V2X PC5 Establishment Security via Discovery-Stage Protection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The existing V2X PC5 establishment procedure in ProSe technology is vulnerable to security attacks, leading to a degradation in security level, which affects the efficiency and integrity of device-to-device communication.

Innovation Solution

A communication method that enhances security by determining a first security protection method during the discovery procedure, ensuring it maintains or exceeds the security level of the PC5 connection, and applying it to protect messages in the PC5 establishment procedure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the existing V2X PC5 establishment procedure is used, then device-to-device communication can be established, but security level degrades due to vulnerability to attacks

Engineering Contradiction:
Improvesecurity levelVSAvoidvulnerability to attacks
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent applies preliminary action by performing security protection method determination during the discovery procedure (before PC5 establishment) rather than during the establishment procedure itself. The first terminal device determines a first security protection method in the discovery procedure, then uses this predetermined method to protect messages in the subsequent PC5 establishment procedure, preventing security degradation before it can occur.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary mechanism by using the first security protection method (determined in discovery procedure) as a mediator to protect the PC5 establishment procedure. This intermediary security method ensures that the establishment procedure messages are protected with at least the same security level as the discovery procedure, preventing direct attacks on the establishment process.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If security protection is enhanced in the PC5 establishment procedure, then security level improves, but communication efficiency may be reduced

Engineering Contradiction:
Improvesecurity levelVSAvoidcommunication efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

By determining the security protection method in advance during the discovery procedure, the patent avoids adding security processing steps during the time-critical PC5 establishment procedure. The security method is predetermined and then applied directly to establishment messages, maintaining both high security and communication efficiency.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent changes the security parameter (security protection method) from being dynamically negotiated during PC5 establishment to being predetermined during discovery. This parameter change allows the establishment procedure to use a pre-configured security method without additional negotiation overhead, maintaining efficiency while ensuring security.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS12406059B2Communication method, apparatus, and system
Publication Date: 2025.09.02 HUAWEI TECH CO LTD
  • US12406059B2 patent drawing
  • US12406059B2 patent drawing
  • US12406059B2 patent drawing

AI summary

Embodiments of this application provide a communication method, apparatus, and system, to improve security of a vehicle-to-everything (V2X) PC5 establishment procedure. In the method, a first terminal device obtains a first security protection method, where the first security protection method is a security protection method determined in a discovery procedure between the first terminal device and a second terminal device. Also in the method, the first terminal device determines a second security protection method according to the first security protection method, where the second security protection method is a security protection method for a PC5 connection between the first terminal device and the second terminal device. For example, a security level of the second security protection method is higher than a security level of the first security protection method. The communication method is applicable to the V2X communication field.