An Overview of Automotive Service-Oriented Architectures and Implications for Security Countermeasures

被引:40
|
作者
Rumez, Marcel [1 ]
Grimm, Daniel [2 ]
Kriesten, Reiner [1 ]
Sax, Eric [2 ]
机构
[1] Karlsruhe Univ Appl Sci, Inst Energy Efficient Mobil, D-76133 Karlsruhe, Germany
[2] Karlsruhe Inst Technol, Inst Informat Proc Technol, D-76131 Karlsruhe, Germany
来源
IEEE ACCESS | 2020年 / 8卷
关键词
Computer architecture; Automotive engineering; Security; Protocols; Ethernet; Standards; Service-oriented architecture; Automotive SOA; service-oriented architectures; connected vehicles; cybersecurity; firewall; intrusion detection system (IDS); access control; INTRUSION DETECTION; SYSTEMS;
D O I
10.1109/ACCESS.2020.3043070
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
New requirements from the customers' and manufacturers' point of view such as adding new software functions during the product life cycle require a transformed architecture design for future vehicles. The paradigm of signal-oriented communication established for many years will increasingly be replaced by service-oriented approaches in order to increase the update and upgrade capability. In this article, we provide an overview of current protocols and communication patterns for automotive architectures based on the service-oriented architecture (SOA) paradigm and compare them with signal-oriented approaches. Resulting challenges and opportunities of SOAs with respect to information security are outlined and discussed. For this purpose, we explain different security countermeasures and present a state of the section of automotive approaches in the fields of firewalls, Intrusion Detection Systems (IDSs) and Identity and Access Management (IAM). Our final discussion is based on an exemplary hybrid architecture (signal- and service-oriented) and examines the adaptation of existing security measures as well as their specific security features.
引用
收藏
页码:221852 / 221870
页数:19
相关论文
共 50 条
  • [1] Development Processes in Automotive Service-oriented Architectures
    Vetter, Andreas
    Obergfell, Philipp
    Guissouma, Houssem
    Grimm, Daniel
    Sax, Eric
    Rumez, Marcel
    2020 9TH MEDITERRANEAN CONFERENCE ON EMBEDDED COMPUTING (MECO), 2020, : 32 - 38
  • [2] A security framework for developing service-oriented software architectures
    Rafe, Vahid
    Hosseinpouri, Ramin
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (17) : 2957 - 2972
  • [3] Forming a security certification enclave for service-oriented architectures
    Hepner, M.
    Gamble, M. T.
    Gamble, R.
    SCW 2006: IEEE SERVICES COMPUTING WORKSHOPS, PROCEEDINGS, 2006, : 148 - +
  • [4] A Security Meta-Model for Service-oriented Architectures
    Menzel, Michael
    Meinel, Christoph
    2009 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING, 2009, : 251 - 259
  • [5] Analysis of Security and Performance Aspects in Service-Oriented Architectures
    Rodrigues, Douglas
    Estrella, Julio C.
    Branco, Kalinka R. L. J. C.
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2011, 5 (01): : 13 - 30
  • [6] Systematic security analysis for service-oriented software architectures
    Liu, Yanguo
    Traore, Issa
    ICEBE 2007: IEEE INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING, PROCEEDINGS, 2007, : 612 - 621
  • [7] Towards Security Awareness in Designing Service-oriented Architectures
    Nassar, Pascal Bou
    Badr, Youakim
    Biennier, Frederique
    Barbar, Kablan
    ICEIS: PROCEEDINGS OF THE 15TH INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS - VOL 3, 2013, : 347 - 355
  • [8] Multi-level security for service-oriented architectures
    Ramasamy, HariGovind V.
    Schunter, Matthias
    MILCOM 2006, VOLS 1-7, 2006, : 3129 - +
  • [9] A Security Process for the Automotive Service-Oriented Software Architecture
    Puellen, Dominik
    Frank, Florian
    Christl, Marion
    Liu, Wuhao
    Katzenbeisser, Stefan
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2024, 73 (04) : 5036 - 5053
  • [10] Proceedings of the workshop on security for web services and service-oriented architectures
    Luttenberger, Norbert
    Jensen, Meiko
    INFORMATIK 2008 - Beherrschbare Systeme - Dank Informatik, Beitrage der 38. Jahrestagung der Gesellschaft fur Informatik e.V. (GI), 2008, 1