Vehicle Computer Update Authentication via Multi-Server Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Vehicle computer updating mechanisms are increasingly vulnerable to hacking due to interconnectivity with other computers and the cloud, posing a risk of unauthorized access.
Innovation Solution
A system for authenticating vehicle computer updates involves a vehicle, two remote servers with distinct access protocols, and a user device, where the vehicle authenticates update requests with both servers and the user, and checks compliance with acceptance criteria before installing updates, including software-in-the-loop simulations to ensure the update's integrity.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If vehicle computers are interconnected with other computers and the cloud to enable updates, then the ability to provide software updates is improved, but the vulnerability to hacking and unauthorized access increases
Solution Approach 1:
The authentication system is divided into multiple independent components: a first server for initial authentication, a second server for secondary authentication, and local authentication modules within the vehicle computer. Each server has distinct access protocols and performs specific authentication functions, creating segmented security layers that reduce the risk of complete system compromise.
Solution Approach 2:
Two remote servers act as intermediaries between the update source and the vehicle computer. These servers verify authentication credentials and validate update packages before allowing installation, mediating the update process to prevent unauthorized access while enabling legitimate updates.
2Reliability
If multiple authentication servers with distinct protocols are implemented, then security against hacking is improved, but the complexity of the update mechanism increases
Solution Approach 1:
The vehicle computer includes a universal authentication module capable of communicating with multiple different servers using distinct access protocols. This multi-functional module handles authentication with both the first and second servers, reducing the need for separate dedicated hardware for each protocol while maintaining security.
Solution Approach 2:
Authentication credentials and server protocols are pre-configured in the vehicle computer during manufacturing. The system performs preliminary authentication checks with both servers before allowing any update installation, preparing the security framework in advance to simplify the actual update process.
3Reliability
If software-in-the-loop simulations are performed to verify update compliance, then the reliability of updates is improved, but the time required for update installation increases
Solution Approach 1:
Software-in-the-loop simulations and compliance verification are performed on update packages before they are installed in the vehicle. The first and second servers conduct these simulations remotely, preparing verified update packages in advance so that actual installation time is minimized while maintaining high reliability.
Solution Approach 2:
The authentication and simulation process creates a virtual copy of the software environment to test updates before applying them to the actual vehicle computer. This copying approach allows comprehensive testing without risking the production system, and verified copies are then installed efficiently.
Data Source
AI summary
A first computer includes a processor programmed to receive from a second computer a request to install a computer update. The request includes identification data. The first computer is further programmed to request, from a third computer, remote from the vehicle and from the second computer, a first authentication for the request to install the computer update. The request includes the identification data. The first computer receives the first authentication from the third computer. The first computer is further programmed to send, to a user device, an instruction to request from a user, a second authentication of the request to install the computer update. The first computer receives the second authentication from the user and installs the computer code.

