventive Principle:
Principle #1Segmentation

2Reliability

If comprehensive certificate management is implemented, then security reliability is improved, but system complexity increases

Engineering Contradiction:
Improvesecurity reliabilityVSAvoidcertificate management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

An authentication server is introduced as an intermediary component that handles the complex certificate authentication and management tasks. The server receives certificate requests, performs authentication, stores results, and provides pre-authenticated certificates to communicating devices, thereby shielding the complexity from the communication endpoints

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Instead of managing original certificates directly, the system creates and manages copies of authenticated certificate information. The authentication server stores authenticated certificate data as copies that can be distributed to multiple devices, reducing the need for each device to maintain full certificate management capabilities

Inventive Principle:
Principle #26Copying

3Productivity

If adaptive certificate pre-distribution is implemented, then authentication efficiency is improved, but message processing complexity increases

Engineering Contradiction:
Improveauthentication efficiencyVSAvoidmessage processing complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system dynamically adjusts certificate distribution based on communication needs. The authentication server can pre-authenticate certificates in advance for upcoming communications, or perform authentication on-demand based on actual message exchange requirements, making the system adaptable to varying traffic patterns and communication scenarios

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11523278B2Method for secured communication and apparatus therefor
Publication Date: 2022.12.06 LG ELECTRONICS INC
  • US11523278B2 patent drawing
  • US11523278B2 patent drawing
  • US11523278B2 patent drawing

AI summary

A secured communication method for a V2X communication device is disclosed. The secured communication method for a V2X communication device comprises the steps of; receiving at least one message on the basis of V2X communication; extracting adaptive certificate pre-distribution (ACPD) target information when the at least one message includes the ACPD target information; pre-authenticating at least one short-term certificate acquired from the ACPD target information; collecting at least one pre-authenticated short-term certificate to be broadcasted at a specific predicted time at a specific predicted location; and broadcasting an ACPD group (ACPDG) message including the collected at least one pre-authenticated short-term certificate at the specific predicted location at the specific predicted time.