CN102984196B - A kind of car-mounted terminal of vehicle authentication of identity-based certification - Google Patents

A kind of car-mounted terminal of vehicle authentication of identity-based certification Download PDF

Info

Publication number
CN102984196B
CN102984196B CN201210299564.0A CN201210299564A CN102984196B CN 102984196 B CN102984196 B CN 102984196B CN 201210299564 A CN201210299564 A CN 201210299564A CN 102984196 B CN102984196 B CN 102984196B
Authority
CN
China
Prior art keywords
module
information
car
authentication
mounted terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201210299564.0A
Other languages
Chinese (zh)
Other versions
CN102984196A (en
Inventor
蒋屹
蒋帆
宋大鹏
李娟�
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Apx Science & Technology Development Co Ltd
Original Assignee
Apx Science & Technology Development Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Apx Science & Technology Development Co Ltd filed Critical Apx Science & Technology Development Co Ltd
Priority to CN201210299564.0A priority Critical patent/CN102984196B/en
Publication of CN102984196A publication Critical patent/CN102984196A/en
Application granted granted Critical
Publication of CN102984196B publication Critical patent/CN102984196B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Small-Scale Networks (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The invention discloses a kind of vehicle authentication sending method of identity-based certification, and car-mounted terminal.Wherein data transmission module also includes encrypting module (701), for being encrypted data transmission, and authentication module (702), for authentication information is added Frame.By many-sided security means, on the one hand can support vehicles safety, can Security Data Transmission be ensured on the one hand, can also ensure that car-mounted terminal is not falsely used on the other hand.

Description

A kind of car-mounted terminal of vehicle authentication of identity-based certification
Technical field
The present invention relates to car networking technology field, more specifically, relate to a kind of vehicle authentication sending method of identity-based certification, and car-mounted terminal.
Background technology
Within 2010, Chinese automobile total sales volume surmounts the U.S., becomes the whole world the first, and China's automobile electronics market also enters the fast-developing phase thereupon.But automobile pollution growth rate is much higher than the Transportation Infrastructure Construction speed such as road, brings enormous pressure to road traffic.Traffic jam, traffic accident, environmental pollution are annoying the so ultra-large city in Beijing, Shanghai.How to pass through information technology, make automobile possess electronic intelligence ability, vehicle and traffic are effectively monitored, to alleviate traffic congestion, for user provides safety, comfortable driving environment, become the focus of transportation industry research.
The proposition of Internet of Things (TheInternetofThings, IoT) concept, accelerates informationization and the networking process of society.Car networking (InternetofVehicles) is as the typical apply of Internet of Things, utilize vehicle electronics sensing device, complete information exchange by network, Shi Cheyu road, Che Yuche, information interconnection and intercommunication between car and people, carry out effective intelligent monitoring to vehicle and traffic.Car networking specify that car, road, the interconnecting of city and people, and facilitates automobile, traffic and IT industry to modernization more, networking and intelligentized future development.
Be different from traditional intelligent transportation system (IntelligentTransportSystem, ITS), car and car, interactive communication between car and people are more focused in car networking, by extracting more vehicle driving parameters and system data carrys out support vehicles driving safety, evades road congestion, improves trip comfort level.Can say that the appearance that car is networked redefines vehicular traffic operational mode.But this area research is still in the starting stage, a lot of problem is not all resolved.
In car networking transport process, the transmission of data usually will through dissimilar heterogeneous network, and the fail safe of data can not obtain effective guarantee.Especially, for some special occasions, in such as army, People's Armed Police's task, Surveillance center needs the vehicle of sending, or the realtime monitoring of the vehicle of awaiting orders.Car networking is huge and the transmission structure of the unknown brings unsafe factor on the contrary.Data are all likely monitored by people in transmitting procedure, steal, and replace.So also need to provide reliable encrypted authentication system to the control of vehicle, prevent the unnecessary interference of hostile force.
Summary of the invention
For the deficiencies in the prior art, the present invention spy provide a kind of solution based on car networking technology.
A kind of car-mounted terminal is provided to comprise:
Acquisition module (10), for the kinematic parameter of collection vehicle;
Input module (30), for input data information, or control information;
Output module (40), for output information, or controls vehicle;
Data transmission module (70), for receiving transmission data, communicate with Surveillance center, wherein data transmission module also includes encrypting module (701) for being encrypted data transmission, and authentication module (702), for authentication information is added Frame;
Logging modle (80), for record car-mounted terminal or generate data;
Short-range communications module (90), for short-haul connections, provides authentication;
Also have controller module (50), for controlling above-mentioned module, deal with data computing.
Further, in described short-range communications module (90), comprising authentication module (901), for carrying out certification to driver information, the driver information after certification being recorded in logging modle (80).
Further, also containing confirming module (303) in input module (30), whether the information of this confirmation module checks input is consistent with the confirmation prestored, and determines whether by certification; Only have the ability authorised vehicles when confirmation is consistent and driver information is consistent to travel, otherwise cut off vehicle oil way, circuit.
Further, described authentication information is digital certificate (CA).
Further, described encrypting module (701) by the driver information after certification with confirm module confirm after information after encrypting, form encrypted packets; The digital certificate representing described car-mounted terminal is added formation at the trailer sections of encrypted packets and sends packet by described authentication module (702), and sends to Surveillance center.
The present invention also provides a kind of vehicle authentication sending method of identity-based certification, comprises the steps:
A. short-range communications module (90) communicates with identification module A, Operator identification information is sent to authentication module (901);
B. authentication module (901) reads Operator identification information, and the Operator identification information's comparison with prestoring, sends to controller by the first comparison result;
C. controller reads the first comparison result, if the first comparison result correctly, allows vehicle to travel, is recorded in by the driver information after certification in the middle of logging modle (80); If the first comparison result mistake, then cut off vehicle oil way, circuit by vehicle control module.
Further, in stepb, the Operator identification information prestored, is stored in the logging modle (80) of car-mounted terminal, or is stored in Surveillance center.
Further, after step b, before step c, also have
Step b1, obtains confirmation by input module;
B2, confirm that module (303) reads confirmation, the confirmation comparison with prestoring, sends to controller by the second comparison result;
B3, controller reads the first comparison result and the second comparison result, if correct and the second comparison result of the first comparison result is correctly, allows vehicle to travel, is recorded in by the driver information after certification in logging modle (80); If the first comparison result mistake or the second comparison result mistake, then cut off vehicle oil way, circuit by vehicle control module.
Further, in step b2, the confirmation prestored, is stored in the logging modle (80) of car-mounted terminal, or is stored in Surveillance center.
Further, after step c, also have
Steps d, the information after the driver information after certification and confirmation module being confirmed forms encrypted packets after encrypting;
Step e, adds formation at the trailer sections of encrypted packets by the digital certificate representing described car-mounted terminal and sends packet, and send to Surveillance center.
Beneficial effect
By many-sided security means, on the one hand can support vehicles safety, can Security Data Transmission be ensured on the one hand, can also ensure that car-mounted terminal is not falsely used on the other hand.
Accompanying drawing explanation
Fig. 1 is the schematic diagram of car of the present invention networking;
Fig. 2 is the fundamental block diagram of car-mounted terminal of the present invention;
Fig. 3 is the connection layout of car-mounted terminal part of module of the present invention;
Embodiment
Below in conjunction with the drawings and specific embodiments, the present invention is described in further detail:
Fig. 1 is the schematic diagram of car of the present invention networking.Each vehicle is provided with car-mounted terminal.Car-mounted terminal sends to cloud network, receive data.Here car-mounted terminal is indifferent to the concrete internal structure of cloud network.Surveillance center's (not shown) is communicated with car-mounted terminal by cloud network.
Fig. 2 is the fundamental block diagram of car-mounted terminal of the present invention.
A kind of car-mounted terminal is provided to comprise:
Acquisition module (10), for the kinematic parameter of collection vehicle;
Input module (30), for input data information, or control information;
Output module (40), for output information, or controls vehicle;
Data transmission module (70), for receiving transmission data, communicate with Surveillance center, wherein data transmission module also includes encrypting module (701) for being encrypted data transmission, and authentication module (702), for authentication information is added Frame;
Logging modle (80), for record car-mounted terminal or generate data;
Short-range communications module (90), for short-haul connections, provides authentication;
Also have controller module (50), for controlling above-mentioned module, deal with data computing.
Fig. 3 is the connection layout of car-mounted terminal part of module of the present invention;
Comprising authentication module (901) in described short-range communications module (90), for carrying out certification to driver information, the driver information after certification being recorded in logging modle (80).
Also containing confirming module (303) in input module (30), whether the information of this confirmation module checks input is consistent with the confirmation prestored, and determines whether by certification; Only have the ability authorised vehicles when confirmation is consistent and driver information is consistent to travel, otherwise cut off vehicle oil way, circuit.
Only have simultaneously by after above-mentioned double probate, could steering vehicle.So fully vehicle safety can be ensured.
In addition, in order to ensure data transmission security, monitored monitoring is prevented.Also need to provide basic encryption guarantee to transfer of data.
Described cryptographic algorithm can adopt existing cryptographic algorithm, comprises following algorithm or their combination:
DES (DataEncryptionStandard): symmetry algorithm, data encryption standard, speed, is applicable to the occasion of encrypting mass data;
3DES (TripleDES): be the symmetry algorithm based on DES, carry out Tertiary infilling to a blocks of data three different keys, intensity is higher;
RC2 and RC4: symmetry algorithm, is encrypted by elongated double secret key mass data, faster than DES; IDEA (InternationalDataEncryptionAlgorithm) IDEA, uses 128 keys to provide very strong fail safe;
RSA: invented by RSA company, be a public key algorithm supporting elongated key, the length needing the blocks of files of encryption is also variable, asymmetric arithmetic;
DSA (DigitalSignatureAlgorithm): Digital Signature Algorithm, is a kind of DSS (DSS) of standard, does not include cryptographic algorithm strictly speaking;
AES (AdvancedEncryptionStandard): Advanced Encryption Standard, symmetry algorithm is follow-on cryptographic algorithm standard, and speed is fast, and level of security is high, and a realization of current AES standard is Rijndael algorithm;
BLOWFISH, it uses elongated key, and length can reach 448, and the speed of service is very fast;
MD5: do not include cryptographic algorithm strictly speaking, can only say it is digest algorithm;
To MD5 algorithm concise and to the point describe can be: MD5 with 512 groupings to process the information of input, and each grouping is divided into again 16 32 seat groupings, after have passed through a series of process, the output of algorithm is made up of four 32 groupings, by after these four 32 packet concatenation by generation 128 hashed values.
Other algorithms that described cryptographic algorithm also can adopt the applicant to provide, this part content has submitted other patent applications to, is not repeated herein.Those skilled in the art can according to understanding of illustrating above, the cryptographic algorithm adopted in data transmission procedure, Data Packet Encryption is avoided to the transmission expressly in car networking network, to guarantee data security.
On this basis, encrypting module (701) by the driver information after certification with confirm module confirm after information after encrypting, form encrypted packets.
In addition, resend after being stolen in order to prevent packet, the present invention also provides further anti-impersonator measure.Namely also use authentication module (702), at the trailer sections of encrypted packets, the digital certificate representing described car-mounted terminal is added formation and send packet, and send to Surveillance center.
The application is that digital certificate (CA) is described for authentication information.
Digital certificate is a kind of authoritative electronic document, the third-party institution just by authority, i.e. the certificate signed and issued of CA center.It with digital certificate is that the encryption technology of core can encrypt and decrypt the information of transmission over networks, digital signature and signature verification, guarantees the confidentiality of online transmission of information, integrality.Employ digital certificate, even if the information that you send is being intercepted and captured by other people on the net, even you lost the information such as account, password of individual, still can ensure your account, fund security.
Have a lot of digital and English in digital certificate, when using digital certificate to carry out authentication, it is by the identity code of stochastic generation 128, every part of digital certificate can generate number that is corresponding but that be at every turn all not the same, thus ensure the confidentiality of transfer of data, be namely equivalent to the password that generation one is complicated.Digital certificate has bound the true identity of PKI and holder thereof, it is similar to real-life resident identification card, the license of difference to be digital certificate be no longer papery, but one section containing certificate holder's identity information and the electronic data auditing to sign and issue through authentication center.
Ye Shi CA mechanism of Surveillance center, is also called certificate and awards card (CertificateAuthority) center, as the third party trusted, bears the responsibility of the legitimacy inspection of PKI in Public Key Infrastructure.CA center is that the user of each use public-key cryptography provides a digital certificate, and to be that the user that lists in certification is legal have the public-key cryptography listed in certificate in the effect of digital certificate.The digital signature of CA mechanism makes assailant can not forge and distort certificate.It is responsible for producing, distributing and manage the digital certificate needed for individuality of all participation online transactions, is therefore the core link of secure electronic transaction.For the fail safe at online transmission of information between guarantee user, authenticity, reliability, integrality and non repudiation, not only need to verify the identity reality of user, also need the mechanism that has authority, fairness, uniqueness.
Digital certificate add any part that can be placed on described encrypted packets, also can by encrypted packets decipher after, add in former data structure.But in order to the data structure of compatible different product, the present invention does not need to process encrypted packets, and by encrypted packets integrally, only before Frame or afterwards, add digital certificate.As better execution mode, be added in the interference that data postamble can be avoided legacy data structure.Because the change of the data of frame head part, some old products can None-identified.In order to improve compatibility of the present invention, make old product not need hardware update, the present invention is added on postamble through digital certificate.Namely the digital certificate representing described car-mounted terminal is added formation transmission packet at the trailer sections of encrypted packets by described authentication module (702), and sends to Surveillance center.
The present invention also provides a kind of vehicle authentication sending method of identity-based certification, comprises the steps:
A. short-range communications module (90) communicates with identification module A, Operator identification information is sent to authentication module (901);
B. authentication module (901) reads Operator identification information, and the Operator identification information's comparison with prestoring, sends to controller by the first comparison result;
C. controller reads the first comparison result, if the first comparison result correctly, allows vehicle to travel, is recorded in by the driver information after certification in the middle of logging modle (80); If the first comparison result mistake, then cut off vehicle oil way, circuit by vehicle control module.
In stepb, the Operator identification information prestored, is stored in the logging modle (80) of car-mounted terminal, or is stored in Surveillance center.
After step b, before step c, also have
Step b1, obtains confirmation by input module;
B2, confirm that module (303) reads confirmation, the confirmation comparison with prestoring, sends to controller by the second comparison result;
B3, controller reads the first comparison result and the second comparison result, if correct and the second comparison result of the first comparison result is correctly, allows vehicle to travel, is recorded in by the driver information after certification in logging modle (80); If the first comparison result mistake or the second comparison result mistake, then cut off vehicle oil way, circuit by vehicle control module.
In step b2, the confirmation prestored, is stored in the logging modle (80) of car-mounted terminal, or is stored in Surveillance center.
After step c, also have
Steps d, the information after the driver information after certification and confirmation module being confirmed forms encrypted packets after encrypting;
Step e, adds formation at the trailer sections of encrypted packets by the digital certificate representing described car-mounted terminal and sends packet, and send to Surveillance center.

Claims (2)

1. a car-mounted terminal for the vehicle authentication of identity-based certification, comprising:
Acquisition module (10), for the kinematic parameter of collection vehicle;
Input module (30), for input data information, or control information;
Output module (40), for output information, or controls vehicle;
Data transmission module (70), for receiving transmission data, communicate with Surveillance center, wherein data transmission module also includes encrypting module (701), for being encrypted data transmission, and authentication module (702), for authentication information is added Frame;
Logging modle (80), for record car-mounted terminal or generate data;
Short-range communications module (90), for short-haul connections, authentication is provided, wherein, authentication module (901) is comprised in described short-range communications module (90), for carrying out certification to driver information, the driver information after certification is recorded in logging modle (80);
Also have controller module (50), for controlling above-mentioned module, deal with data computing;
Wherein, also containing confirming module (303) in input module (30), whether the information of this confirmation module checks input is consistent with the confirmation prestored, and determines whether by certification; Only have the ability authorised vehicles when confirmation is consistent and driver information is consistent to travel, otherwise cut off vehicle oil way, circuit;
Information after driver information after certification and confirmation module confirm by described encrypting module (701) forms encrypted packets after encrypting; The digital certificate representing described car-mounted terminal is added formation at the trailer sections of encrypted packets and sends packet by described authentication module (702), and sends to Surveillance center.
2. car-mounted terminal as claimed in claim 1, it is characterized in that, described authentication information is digital certificate (CA).
CN201210299564.0A 2012-08-22 2012-08-22 A kind of car-mounted terminal of vehicle authentication of identity-based certification Expired - Fee Related CN102984196B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210299564.0A CN102984196B (en) 2012-08-22 2012-08-22 A kind of car-mounted terminal of vehicle authentication of identity-based certification

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210299564.0A CN102984196B (en) 2012-08-22 2012-08-22 A kind of car-mounted terminal of vehicle authentication of identity-based certification

Publications (2)

Publication Number Publication Date
CN102984196A CN102984196A (en) 2013-03-20
CN102984196B true CN102984196B (en) 2016-01-13

Family

ID=47857933

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210299564.0A Expired - Fee Related CN102984196B (en) 2012-08-22 2012-08-22 A kind of car-mounted terminal of vehicle authentication of identity-based certification

Country Status (1)

Country Link
CN (1) CN102984196B (en)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103248690A (en) * 2013-04-27 2013-08-14 苏州洁祥电子有限公司 Vehicle networking system and data backup method thereof
CN105323753A (en) * 2014-05-30 2016-02-10 中国电信股份有限公司 In-vehicle safety module, vehicular system and method for information interaction between vehicles
CN104536322B (en) * 2014-12-30 2019-06-25 联想(北京)有限公司 A kind of control method and device
CN104700469B (en) * 2015-04-02 2016-03-23 中经汇通电子商务有限公司 The management of many vehicles instant messages and disposal system and method thereof
DE102016222696B4 (en) * 2016-11-17 2023-02-02 Audi Ag Method for electrically charging an energy store of a motor vehicle, mobile control unit and energy supply device
DE102017204169A1 (en) * 2017-03-14 2018-09-20 Bayerische Motoren Werke Aktiengesellschaft Authentication system for an at least partially autonomous vehicle
CN109774719B (en) * 2017-05-15 2021-06-18 苏州市悠越电子有限公司 Safety system for preventing goods from being lost
CN110264656B (en) * 2019-06-26 2021-01-26 江苏恒宝智能系统技术有限公司 Vehicle-mounted terminal anti-theft brushing system
CN114429276B (en) * 2021-12-22 2024-07-05 北京握奇智能科技有限公司 System and method for realizing bus management based on APP and intelligent equipment

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101811491A (en) * 2009-02-24 2010-08-25 深圳市赛格导航科技股份有限公司 Multiple intelligent anti-theft system and implementation method for automobiles
CN202033813U (en) * 2011-03-29 2011-11-09 上海顺多智能科技有限公司 Vehicle driving safety recording instrument of integrated wireless communication module
WO2012020924A2 (en) * 2010-08-10 2012-02-16 에스케이네트웍스 주식회사 System and method for integrated vehicle management for use by a company or institution

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101811491A (en) * 2009-02-24 2010-08-25 深圳市赛格导航科技股份有限公司 Multiple intelligent anti-theft system and implementation method for automobiles
WO2012020924A2 (en) * 2010-08-10 2012-02-16 에스케이네트웍스 주식회사 System and method for integrated vehicle management for use by a company or institution
CN202033813U (en) * 2011-03-29 2011-11-09 上海顺多智能科技有限公司 Vehicle driving safety recording instrument of integrated wireless communication module

Also Published As

Publication number Publication date
CN102984196A (en) 2013-03-20

Similar Documents

Publication Publication Date Title
CN102984196B (en) A kind of car-mounted terminal of vehicle authentication of identity-based certification
CN109033862B (en) A kind of distributed locomotive electronic system protecting information safety method
CN110769393B (en) Identity authentication system and method for vehicle-road cooperation
US7934095B2 (en) Method for exchanging messages and verifying the authenticity of the messages in an ad hoc network
CN111684764B (en) Cryptographic method and system for digital certificate revocation using blind activation codes
CN104394000A (en) Batched certification method based on pseudonym verification public key in vehicle-mounted network
CN104853351A (en) Internet of Vehicles distributed authentication method based on controllable privacy
KR101521412B1 (en) Protocol Management System for Aggregating Massages based on certification
JP7074863B2 (en) Encryption method and system using activation code for withdrawal of digital certificate
CN106209777A (en) A kind of automatic driving car on-vehicle information interactive system and safety communicating method
CN103051726A (en) System and method for transmitting VANET (vehicle ad hoc network) safety information aggregate based on RSU (Remote Subscriber Unit)
CN106452762A (en) Identity-based high-efficiency data transmission method in vehicular ad hoc network
CN110071797B (en) Method for changing privacy protection authentication of internet of vehicles based on pseudonymous names of mixed contexts
CN116032495B (en) Vehicle-cloud cooperative safety transmission data anomaly detection method based on intelligent traffic system
CN113542428B (en) Vehicle data uploading method and device, vehicle, system and storage medium
CN113852632A (en) Vehicle identity authentication method, system, device and storage medium based on SM9 algorithm
CN112584355A (en) Key cooperation method, system and medium for inter-vehicle communication
CN107040516B (en) Efficient pseudonym management and data integrity protection protocol
CN112784310A (en) Certificate management method, certificate authorization center, management node and Internet of vehicles terminal
CN103415011A (en) Safety certification method of vehicular adhoc network based on intelligent card
CN112437108A (en) Decentralized identity authentication device and method for privacy protection of Internet of vehicles
Labrador et al. Implementing blockchain technology in the Internet of Vehicle (IoV)
CN109379372B (en) A kind of condition anonymous authentication method without certificate and signature towards VANET
Shen et al. An efficient public key management system: an application in vehicular ad hoc networks
CN111479237B (en) Decentralized distributed VANET system based on block chain and deep learning

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
DD01 Delivery of document by public notice

Addressee: Li Juan

Document name: payment instructions

DD01 Delivery of document by public notice
DD01 Delivery of document by public notice
DD01 Delivery of document by public notice

Addressee: Li Juan

Document name: payment instructions

DD01 Delivery of document by public notice
DD01 Delivery of document by public notice

Addressee: Li Juan

Document name: Notice of Termination of Patent Rights

CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20160113