车载控制局域网的安全服务协议研究
2019-08-13盛昱杰郭子恒沈伟
盛昱杰 郭子恒 沈伟



摘 要:随着智能汽车、车联网的快速发展,攻击者可以通过对外开放的接口实施攻击,引发车载信息安全问题,严重威胁车辆乘坐人的生命及财产安全的问题。为此提出了一种车载控制局域网安全服务协议,包括启动阶段和通信阶段两个模块协议。启动阶段的初始化身份认证过程采用公钥加密体系及数字签名技术,在车辆点火启动时完成各节点的初始化认证,保证各通信节点身份的可靠性;通信阶段采用动态口令及消息摘要技术,保证了消息的机密性和完整性,并利用单次有效的动态口令实现对重放攻击的抵抗。通过搭建车载控制局域网总线仿真平台,模拟多种不同的攻击场景。实验结果表明,该协议能够为车辆提供可靠的初始化身份认证及通信安全,提高了系统安全服务水平。总线负载开销及消息时延也在合理水平。
关键词:车载控制器局域网络总线;车载信息安全;安全服务协议
中图分类号:TP399 文献标识码:A
A Security Service Protocol for In-vehicle CAN Bus
SHENG Yu-jie?覮,GUO Zi-heng,SHEN Wei
(School of Computer Science and Engineering,Nanjing University of Science and Technology,Nanjing,Jiangsu 210094,China)
Abstract:A security service protocol for in-vehicle controller area network bus is proposed to solve the problem that the attackers can access some opening interface which may put the passengers in a dangerous situation. The protocol SSCAN contains two modules,IAM and EM. IAM uses the public key encryption system and digital signature technology to keep each ECU node in CAN bus reliability during the vehicle start-up phase. EM uses the dynamic password and message digest technology to keep the messages in safety,and can resistance replay attacks by the one-time dynamic password. To assess the SSCAN protocol,a hardware platform of CAN bus is built to simulate some different attack scenarios. The experimental results show that the protocol provides reliable initial authentication and communication security for vehicles and improves the system security service levels. The CAN bus load and messages average latency is also on a reasonable level.
Key words:controller area network bus;in-vehicle security;security service protocol
隨着“物联网”、“车联网”等技术的不断发展,汽车这一商品的属性已经从传统的机械类商品转向为“机械+智能化”的混合类型商品。“智能汽车”已经从一种概念类商品落地成为一种消费类商品。技术上的不断创新,使得人们的驾驶体验得以不断改进。但是,伴随这些技术而来的,是车辆提供了越来越多的对外通信接口。攻击者可以通过车载蓝牙、无线和OBD-II等模块进行攻击[1-4]。攻击的对象可以是车辆的各种关键性模块,包括发动机、ABS系统等。……
