Vehicle Authentication Using RSSI Session Keys Against Relay Attacks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Keyless entry systems for vehicles are vulnerable to relay attacks, where attackers can impersonate the vehicle and unlock it remotely, compromising security.
Innovation Solution
A remote server-based authentication method using session keys generated from wireless signal strength indicators (RSSIs) to verify the legitimacy of user devices, eliminating direct communication between the vehicle and the user equipment, thereby preventing relay and other attacks.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Speed
If direct communication between vehicle and UE is used for authentication, then authentication speed is improved, but security against relay and replay attacks deteriorates
Solution Approach 1:
The patent introduces a server as an intermediary component that mediates the authentication process between the vehicle and UE. The server generates session keys and verifies authentication results, preventing direct communication that enables relay and replay attacks while maintaining authentication efficiency through centralized key management
2Productivity
If session keys are generated and transmitted directly between vehicle and UE, then authentication efficiency is improved, but information leakage risk increases
Solution Approach 1:
The server acts as a secure intermediary that generates session keys using quantum random number generation and distributes them to the vehicle and UE through encrypted channels. This eliminates direct key exchange between vehicle and UE, preventing information leakage while maintaining authentication efficiency
Solution Approach 2:
The patent replaces traditional cryptographic key exchange mechanisms with quantum random number generation for session key creation. This substitution provides information-theoretic security, ensuring that session keys cannot be predicted or intercepted, thus preventing information leakage while maintaining efficient authentication
Data Source
AI summary
A method for authentication and related devices includes obtaining a first session key BS1 generated according to a set X and a set Y. The set X is a set of samples of received signal strength indicators (RSSIs) of a wireless channel of a user equipment (UE), and the set Y is a set of samples of RSSIs of a wireless channel of a vehicle. Upon receiving a second message from the UE, wherein the second message is hashed by a second session key BS2, extracting the second session key BS2 from the second message. When the first session key BS1 is the same as the second session key BS2, the authentication between the UE and the vehicle is successful.


