Verlagslink DOI: | 10.1109/VNC57357.2023.10136332 | Titel: | Authenticated and secure automotive service discovery with DNSSEC and DANE | Sprache: | Englisch | Autorenschaft: | Mueller, Mehmet Häckel, Timo Meyer, Philipp Korf, Franz Schmidt, Thomas C. |
Herausgeber*In: | Coleri, Sinem Altintas, Onur Kargl, Frank Higuchi, Takamasa Segata, Michele Klingler, Florian |
Schlagwörter: | Automotive security; authentication; attestation; service orientation; SOME/IP; AUTOSAR; standards | Erscheinungsdatum: | 1-Jun-2023 | Verlag: | IEEE | Teil der Schriftenreihe: | 2023 IEEE Vehicular Networking Conference (VNC) : 26-28 April 2023, Istanbul, Turkey | Anfangsseite: | 231 | Endseite: | 238 | Konferenz: | IEEE Vehicular Networking Conference 2023 | Zusammenfassung: | Automotive softwarization is progressing and future cars are expected to operate a Service-Oriented Architecture on multipurpose compute units, which are interconnected via a high-speed Ethernet backbone. The AUTOSAR architecture foresees a universal middleware called SOME/IP that provides the service primitives, interfaces, and application protocols on top of Ethernet and IP. SOME/IP lacks a robust security architecture, even though security is an essential in future Internet-connected vehicles. In this paper, we augment the SOME/IP service discovery with an authentication and certificate management scheme based on DNSSEC and DANE. We argue that the deployment of well-proven, widely tested standard protocols should serve as an appropriate basis for a robust and reliable security infrastructure in cars. Our solution enables on-demand service authentication in offline scenarios, easy online updates, and remains free of attestation collisions. We evaluate our extension of the common vsomeip stack and find performance values that fully comply with car operations. |
URI: | http://hdl.handle.net/20.500.12738/14868 | ISBN: | 979-8-3503-3549-1 979-8-3503-3550-7 |
Begutachtungsstatus: | Diese Version hat ein Peer-Review-Verfahren durchlaufen (Peer Review) | Einrichtung: | Department Informatik Fakultät Technik und Informatik |
Dokumenttyp: | Konferenzveröffentlichung |
Enthalten in den Sammlungen: | Publications without full text |
Zur Langanzeige
Volltext ergänzen
Feedback zu diesem Datensatz
Export
Alle Ressourcen in diesem Repository sind urheberrechtlich geschützt.