EP3532973A1 - Procédé d'installation d'un certificat dans un calculateur de véhicule, calculateur et système associés - Google Patents
Procédé d'installation d'un certificat dans un calculateur de véhicule, calculateur et système associésInfo
- Publication number
- EP3532973A1 EP3532973A1 EP17794997.1A EP17794997A EP3532973A1 EP 3532973 A1 EP3532973 A1 EP 3532973A1 EP 17794997 A EP17794997 A EP 17794997A EP 3532973 A1 EP3532973 A1 EP 3532973A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- certificate
- computer
- mobile terminal
- calculator
- installing
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/33—User authentication using certificates
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/44—Program or device authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/84—Vehicles
Definitions
- the invention relates to the installation of a certificate in a vehicle calculator.
- the French patent application FR3022664 discloses a method of authenticating an application executed on a terminal with a service provider, for example a vehicle calculator.
- the method uses tokens, issued by a server, and describing authorizations and durations of validity.
- Such a method requires the establishment of certificates (and also certificate revocation lists) in the memory of the calculator.
- One solution is to download the certificates into the computer when it is installed in the vehicle.
- This solution has the disadvantage of increasing the duration of the manufacturing process of the vehicle, in the factory, by adding an additional step of downloading.
- the invention therefore aims to remedy the aforementioned problem by proposing the installation of a certificate in a vehicle calculator securely without increasing the duration of the vehicle manufacturing process, particularly for a computer without access direct to an extensive network (Internet type).
- the invention makes it possible to provide, by means of a mobile terminal, the certificates that are necessary for the validation of the secure information transmitted to the computer.
- the invention has the advantage of operating for a computer without direct access to a wide area network.
- the computer does not need to issue a request for a certificate directly to the trusted authority.
- the first communication phases enable the computer to request the certificate if it is missing or to request the certificates of the intermediate authorities necessary for the validation of the communications as well as the request revocation lists if they are no longer valid. It is then the terminal that retrieves the certificate and makes it available to the calculator.
- the request and the provision of the certificate (s) are based on their presence or not, the date of validity based on the synchronized time.
- the computer will, depending on the case, ask for its certificate, the certificates of the certification authorities and provide the revocation lists and force their update.
- the step of verifying the presence of a certificate in memory comprises at least one of the following steps: checking the presence of the certificate of the computer, said certificate being intended to sign messages issued by the computer,
- the invention makes it possible to take into account all the components of a PKI architecture (intermediate certificate and associated revocation list).
- the computer having a secure memory in which is stored a private key, the issued certificate request is signed with said private key.
- the received certificate comprising a data field indicating a source, a data field indicating an identifier and an expiry date
- the step of verifying the received certificate comprises at least one of the following steps: the verification of the from the certificate, verification of the identifier of the certificate, verification of the date of validity of the certificate.
- This feature improves the safety of the process by performing checks.
- the method of installing a certificate in a vehicle calculator further comprises steps of: Sending, by the mobile terminal, the certificate request to a certification authority in response to the receipt of the certificate request from the calculator;
- the mobile terminal receives a certificate from the certification authority and sends the certificate to the computer.
- the method of installing a certificate in a vehicle calculator according to the invention further comprises steps of:
- the invention also relates to a device for installing a certificate in a vehicle calculator, comprising:
- Means for receiving a connection request from a mobile terminal Means for receiving a connection request from a mobile terminal
- the invention also relates to a computer characterized in that it comprises a device for installing a certificate according to the invention.
- the invention also relates to a vehicle characterized in that it comprises a computer according to the invention.
- the invention also relates to an authentication system comprising at least one vehicle according to the invention.
- FIG. 1 illustrates an exemplary system according to the invention
- FIG. 2 illustrates a logic diagram representing a first part of the method according to the invention
- FIG. 3 illustrates a logic diagram representing a second part of the method according to the invention.
- the authentication system comprises at least one terminal 103, a service provider 104 and an authentication authority 101.
- the invention makes it possible to transmit certificates and revocation lists between items embedded in the vehicle and landed items.
- the transmission of these authentications and these authorizations is ensured by means of authorization tokens also called token or "identity credentials" in English.
- the terminal 103 is a smart mobile phone (also called smartphone in English). But the invention is not limited to this example. Indeed, the terminal 103 may be a laptop, a touch pad or any other connected object (ie capable of exchanging data via a wireless connection).
- This mobile equipment belongs, for example, to the driver of a vehicle or to one of the passengers of the vehicle.
- the service provider 104 (or SP for "Service Provider" in English) is an IT resource. SP 104 controls access to data or commands to perform an activity. SP 104 protects access to data and applications. It refuses any access without prior authentication. Advantageously, it redirects the unauthenticated user to an identity provider. Access to the service is therefore restricted. Users must be identified before they can access data or start the execution of an order.
- the tokens, used to transmit the missing information to the SP 104 to the management of the authentications and authorizations are encrypted (or encrypted) according to an asymmetric cryptography mechanism (also called public key cryptography).
- an asymmetric cryptography mechanism also called public key cryptography.
- a pair of keys is used: a public key for encryption and a private key for decryption.
- the invention makes it possible, during the authentication mechanism of the client through the terminal 103 on the SP 104, through an evolution of the protocol, to transmit the missing information to the SP 104 to the management of the authentications and authorizations.
- Tokens are also signed by a trusted authority (Idp 101) to ensure that they are compliant and that they come from an authorized source.
- Idp 101 a trusted authority
- the SP 104 comprises a secure storage space able to store a private key used to decrypt the authorization tokens.
- the secure storage space is for example a Trusted Platform Module (TPM) chip, which is a hardware cryptographic component for storing secrets (such as encryption keys) securely.
- TPM Trusted Platform Module
- the certificate of the root CA used in securing access is written in secure storage
- the SP 104 is an electronic box of a motor vehicle.
- the electronic box is an on-board vehicle that is the boundary of the vehicle data to the outside through various means: cable, wireless protocols (wifi, bluetooth, 3G, etc.).
- the SP can be a management information system 104 'or the system that controls a numerically controlled machine or more generally any connected object (ie capable of exchanging data via a wireless connection) and including a secure storage space capable of storing a private key.
- Identity Provider 101 (or IdP for Identity Provider) is responsible for authenticating the user as well as retrieving additional information associated with his vehicle.
- Idp 101 includes means for electronically signing authorization tokens.
- the electronic signature makes it possible to guarantee the integrity of a token and to authenticate the author.
- the electronic signature system uses a pair of keys. A private key used to sign a token and a public key to read the signed token.
- Idp 101 includes means for encrypting the token.
- the token is encrypted using a public key associated with the SP 104 for which the token is intended.
- the encrypted token is only readable by the SP for which it is intended.
- the identity provider allows the users 102 to authenticate and provide tokens on their PC or smartphone 103 allowing them to be recognized and to carry permissions on landed infrastructures but also to use them on connected boxes to access to specific functions.
- the system also includes a public key infrastructure 1 10 (or PKI for Public Key Infrastructure in English).
- a PKI is a computer resource for generating, distributing and publishing certificates to the various necessary components (SP, IdP ...) ⁇
- SP, IdP 10.1.1.1 public key infrastructure
- the IdP 101 and the various SP 104s each have a certificate of their own.
- a certificate (or electronic certificate) is a set of data containing for example a public key, identification information (for example: a name, usually stored in a data field called CN for "Common Name") and a private key to sign or decipher.
- a certificate is used, for example, by electronic equipment (for example an onboard computer) to sign documents or to authenticate with other equipment (for example a web server).
- electronic equipment for example an onboard computer
- other equipment for example a web server
- the system also distributes CRL certificate revocation lists. Recall that a certificate revocation list is a list of credentials of certificates that have been revoked or invalidated and are no longer trustworthy.
- the public key infrastructure 1 10 has a root authority and an intermediate authority.
- the calculator certificate is derived from an intermediate authority certificate that is derived from the root authority.
- the invention also relates to a method for installing a certificate in a vehicle computer 104.
- the method according to the invention comprises the following steps.
- the receipt 201 of a connection request from a mobile terminal 103 The receipt 201 of a connection request from a mobile terminal 103.
- the application on the terminal 103 interrogates 201 the computer 104 by asking its identifier (UIN).
- the computer checks 202 then the presence of a valid certificate in memory.
- the verification step 202 of the presence of a certificate in memory comprises at least one of the following steps: - verification of the presence of his certificate.
- This certificate contains a public key derived from the private key for signing messages issued by the computer 104;
- a first certificate revocation list is a list from the root authority.
- the other certificate revocation lists are lists issued by intermediate authorities.
- the computer issues 203, to the mobile terminal 103, an error message and a request to fetch the certificate associated with its serial number (UIN).
- the mobile terminal 103 When it receives the certificate request, the mobile terminal 103 sends 204 said request for downloading the certificate, to the certification authority 101.
- the certification authority 101 makes available to the terminal 103, the valid certificate for the computer 104.
- the mobile terminal 103 receives the certificate 205 and sends it to the calculator
- the computer 104 receives 206 the certificate, sent by the mobile terminal 103.
- the calculator 104 checks the received certificate 207.
- the verification step 207 of the certificate received comprises at least one of the following steps:
- the certificate comprising a data field indicating its provenance (eg in the form of an identifier of the authority 101), the source is compared with a source data prerecorded in a memory of the calculator 104; the verification of the identifier for which the certificate is intended, the certificate comprising a data field indicating an identifier, the identifier of the certificate is compared with the identifier of the computer 104;
- the certificate is verified (that is, if each verified data corresponds to the expected value), then the certificate is installed 208 in the memory of the computer 104.
- the system and the method according to the invention also make it possible to update the revocation lists associated with the certificates stored in the computer's memory 104.
- the method according to the invention advantageously comprises the following steps.
- the receipt 301 of a connection request from a mobile terminal 103 The receipt 301 of a connection request from a mobile terminal 103.
- the transmission 303 destined for the mobile terminal 103, an error message and a request for one of the revocation lists issued by an intermediate authority.
- the mobile terminal 103 In response to the error message, the mobile terminal 103 requests 303a the expiration date of the revocation list.
- the calculator 104 sends 303b the expiry date of the certificate revocation list.
- the terminal 103 checks the end of validity date and if it is validated will download the certificates (if the valid one) and the new revocation list.
- the mobile terminal 103 sends a request 304 to download the certificate revocation list to the certification authority 101.
- the PKI 101 In response to this request the PKI 101 provides 305, to the terminal 103, a valid certificate revocation list.
- the mobile terminal 103 receives the certificate revocation list and sends it to the computer 104.
- the calculator 104 receives 306 the certificate revocation list, sent by the mobile terminal 103.
- the calculator checks 307 the received certificate revocation list.
- the calculator installs the certificate revocation list 308 in its memory, if the certificate revocation list is checked.
- the verification step 307 of the received certificate revocation list comprises the following substeps:
- the computer 104 sends a first error code
- the computer 104 sends a fifth error code.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Signal Processing (AREA)
- Physics & Mathematics (AREA)
- Software Systems (AREA)
- General Physics & Mathematics (AREA)
- Computer Networks & Wireless Communication (AREA)
- Computing Systems (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FR1660363A FR3057973B1 (fr) | 2016-10-25 | 2016-10-25 | Procede d'installation d'un certificat dans un calculateur de vehicule, calculateur et systeme associes |
| PCT/FR2017/052750 WO2018078234A1 (fr) | 2016-10-25 | 2017-10-06 | Procédé d'installation d'un certificat dans un calculateur de véhicule, calculateur et système associés |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP3532973A1 true EP3532973A1 (fr) | 2019-09-04 |
Family
ID=58162733
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP17794997.1A Ceased EP3532973A1 (fr) | 2016-10-25 | 2017-10-06 | Procédé d'installation d'un certificat dans un calculateur de véhicule, calculateur et système associés |
Country Status (4)
| Country | Link |
|---|---|
| EP (1) | EP3532973A1 (fr) |
| CN (1) | CN109863492A (fr) |
| FR (1) | FR3057973B1 (fr) |
| WO (1) | WO2018078234A1 (fr) |
Families Citing this family (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN110418309B (zh) * | 2019-07-30 | 2022-06-28 | 深圳成谷科技有限公司 | 一种车路协同证书发放的方法、装置、设备及车载单元 |
| CN110599647A (zh) * | 2019-09-05 | 2019-12-20 | 广东纬德信息科技有限公司 | 一种智能锁认证方法及系统 |
| CN113094687A (zh) * | 2020-01-08 | 2021-07-09 | 北京新能源汽车股份有限公司 | 一种数字证书灌装方法、灌装设备及车载终端 |
| CN113765668B (zh) * | 2020-06-03 | 2024-07-02 | 广州汽车集团股份有限公司 | 一种车辆数字证书在线安装方法及车辆数字证书管理装置 |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20110191581A1 (en) * | 2009-08-27 | 2011-08-04 | Telcordia Technologies, Inc. | Method and system for use in managing vehicle digital certificates |
Family Cites Families (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2008081150A2 (fr) * | 2006-12-28 | 2008-07-10 | France Telecom | Procede et systeme d'autorisation d'acces a un serveur |
| CN101853337B (zh) * | 2009-03-31 | 2012-05-30 | 中国人民解放军信息工程大学 | 可信计算中公钥证书的撤销方法、装置及系统 |
| CN102907039B (zh) * | 2010-05-24 | 2016-03-16 | 瑞萨电子株式会社 | 通信系统、车载终端、路侧装置 |
| US9769658B2 (en) * | 2013-06-23 | 2017-09-19 | Shlomi Dolev | Certificating vehicle public key with vehicle attributes |
| FR3022664B1 (fr) * | 2014-06-20 | 2017-10-27 | Peugeot Citroen Automobiles Sa | Procede et systeme d'authentification |
| US9544768B2 (en) * | 2015-03-20 | 2017-01-10 | Hyundai Motor Company | Method and apparatus for performing secure Bluetooth communication |
-
2016
- 2016-10-25 FR FR1660363A patent/FR3057973B1/fr active Active
-
2017
- 2017-10-06 WO PCT/FR2017/052750 patent/WO2018078234A1/fr not_active Ceased
- 2017-10-06 EP EP17794997.1A patent/EP3532973A1/fr not_active Ceased
- 2017-10-06 CN CN201780065953.8A patent/CN109863492A/zh active Pending
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20110191581A1 (en) * | 2009-08-27 | 2011-08-04 | Telcordia Technologies, Inc. | Method and system for use in managing vehicle digital certificates |
Also Published As
| Publication number | Publication date |
|---|---|
| WO2018078234A1 (fr) | 2018-05-03 |
| FR3057973B1 (fr) | 2018-11-30 |
| FR3057973A1 (fr) | 2018-04-27 |
| CN109863492A (zh) | 2019-06-07 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN111884805B (zh) | 基于区块链及分布式身份的数据托管方法及系统 | |
| EP3602991B1 (fr) | Mécanisme permettant d'obtenir une vérification d'identité mutuelle par l'intermédiaire de canaux de dispositif d'application unidirectionnels | |
| CN109302369B (zh) | 一种基于密钥验证的数据传输方法及装置 | |
| WO2015193578A1 (fr) | Procede et systeme d'authentification au moyen de jetons | |
| EP3357212A1 (fr) | Procede et dispositif d'authentification ameliores | |
| FR3066666A1 (fr) | Procede de securisation d'une communication sans gestion d'etats | |
| EP3532973A1 (fr) | Procédé d'installation d'un certificat dans un calculateur de véhicule, calculateur et système associés | |
| CN115396121A (zh) | 安全芯片ota数据包的安全认证方法及安全芯片装置 | |
| KR20000024445A (ko) | 전자서명을 이용한 사용자 인증기법과 무선 전자서명을이용한사용자 인증기법 및 휴대형 처리 도구 | |
| WO2017114809A1 (fr) | Deuxieme authentification dynamique d'une signature electronique utilisant un module materiel securise | |
| US11218329B2 (en) | Certificate generation with fallback certificates | |
| KR102053993B1 (ko) | 인증서를 이용한 사용자 인증 방법 | |
| KR20250046168A (ko) | 자동차에 대한 접근 제어 | |
| CN112235276A (zh) | 主从设备交互方法、装置、系统、电子设备和计算机介质 | |
| US9281947B2 (en) | Security mechanism within a local area network | |
| WO2022208195A1 (fr) | Système et procédé d'identification, d'enregistrement et de mise en service sécurisés de dispositifs de sécurité | |
| FR3073111A1 (fr) | Procede et dispositif pour memoriser et partager des donnees integres | |
| FR3073998B1 (fr) | Procede numerique de controle d'acces a un objet, une ressource ou service par un utilisateur | |
| US20260074918A1 (en) | Method for authenticating data | |
| FR3093887A1 (fr) | Procédé pour délivrer, à un dispositif nomade, une autorisation d’accès à un calculateur connecté d’un véhicule | |
| US20250363843A1 (en) | Method and Device for Securely Sharing a Digital Key for a Vehicle | |
| FR3044500A1 (fr) | Procede et systeme d'acces, par un serveur, a des donnees confidentielles disponibles aupres d'un fournisseur de service. | |
| WO2025125562A1 (fr) | Procédé d'authentification d'un individu pour la mise en œuvre d'une transaction sur un terminal marchand | |
| FR3044501A1 (fr) | Procede de transmission, par un terminal, de donnees confidentielles depuis un calculateur telematique de vehicule vers un serveur | |
| FR3041841A1 (fr) | Procede et dispositif pour acceder a une ressource a l’aide d’un jeton chiffre |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: UNKNOWN |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE |
|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE |
|
| 17P | Request for examination filed |
Effective date: 20190513 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| AX | Request for extension of the european patent |
Extension state: BA ME |
|
| DAV | Request for validation of the european patent (deleted) | ||
| DAX | Request for extension of the european patent (deleted) | ||
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: EXAMINATION IS IN PROGRESS |
|
| 17Q | First examination report despatched |
Effective date: 20201005 |
|
| RAP1 | Party data changed (applicant data changed or rights of an application transferred) |
Owner name: PSA AUTOMOBILES SA |
|
| REG | Reference to a national code |
Ref country code: DE Ref legal event code: R003 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION HAS BEEN REFUSED |
|
| 18R | Application refused |
Effective date: 20220525 |