Vehicle Communication IP Address Generation and Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing vehicle-to-vehicle and vehicle-to-road communication systems face challenges in implementing robust security measures due to resource limitations of Micro Controller Units (MCUs) and the difficulty in authenticating multiple entities with dynamic IP addresses, which can lead to security vulnerabilities and potential traffic hazards.

Innovation Solution

A communication system where communication devices receive random seeds and individual identifiers from a server to generate pseudorandom IP addresses, enabling high-speed and lightweight authentication that filters IP addresses and prevents spoofing without compromising real-time performance.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a firewall system is introduced to ensure security in vehicle communication, then security level is improved, but device complexity and processing time increase beyond what MCUs can handle

Engineering Contradiction:
Improvesecurity levelVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the complex authentication and security processing functions from the vehicle-mounted MCUs and relocates them to a roadside server with sufficient computational resources. The MCUs only need to perform simple IP address generation and basic communication, while the server handles the heavy lifting of security verification, IP address management, and authentication logic.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a roadside server as an intermediary between vehicles and the external network. This server acts as a mediator that performs authentication, IP address allocation, and security verification, allowing vehicles to communicate securely without requiring complex security systems in their own hardware.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If dynamic IP addresses are assigned to multiple communication entities, then adaptability is improved, but authentication difficulty increases due to IP address spread

Engineering Contradiction:
Improvenetwork adaptabilityVSAvoidauthentication difficulty
Core Design Contradiction:
Adaptability or versatilityVSDifficulty of detecting and measuring

Solution Approach 1:

The patent implements preliminary action by having the roadside server pre-generate and manage IP addresses for all potential communication entities before actual communication occurs. The server maintains a mapping database that links each dynamic IP address to its corresponding entity identifier, allowing for efficient authentication and filtering based on pre-established relationships.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements feedback mechanisms where the roadside server continuously monitors and updates IP address allocations, entity registrations, and communication patterns. This feedback loop allows the system to adapt to changing network conditions while maintaining authentication capability through centralized tracking of all IP address assignments.

Inventive Principle:
Principle #23Feedback

3Productivity

If position information is incorporated into IP addresses for area-based authentication, then authentication efficiency is improved, but security decreases due to spoofing vulnerability

Engineering Contradiction:
Improveauthentication speedVSAvoidsecurity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent changes the parameter used for authentication from static position information to dynamic entity identifiers that are centrally managed. Instead of relying on location data that can be spoofed, the system uses entity identifiers assigned by the roadside server, which cannot be easily replicated or falsified, thus maintaining both authentication efficiency and security.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10374796B2Communication system, communication device, vehicle and communication method
Publication Date: 2019.08.06 RENESAS ELECTRONICS CORP
  • US10374796B2 patent drawing
  • US10374796B2 patent drawing
  • US10374796B2 patent drawing

AI summary

Provided is a high-speed and light-weighted authentication system that makes IP address filtering possible and does not impair real-time property even on a network including many and unspecific entities (communication devices). In a communication system that a plurality of communication devices are coupled together such that mutual communication is possible over the network, the communication devices communicate with a server under a secure environment, when authentication has been obtained from the server, random seeds of the same value and individual identifiers are issued to them, each communication device generates the IP address that includes a pseudorandom number and the identifier, and the communication devices establish communication between the communication devices that include the pseudorandom numbers that are mutually the same in their IP addresses.