通信学报 ›› 2014, Vol. 35 ›› Issue (11): 146-153.doi: 10.11959/j.issn.1000-436x.2014.11.017

• 安全协议 • 上一篇    下一篇

新的车辆远程诊断授权协议

焦政达,马建峰,孙聪,姚青松   

  1. 西安电子科技大学 计算机学院,陕西 西安 710071
  • 出版日期:2014-11-25 发布日期:2017-06-20
  • 基金资助:
    国家自然基金委员会—广东联合基金重点基金资助项目;国家自然科学基金资助项目;陕西省自然科学基础研究计划基金资助项目;中央高校基本科研业务费专项资金资助项目;航空科学基金资助项目;航空科学基金资助项目

New remote authorization protocol for vehicle diagnosis

Zheng-da JIAO,Jian-feng MA,Cong SUN,Qing-song YAO   

  1. School of Computer Science and Technology,Xidian University,Xi’an 710071,China
  • Online:2014-11-25 Published:2017-06-20
  • Supported by:
    The Key Program of NSFC-Guangdong Union Foundation;The Natural Science Basis Research Plan in Shaanxi Province of China;The Fundamental Research Funds for the Central Universities;The Aviation Science Foundation of China;The Aviation Science Foundation of China

摘要:

诊断主体授权问题是车辆远程故障诊断中的关键问题。针对当前车辆远程诊断授权协议(PVAUDS)中存在的问题,提出了新的车辆远程诊断授权协议(PVAUDS+)。在保证原协议安全目标的前提下,为诊断主体提供双向认证和票据新鲜性验证,并保证发送票据的可信第三方能够有效抵御拒绝服务攻击。使用安全协议证明工具 ProVerif 对 PVAUDS+协议的安全属性进行自动化证明,通过增加发起代价的机制解决对可信第三方的拒绝服务攻击问题,从而说明 PVAUSD+协议能够满足提出的安全目标。定量分析结果说明本协议具有较好的可行性。

关键词: 安全协议, 车辆远程诊断, 授权, 协议自动化证明

Abstract:

The authorization of diagnosis principals is a critical problem in the remote fault diagnosis of vehicles.Considering the defects of the previous authorization protocol for the remote diagnosis,i.e.PVAUDS,a novel authorization protocol is proposed,named PVAUDS+.In addition to the enforcement on the security properties of PVAUDS,the bidirectional authentication and the freshness of authorization tickets for the diagnosis principals are provided.The resistance of Denial-of-Service (DoS) attack for the trusted third party is also provided.The proposed security targets are achieved through the cost increasing of requests for the resistance of DoS attack,the automatic proof of security properties with the ProVerif tool.The results of quantitative analysis show proposed protocol is practical for use.

Key words: security protocol, remote vehicle diagnosis, authorization, automatic proof of protocol

No Suggested Reading articles found!