In-Vehicle Relay Device Bypassing Security Checks for High Priority Messages
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing relay devices for in-vehicle networks take time to process high-priority transfer messages, which can lead to delays, while also requiring security checks that increase the overall load on the network.
Innovation Solution
A relay device with separate paths for high-priority and normal-priority messages, where high-priority messages are relayed directly without passing through security checks and normal-priority messages are checked for authorization before being relayed, allowing for parallel processing of security checks and message transmission.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If security checks are performed on all messages before relaying, then message communication security is ensured, but relay time for high priority messages increases
Solution Approach 1:
The patent segments the message relay path into two separate paths: a first path for high priority messages that bypasses security checks, and a second path for normal priority messages that undergoes security checks. This segmentation allows high priority messages to be relayed quickly while maintaining security for other messages, resolving the contradiction between security and speed.
Solution Approach 2:
The patent introduces a determination unit as an intermediary that classifies incoming messages into high priority and normal priority categories. This intermediary directs messages to appropriate paths, enabling high priority messages to bypass security checks while ensuring normal messages receive full security verification, thus balancing security requirements with time constraints.
2Reliability
If security checks are performed on all messages, then unauthorized messages are detected, but network load increases
Solution Approach 1:
The patent divides message processing into two segments: high priority messages that skip security checks and normal priority messages that undergo security checks. This segmentation reduces the overall number of messages subjected to security verification, thereby decreasing network load while maintaining unauthorized message detection capability for normal priority traffic.
Solution Approach 2:
The patent applies partial security checks only to normal priority messages rather than all messages. This partial action approach maintains adequate security for non-critical messages while avoiding the excessive processing burden of checking every message, thus reducing network load while preserving essential security functions.
Data Source
AI summary
A relay device connected to an in-vehicle network includes a first determination unit; a second determination unit; and a relay processing unit. The first determination unit is configured to send out a high priority transfer message through a first path that runs from the first determination unit to the relay processing unit without passing through the second determination unit. The relay processing unit is configured to output the high priority transfer message, acquired through the first path, to the second determination unit and the in-vehicle device. The first determination unit is configured to send out a normal priority transfer message to the relay processing unit through a second path that runs from the first determination unit to the relay processing unit via the second determination unit. The relay processing unit is configured to output the normal priority transfer message, acquired through the second path, to the in-vehicle device.


