Design of a CANFD to SOME/IP Gateway Considering Security for In-Vehicle Networks

被引:11
作者
Zuo, Zheng [1 ]
Yang, Shichun [1 ]
Ma, Bin [1 ]
Zou, Bosong [2 ]
Cao, Yaoguang [1 ]
Li, Qiangwei [1 ]
Zhou, Sida [1 ]
Li, Jichong [1 ]
机构
[1] Beihang Univ, Sch Transportat Sci & Engn, Beijing 102206, Peoples R China
[2] China Software Testing Ctr, Beijing 100038, Peoples R China
关键词
vehicle; CAN; CANFD; Ethernet; SOME; IP; gateway; security; MAC; AEAD; CHALLENGES;
D O I
10.3390/s21237917
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
In recent years, Ethernet has been introduced into vehicular networks to cope with the increasing demand for bandwidth and complexity in communication networks. To exchange data between controller area network (CAN) and Ethernet, a gateway system is required to provide a communication interface. Additionally, the existence of networked devices exposes automobiles to cyber security threats. Against this background, a gateway for CAN/CAN with flexible data-rate (CANFD) to scalable service-oriented middleware over IP (SOME/IP) protocol conversion is designed, and security schemes are implemented in the routing process to provide integrity and confidentiality protections. Based on NXP-S32G, the designed gateway is implemented and evaluated. Under most operating conditions, the CPU and the RAM usage are less than 5% and 20 MB, respectively. Devices running a Linux operating system can easily bear such a system resource overhead. The latency caused by the security scheme accounts for about 25% of the entire protocol conversion latency. Considering the security protection provided by the security scheme, this overhead is worthwhile. The results show that the designed gateway can ensure a CAN/CANFD to SOME/IP protocol conversion with a low system resource overhead and a low latency while effectively resisting hacker attacks such as frame forgery, tampering, and sniffing.
引用
收藏
页数:25
相关论文
共 46 条
[41]  
Puhm A., 2008, P 2008 IEEE INT C EM
[42]   VEGa: A High Performance Vehicular Ethernet Gateway on Hybrid FPGA [J].
Shreejith, Shanker ;
Mundhenk, Philipp ;
Ettner, Andreas ;
Fahmy, Suhaib A. ;
Steinhorst, Sebastian ;
Lukasiewycz, Martin ;
Chakraborty, Samarjit .
IEEE TRANSACTIONS ON COMPUTERS, 2017, 66 (10) :1790-1803
[43]   Cryptography and Network Security: Principles and Practice [J].
Sklavos, Nicolas .
INFORMATION SECURITY JOURNAL, 2014, 23 (1-2) :49-50
[44]  
Volker L., SCALABLE SERVICE ORI
[45]  
Yadav K., 2020, P 2020 1 IEEE INT C
[46]   Requirements-Driven Automotive Electrical/Electronic Architecture: A Survey and Prospective Trends [J].
Zhu, Hailong ;
Zhou, Wei ;
Li, Zhiheng ;
Li, Li ;
Huang, Tao .
IEEE ACCESS, 2021, 9 :100096-100112