V2X PC5 Establishment Security via Discovery-Stage Protection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing V2X PC5 establishment procedure in ProSe technology is vulnerable to security attacks, leading to a degradation in security level, which affects the efficiency and integrity of device-to-device communication.
Innovation Solution
A communication method that enhances security by determining a first security protection method during the discovery procedure, ensuring it maintains or exceeds the security level of the PC5 connection, and applying it to protect messages in the PC5 establishment procedure.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the existing V2X PC5 establishment procedure is used, then device-to-device communication can be established, but security level degrades due to vulnerability to attacks
Solution Approach 1:
The patent applies preliminary action by performing security protection method determination during the discovery procedure (before PC5 establishment) rather than during the establishment procedure itself. The first terminal device determines a first security protection method in the discovery procedure, then uses this predetermined method to protect messages in the subsequent PC5 establishment procedure, preventing security degradation before it can occur.
Solution Approach 2:
The patent introduces an intermediary mechanism by using the first security protection method (determined in discovery procedure) as a mediator to protect the PC5 establishment procedure. This intermediary security method ensures that the establishment procedure messages are protected with at least the same security level as the discovery procedure, preventing direct attacks on the establishment process.
2Reliability
If security protection is enhanced in the PC5 establishment procedure, then security level improves, but communication efficiency may be reduced
Solution Approach 1:
By determining the security protection method in advance during the discovery procedure, the patent avoids adding security processing steps during the time-critical PC5 establishment procedure. The security method is predetermined and then applied directly to establishment messages, maintaining both high security and communication efficiency.
Solution Approach 2:
The patent changes the security parameter (security protection method) from being dynamically negotiated during PC5 establishment to being predetermined during discovery. This parameter change allows the establishment procedure to use a pre-configured security method without additional negotiation overhead, maintaining efficiency while ensuring security.
Data Source
AI summary
Embodiments of this application provide a communication method, apparatus, and system, to improve security of a vehicle-to-everything (V2X) PC5 establishment procedure. In the method, a first terminal device obtains a first security protection method, where the first security protection method is a security protection method determined in a discovery procedure between the first terminal device and a second terminal device. Also in the method, the first terminal device determines a second security protection method according to the first security protection method, where the second security protection method is a security protection method for a PC5 connection between the first terminal device and the second terminal device. For example, a security level of the second security protection method is higher than a security level of the first security protection method. The communication method is applicable to the V2X communication field.


