WO2020170732A1 - センター装置、データ配信システム及び配信制御プログラム - Google Patents

センター装置、データ配信システム及び配信制御プログラム Download PDF

Info

Publication number
WO2020170732A1
WO2020170732A1 PCT/JP2020/002966 JP2020002966W WO2020170732A1 WO 2020170732 A1 WO2020170732 A1 WO 2020170732A1 JP 2020002966 W JP2020002966 W JP 2020002966W WO 2020170732 A1 WO2020170732 A1 WO 2020170732A1
Authority
WO
WIPO (PCT)
Prior art keywords
vehicle
request
consent
approval
center device
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/JP2020/002966
Other languages
English (en)
French (fr)
Japanese (ja)
Inventor
那央 櫻井
英朗 吉見
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Denso Corp
Original Assignee
Denso Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Denso Corp filed Critical Denso Corp
Publication of WO2020170732A1 publication Critical patent/WO2020170732A1/ja
Priority to US17/404,372 priority Critical patent/US12174977B2/en
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
    • G06F21/572Secure firmware programming, e.g. of basic input output system [BIOS]
    • BPERFORMING OPERATIONS; TRANSPORTING
    • B60VEHICLES IN GENERAL
    • B60RVEHICLES, VEHICLE FITTINGS, OR VEHICLE PARTS, NOT OTHERWISE PROVIDED FOR
    • B60R16/00Electric or fluid circuits specially adapted for vehicles and not otherwise provided for; Arrangement of elements of electric or fluid circuits specially adapted for vehicles and not otherwise provided for
    • B60R16/02Electric or fluid circuits specially adapted for vehicles and not otherwise provided for; Arrangement of elements of electric or fluid circuits specially adapted for vehicles and not otherwise provided for electric constitutive elements
    • BPERFORMING OPERATIONS; TRANSPORTING
    • B60VEHICLES IN GENERAL
    • B60WCONJOINT CONTROL OF VEHICLE SUB-UNITS OF DIFFERENT TYPE OR DIFFERENT FUNCTION; CONTROL SYSTEMS SPECIALLY ADAPTED FOR HYBRID VEHICLES; ROAD VEHICLE DRIVE CONTROL SYSTEMS FOR PURPOSES NOT RELATED TO THE CONTROL OF A PARTICULAR SUB-UNIT
    • B60W50/00Details of control systems for road vehicle drive control not related to the control of a particular sub-unit, e.g. process diagnostic or vehicle driver interfaces
    • B60W50/04Monitoring the functioning of the control system
    • BPERFORMING OPERATIONS; TRANSPORTING
    • B60VEHICLES IN GENERAL
    • B60WCONJOINT CONTROL OF VEHICLE SUB-UNITS OF DIFFERENT TYPE OR DIFFERENT FUNCTION; CONTROL SYSTEMS SPECIALLY ADAPTED FOR HYBRID VEHICLES; ROAD VEHICLE DRIVE CONTROL SYSTEMS FOR PURPOSES NOT RELATED TO THE CONTROL OF A PARTICULAR SUB-UNIT
    • B60W50/00Details of control systems for road vehicle drive control not related to the control of a particular sub-unit, e.g. process diagnostic or vehicle driver interfaces
    • B60W50/08Interaction between the driver and the control system
    • B60W50/14Means for informing the driver, warning the driver or prompting a driver intervention
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F13/00Interconnection of, or transfer of information or other signals between, memories, input/output devices or central processing units
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • H04W12/084Access security using delegated authorisation, e.g. open authorisation [OAuth] protocol
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/30Services specially adapted for particular environments, situations or purposes
    • H04W4/40Services specially adapted for particular environments, situations or purposes for vehicles, e.g. vehicle-to-pedestrians [V2P]
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2103Challenge-response
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2117User registration

Definitions

  • the present disclosure relates to a center device, a data distribution system, and a distribution control program.
  • Patent Document 1 discloses a configuration in which a center device wirelessly distributes replog data to a vehicle side and updates an application program of an in-vehicle electronic control device (hereinafter, ECU (Electronic Control Unit)).
  • ECU Electronic Control Unit
  • HMI Human Machine Interface
  • a vehicle HMI device installed in a vehicle such as a navigation device, but also a user such as a smartphone can carry it. If it can be operated from a mobile terminal as well, the convenience of the user can be improved.
  • a mobile terminal installed in a vehicle such as a navigation device
  • the convenience of the user can be improved.
  • the configuration that can be operated from a plurality of devices such as a vehicle HMI device and a mobile terminal, the following problems are assumed.
  • the owner of the vehicle is changed, but the information about the owner change may not be managed by the center device that distributes the replog data.
  • the campaign notification notifying the distribution of the replog data is not sent from the center device to the mobile terminal of the current owner of the vehicle, Sent to the mobile terminal of the vehicle's old owner.
  • the old owner permits the distribution of the replog data
  • the distribution of the replog data will be started even though the current owner of the vehicle does not permit the distribution of the replog data, and the ECU application program Will be updated.
  • the purpose of this disclosure is to appropriately distribute data to the vehicle side.
  • the consent request unit makes an approval request for data distribution to the vehicle side to a plurality of devices.
  • the consent determination unit determines approval responses from a plurality of devices.
  • the distribution control unit controls data distribution to the vehicle side according to the determination result of the consent determination unit.
  • the devices to which the current owner of the vehicle responds to the approval in the multiple devices subject to the approval request for example, the owner of the vehicle is changed and the approval request is sent to the device of the old owner, and the old data is distributed. Even if the owner permits it, it is possible to avoid the situation where the data distribution is started only by the permission of the old owner. As a result, it is possible to prevent the situation where the data distribution is started even though the current vehicle owner does not permit the data distribution, and the data distribution from the center device to the vehicle side can be prevented. It can be done properly.
  • the center device issues a consent request for data distribution to the vehicle side to a plurality of devices, determines approval responses from the plurality of devices, and determines data to the vehicle side according to the determination result. Control delivery. The device responds to the approval request from the center device.
  • the owner of the vehicle is changed and the approval request is sent to the device of the old owner, and the old data is distributed. Even if the owner permits it, it is possible to avoid the situation where the data distribution is started only by the permission of the old owner.
  • FIG. 1 is a diagram showing an overall configuration of one embodiment
  • FIG. 2 is a diagram showing changes in position information
  • FIG. 3 is a diagram showing a procedure of one-step approval
  • FIG. 4 is a diagram showing screen transitions in the mobile terminal
  • FIG. 5 is a diagram (No. 1) showing the procedure of the two-step consent
  • FIG. 6 is a diagram (No. 1) showing screen transitions in the mobile terminal and the vehicle HMI device
  • FIG. 7 is a diagram (part 2) showing the procedure of the two-step approval
  • FIG. 8 is a diagram (part 2) showing screen transitions in the mobile terminal and the vehicle HMI device
  • FIG. 1 is a diagram showing an overall configuration of one embodiment
  • FIG. 2 is a diagram showing changes in position information
  • FIG. 3 is a diagram showing a procedure of one-step approval
  • FIG. 4 is a diagram showing screen transitions in the mobile terminal
  • FIG. 5 is a diagram (No. 1) showing the procedure of the two-step consent
  • FIG. 6 is a
  • FIG. 9 is a diagram (No. 1) showing the flow of processing of one-step approval
  • FIG. 10 is a diagram (No. 2) showing the flow of the process of the one-step consent
  • FIG. 11 is a diagram (No. 1) showing the flow of the two-step consent process
  • FIG. 12 is a diagram (No. 2) showing the flow of processing of two-step consent
  • FIG. 13 is a diagram (No. 3) showing the flow of processing of two-step approval
  • FIG. 14 is a diagram (No. 4) showing the flow of the two-step consent process.
  • FIG. 15 is a diagram (No. 5) showing the flow of the two-step consent process.
  • FIG. 16 is a diagram (No. 6) showing the flow of the two-step approval process.
  • the data distribution system is a system in which the center device wirelessly distributes data to the vehicle side.
  • the data distributed from the center device to the vehicle side for example, replog data for updating an application program used for vehicle control or diagnosis of an ECU mounted on the vehicle is exemplified.
  • the replog data mentioned here includes software necessary for the hardware (physical machine) of the ECU to execute the application program and control the operation of the ECU.
  • a data distribution system 1 includes a center device 2 that distributes replog data to a vehicle side, a campaign manager terminal 3 that provides replog data to the center device 2 and is managed by a campaign manager, and a vehicle.
  • the vehicle-side system 4 mounted on the vehicle and the mobile terminal 5 (first device) that can be carried by the user.
  • the mobile terminal 5 is, for example, a smartphone or a tablet having a Web browser.
  • the center device 2, the campaign manager terminal 3, the vehicle side system 4, and the mobile terminal 5 are configured to be capable of data communication via the communication network 6.
  • the communication network 6 includes a communication network compliant with the LPWA (Low Power Wide Area) communication system and a communication network compliant with the LTE (Long Term Evolution) communication system.
  • the center device 2 and the vehicle-side system 4 and the mobile terminal 5 have a one-to-many relationship, and the center device 2 is capable of data communication with an unspecified number of vehicle-side systems 4 and mobile terminals 5, and does not store the replog data. It can be distributed to a specific number of vehicle-side systems 4 and mobile terminals 5.
  • the campaign manager terminal 3 manages the replog data distributed from the center device 2 to the vehicle side, and transmits the campaign information to the center device 2 when the replog data distribution event is established due to, for example, a function improvement or a bug fix.
  • the center device 2 Upon receiving the campaign information sent from the campaign manager terminal 3, the center device 2 sends a campaign notification to the vehicle-side system 4 or the mobile terminal 5 to notify the delivery of the replog data.
  • the vehicle-side system 4 has a vehicle master device 7.
  • the vehicle master device 7 has an in-vehicle communication device 8 and a gateway device 9, and the in-vehicle communication device 8 and the gateway device 9 are connected so as to be capable of data communication.
  • the vehicle-mounted communication device 8 performs data communication with the center device 2 via the communication network 6.
  • the in-vehicle communication device 8 downloads the replog data from the center device 2, the in-vehicle communication device 8 transfers the downloaded replog data to the gateway device 9.
  • a vehicle HMI device 12 (second device) is connected to the gateway device 9 via a bus 10, and various ECUs 13 are connected to the gateway device 9 via a bus 11.
  • the vehicle HMI device 12 has an HMI function and has a function of displaying various screens and a function of accepting a user operation.
  • the bus 11 is, for example, a body network bus, a traveling network bus, a multimedia network bus, or the like.
  • An ECU that controls the body system is connected to the bus of the body system network, for example, a door ECU that controls locking/unlocking of the door is connected.
  • An ECU that controls the traveling system is connected to the bus of the traveling system network, for example, an engine ECU that controls the drive of the engine.
  • An ECU that controls a multimedia system is connected to a bus of the multimedia network, for example, a navigation ECU that controls a navigation system is connected to the bus.
  • the type and number of buses 11 and the type and number of ECUs 13 are not limited to the illustrated configuration.
  • the gateway device 9 has a data relay function, and when the in-vehicle communication device 8 transfers the replog data, the transferred replog data is distributed to the ECU 13 designated as the distribution destination. Upon receiving the replog data from the gateway device 9, the ECU 13 writes the received replog data in the flash memory. The ECU 13 updates the application program by writing the replog data in the flash memory, and improves the function of the application program and repairs the bug.
  • the mobile terminal 5 and the vehicle HMI device 12 each receive the campaign notification transmitted from the center device 2, the mobile device 5 and the vehicle HMI device 12 display a campaign notification screen, and the replog data can be downloaded from the center device 2. Notify the user of the indicated campaign information.
  • the campaign notification screen is displayed on the mobile terminal 5 or the vehicle HMI device 12, the user confirms the procedure for updating the application program on various screens, and inputs or selects necessary items to select the application program. It is possible to renew.
  • the user can use the mobile terminal 5 and the vehicle HMI device 12 for the outside of the vehicle compartment and the inside of the vehicle compartment to perform the procedure for updating the application program.
  • the user can perform the procedure for updating the application program from the vehicle HMI device 12 while the user is in the vehicle, and the procedure for updating the application program from the mobile terminal 5 if he/she owns the mobile terminal 5 even when not in the vehicle. Is possible. If the update of the application program is urgent, the replog data may be downloaded from the center device 2 without displaying the campaign notification screen and without the user performing the procedure for updating the application program.
  • the center device 2 has a control unit 14, a data communication unit 15, a campaign information storage unit 16, a user information storage unit 17, a vehicle information storage unit 18, and an external information storage unit 19.
  • the present embodiment exemplifies a configuration in which the storage units 16 to 19 are provided inside the center device 2, the storage units 16 to 19 are provided in an external server different from the center device 2.
  • the center device 2 and the external server may perform data communication with each other.
  • the data communication unit 15 performs data communication with the campaign administrator terminal 3, the vehicle side system 4, and the mobile terminal 5 via the communication network 6.
  • the campaign information storage unit 16 stores various kinds of information regarding the replog data to be distributed as campaign information.
  • the campaign information includes a distribution destination, a distribution data amount, a type of replog data, and the like, and is stored in the campaign information storage unit 16 by being transmitted from the campaign manager terminal 3 to the center device 2.
  • the user information storage unit 17 stores various kinds of information regarding the owner who owns the vehicle as user information.
  • the user information includes a vehicle identification number (hereinafter referred to as VIN (Vehicle Identification Number)) uniquely assigned to the vehicle, a telephone number of the vehicle-mounted communication device 8 mounted on the vehicle, and a mobile terminal 5 owned by the user. Including the telephone number, etc.
  • VIN Vehicle Identification Number
  • the user information is stored in the user information storage unit 17 when the user performs a registration operation using the vehicle HMI device 12 when the vehicle is purchased and is transmitted from the vehicle master device 7 to the center device 2.
  • the owner of the vehicle is changed, so that the user information also needs to be changed in accordance with the change of the owner.
  • the vehicle information storage unit 18 stores various kinds of information regarding the vehicle as vehicle information.
  • the vehicle information includes log information indicating a vehicle log and position information indicating a vehicle position.
  • the vehicle log is, for example, an engine on time, an engine off time, an accelerator operation time or operation amount, a brake operation time or operation amount, a steering operation time or operation amount, or the like.
  • the vehicle information is stored in the vehicle information storage unit 18 by being transmitted from the vehicle master device 7 to the center device 2.
  • the external information storage unit 19 stores various information acquired from outside the vehicle as external information.
  • the external information includes, for example, map information and is stored in the external information storage unit 19 by being transmitted to the center device 2 from a map information distribution server that distributes the map information.
  • the control unit 14 has a microcomputer including a CPU (Central Processing Unit), a ROM (Read Only Memory), a RAM (Random Access Memory), and executes a control program stored in a non-transitional physical storage medium. Performs various processing to control the operation of the center device 2.
  • the control program executed by the control unit 14 includes a delivery control program.
  • the control unit 14 includes a consent request unit 14a, a consent determination unit 14b, a distribution control unit 14c, a necessity determination unit 14d, and an identity confirmation determination unit 14e.
  • the consent requesting unit 14a causes the data communication unit 15 to transmit the campaign notification and the approval request to the mobile terminal 5 and the vehicle HMI device 12, thereby allowing the mobile terminal 5 and the vehicle HMI device 12 to request the consent for the distribution of the replog data. To do.
  • the consent request unit 14a makes an approval request, there are a one-step approval for making the approval request only to the mobile terminal 5 and a two-step approval for making the approval request to the mobile terminal 5 and the vehicle HMI device 12.
  • the approval determination unit 14b determines the approval response from the mobile terminal 5 or the vehicle HMI device 12.
  • the approval determination unit 14b determines that the approval response transmitted from the mobile terminal 5 or the vehicle HMI device 12 indicates the approval because the owner has performed the operation of allowing the approval by the mobile terminal 5 or the vehicle HMI device 12. Determines that the consent response is permission.
  • the consent determination unit 14b transmits from the mobile terminal 5 or the vehicle HMI device 12 because the owner has performed an operation of rejecting the approval by the mobile terminal 5 or the vehicle HMI device 12 or has not performed any operation. If the accepted response indicates refusal, it is determined that the accepted response is rejection.
  • the delivery control unit 14c controls delivery of the replog data to the vehicle side.
  • the necessity presence/absence determining unit 14d determines, for example, a change in the vehicle state, determines whether or not it is necessary to make an approval request to the mobile terminal 5 and the vehicle HMI device 12, that is, whether or not to make a two-step approval, and determines one step. Decide whether to accept or two-step consent.
  • the necessity determination unit 14d determines, for example, a change in the parking position, a change in the traveling route, or a change in the driving operation as a change in the vehicle state, and determines which of the one-step approval and the two-step approval is to be performed.
  • the necessity determination unit 14d periodically determines, for example, the vehicle position indicated by the position information at a specific time every day, and determines that the vehicle position has not changed, it is determined that the two-step approval is not necessary. However, if it is determined that the vehicle position has changed, it is determined that the two-step approval needs to be performed. As shown in FIG. 2, the necessity determination unit 14d determines that the vehicle position at a specific time (“22:00” in FIG.
  • the necessity determination unit 14d periodically determines, for example, a traveling route in a specific time zone every day, and determines that the traveling route has changed at a specific date, the owner may be changed. May be determined to be high.
  • the necessity determination unit 14d periodically determines a driving operation (for example, an acceleration/deceleration operation based on the frequency or the operation amount of the accelerator operation or the brake operation, or a sharp turn operation based on the frequency or the operation amount of the steering operation). If it is determined that the driving operation has changed with a specific date as a boundary, it may be determined that there is a high possibility that the owner has been changed.
  • a driving operation for example, an acceleration/deceleration operation based on the frequency or the operation amount of the accelerator operation or the brake operation, or a sharp turn operation based on the frequency or the operation amount of the steering operation.
  • the necessity determination unit 14d determines that when the owner of the vehicle is changed because the vehicle is bought or sold or transferred, the living base of the owner is changed to change the parking position or the traveling route. Since the driving operation changes due to the driving habit of the owner, it is determined that the owner is highly likely to be changed by determining the changes.
  • the consent request unit 14a makes the one-step approval and makes the approval request only to the mobile terminal 5.
  • the consent requesting unit 14a performs the two-step consent, issues the first-step consent request to the mobile terminal 5, and accepts the second-step consent.
  • a personal identification request is made to the vehicle HMI device 12.
  • the personal identification determination unit 14e determines the personal identification response from the vehicle HMI device 12.
  • the identity confirmation determination unit 14e indicates that the personal confirmation response transmitted from the HMI device 12 for a vehicle indicates success. , It is determined that the personal identification response is successful.
  • the personal identification determination unit 14e indicates that the personal confirmation response transmitted from the vehicle HMI device 12 indicates failure success. Determines that the personal identification response has failed.
  • the mobile terminal 5 When the mobile terminal 5 receives the campaign notification and the first-step approval request transmitted from the center device 2, the mobile terminal 5 displays the campaign notification screen A1 and notifies the owner of the campaign information. When the owner selects “Yes” on the campaign notification screen A1, the portable terminal 5 displays the download permission screen A2 and prompts the owner to select whether or not to permit the start of downloading the replog data. When the owner selects "Yes” on the download permission screen A2, the mobile terminal 5 transmits the first-step acceptance response as permission to the center apparatus 2.
  • the center apparatus 2 When the center device 2 receives the first-step acceptance response transmitted from the mobile terminal 5 and determines that the received first-step acceptance response is permission, the center apparatus 2 starts distributing the replog data to the vehicle master device 7. To do. That is, with the one-step consent, the owner can start the distribution of the replog data by simply operating the mobile terminal 5.
  • the mobile terminal 5 When the mobile terminal 5 receives the campaign notification and the first-step approval request transmitted from the center device 2, the mobile terminal 5 displays the campaign notification screen A1 and notifies the owner of the campaign information. When the owner selects "Yes" on the campaign notification screen A1, the mobile terminal 5 displays the security code notification screen A3, notifies the owner of the security code, and sends the first-step acceptance response to the center device 2 as permission. ..
  • the center device 2 When the center device 2 receives the first-step consent response transmitted from the mobile terminal 5 and determines that the received first-step consent response is permission, the center device 2 then issues a campaign notification and a second-step consent request (identity confirmation). Request) to the vehicle HMI device 12.
  • the vehicle HMI device 12 When the vehicle HMI device 12 receives the campaign notification and the second stage consent request (identification confirmation request) transmitted from the center device 2, the vehicle HMI device 12 displays the security code input screen B1 and prompts the owner to input the security code. When the owner inputs the correct security code, the vehicle HMI device 12 displays the download permission screen B2 and prompts the owner to select whether or not to permit the start of the download of the replog data. When the owner selects "Yes" on the download permission screen B2, the vehicle HMI device 12 sends the personal identification response to the center device 2 as a success.
  • the center device 2 receives the personal identification response transmitted from the vehicle HMI device 12, and when determining that the received personal identification response is successful, starts distribution of the replog data to the vehicle master device 7. That is, in the two-step approval, the owner cannot start the distribution of the replog data by only operating the mobile terminal 5, and by operating the mobile HMI device 12 after operating the mobile terminal 5, the owner of the replog data Delivery can be started.
  • the vehicle HMI device 12 sends a personal identification response to the center device 2 as a failure unless the owner inputs the correct security code.
  • the center device 2 receives the personal identification response transmitted from the mobile terminal 5, and when determining that the received personal identification response is a failure, transmits the user registration request to the vehicle HMI device 12.
  • the vehicle HMI device 12 displays the user registration guide screen B3 and prompts the owner to register the user information.
  • the owner of the vehicle When the owner of the vehicle is not changed As shown in FIGS. 9 and 10, when the user purchases the vehicle, the user who purchased the vehicle becomes the current owner (S1). For example, when the current owner performs a user information registration operation using the vehicle HMI device 12 or the like, the vehicle master device 7 transmits the user information registered by the current owner to the center device 2 (S2). In the center device 2, when the user information transmitted from the vehicle master device 7 is received, the control unit 14 causes the user information storage unit 17 to store the received user information. The current owner may perform the user information registration operation using the mobile terminal 5 of the current owner.
  • the campaign administrator terminal 3 transmits a user information acquisition request to the center device 2 and receives and acquires the user information transmitted from the center device 2 (S3). After transmitting the user information to the center device 2, the vehicle master device 7 periodically transmits the vehicle information to the center device 2 (S4). In the center device 2, when the vehicle information transmitted from the vehicle master device 7 is received, the control unit 14 causes the vehicle information storage unit 18 to store the received vehicle information.
  • the campaign manager terminal 3 sends the campaign information to the center device 2 (S5).
  • the control unit 14 causes the campaign information storage unit 16 to store the received campaign information.
  • the control unit 14 acquires the vehicle information stored in the vehicle information storage unit 18 (S7) and acquires the external information stored in the external information storage unit 19 ( In step S8, it is determined whether or not the two-step approval is required according to the acquired vehicle information and external information.
  • the control unit 14 determines a change in the vehicle state, determines that there is no change in the parking position, the change in the traveling route, or the change in the driving operation, and determines that there is no change in the vehicle state, the two-step approval is given. Judge that there is no need to do it. On the other hand, the control unit 14 determines that there is any one of a change in the parking position, a change in the traveling route, and a change in the driving operation, and if it is determined that there is a change in the vehicle state, the control unit 14 needs to perform the two-step consent. To determine.
  • control unit 14 determines that the vehicle state has not changed, and determines that it is not necessary to perform the two-step approval.
  • the control unit 14 causes the mobile terminal 5 of the current owner to transmit the campaign notification and the first-step approval request (S9, approval request procedure).
  • the mobile terminal 5 of the current owner When the mobile terminal 5 of the current owner receives the campaign notification and the first-step approval request sent from the center device 2, it notifies the current owner of the campaign information (S10) and permits the start of downloading of the replog data. Prompt the current owner to choose whether or not.
  • the mobile terminal 5 of the current owner transmits the first-step acceptance response to the center device 2 as permission (S12).
  • the control unit 14 receives the first-step acceptance response transmitted from the mobile terminal 5 of the current owner and determines that the received first-step acceptance response is permission (acceptance determination procedure). Since it is determined that it is not necessary to perform the two-step approval at this point, the replog data is distributed to the vehicle master device 7 (S13).
  • the vehicle master device 7 periodically transmits the vehicle information to the center device 2 even after downloading the replog data from the center device 2 (S14).
  • the control unit 14 causes the vehicle information storage unit 18 to store the received vehicle information.
  • the control unit 14 acquires the vehicle information stored in the vehicle information storage unit 18 (S15), acquires the external information stored in the external information storage unit 19 (S16), and acquires the acquired vehicle information and external information. Based on the information, it is regularly determined whether or not two-step approval is required. After that, the control unit 14 determines that there is any one of a change in the parking position, a change in the traveling route, and a change in the driving operation, and when it determines that the vehicle state has changed, the control unit 14 stores the change in the user information storage unit 17. The stored user information is confirmed (S17).
  • the campaign manager terminal 3 transmits the campaign information to the center device 2 (S18).
  • the control unit 14 causes the campaign information storage unit 16 to store the received campaign information.
  • the control unit 14 determines the distribution start instruction (S19), it determines that it is necessary to perform the two-step consent at this time, and therefore, the two-step approval is performed thereafter.
  • the old owner's mobile terminal 5 When the mobile terminal 5 of the old owner receives the campaign notification and the first-step approval request transmitted from the center device 2, the old owner's mobile terminal 5 notifies the old owner of the campaign information (S31) and permits the start of downloading of the replog data. Prompt the old owner to choose whether or not. The old owner's mobile terminal 5 permits the first-step approval request, and when the old owner selects that the start of the download of the replog data is selected (S32), the first-step approval response is transmitted to the center apparatus 2 as an allowance. Yes (S33).
  • the control unit 14 receives the first-step acceptance response transmitted from the portable terminal 5 of the old owner, and determines that the received first-step acceptance response is permission. Since it is determined that the two-step approval is required, the campaign notification and the second-step approval request (identification request) are transmitted to the vehicle master device 7 to make an identification request (S34).
  • the vehicle master device 7 When the vehicle master device 7 receives the campaign notification and the second-step consent request (identification confirmation request) transmitted from the center device 2, the vehicle master device 7 transmits an identification confirmation notification instruction to the vehicle HMI device 12 (S35).
  • the current owner is notified of the confirmation (S36), and the current owner is prompted to input, for example, a security code as a principal confirmation operation (S37).
  • a security code as a principal confirmation operation
  • the vehicle HMI device 12 times out, or selects “If the security code is not notified,” or if an incorrect security code is entered.
  • the operation content is transmitted to the vehicle master device 7 (S38).
  • the vehicle master device 7 receives the operation content from the vehicle HMI device 12, the vehicle master device 7 sends a personal identification response as a failure to the center device 2 (S39).
  • the control unit 14 when the control unit 14 receives the personal identification response transmitted from the vehicle master device 7 and determines that the received personal identification response is unsuccessful, the control unit 14 issues a user registration request to the vehicle master device 7 (S40).
  • the vehicle master device 7 receives the user registration request transmitted from the center device 2
  • the vehicle master device 7 transmits a user registration notification instruction to the vehicle HMI device 12 (S41), and notifies the current owner of the user registration (S42). , Prompts the current owner to register user information (S43).
  • the vehicle HMI device 12 transmits the operation content to the vehicle master device 7 (S44).
  • the vehicle master device 7 Upon receiving the operation content from the vehicle HMI device 12, the vehicle master device 7 transmits the user information to the center device 2 (S45).
  • the control unit 14 stores the received user information in the user information storage unit 17 and updates the user information.
  • the phone number of the mobile terminal 5 of the owner of the vehicle is updated from the phone number of the mobile terminal 5 of the old owner to the phone number of the mobile terminal 5 of the current owner.
  • the mobile terminal 5 sends the campaign notification and the one-step notification sent from the center device 2.
  • the old owner is notified of the campaign information (S61), and the old owner is prompted to select whether or not to permit the start of the download of the replog data.
  • the mobile terminal 5 of the old owner does not send the first-step acceptance response to the center device 2 unless the old owner operates the notification of the campaign information.
  • the control unit 14 determines that it is necessary to perform the second-step approval at this time even if the first-step approval response is not received from the mobile terminal 5, and thus, in this case also, the campaign notification Then, the second-step acceptance request (identification confirmation request) is transmitted to the vehicle master device 7 to make an identification confirmation request (S62). Thereafter, when the user information transmitted from the vehicle master device 7 is received, the control unit 14 stores the received user information in the user information storage unit 17 and updates the user information.
  • the control unit 14 determines that it is necessary to perform the two-step consent, and thus the campaign notification and the first-step approval request are transmitted to the old owner.
  • the campaign notification and the second-step acceptance request are sent to the vehicle.
  • the master device 7 is made to transmit. That is, even if the old owner permits the distribution of the replog data, the distribution of the replog data does not start.
  • control unit 14 determines that the personal identification response transmitted from the vehicle master device 7 is unsuccessful, the control unit 14 causes the vehicle master device 7 to transmit a user registration request, and the user transmitted from the vehicle master device 7 is transmitted.
  • the control unit 14 updates the user information to cause the mobile terminal 5 of the current owner to transmit the campaign notification and the first-step approval request.
  • the configuration of determining whether or not the owner of the vehicle is changed by determining the change of the vehicle state and determining whether or not the two-step approval is necessary has been described.
  • the owner of the vehicle is changed.
  • the configuration is not limited to the case, and the two-step consent may be adopted in other situations.
  • it may be determined whether or not it is necessary to perform the two-step consent by determining the elapsed time from the last distribution of the replog data to the establishment of the distribution event of the current replog data, the charge at the distribution of the current data, and the like. ..
  • the elapsed time exceeds the predetermined period (for example, several months). If it is determined that the two-step consent is not necessary, it may be determined that the two-step approval is not necessary, and if it is determined that the elapsed period exceeds the predetermined period, it may be determined that the two-step approval is required. That is, if the elapsed time from the previous distribution of the Replog data to the occurrence of the distribution event of the current Replog data exceeds the predetermined period, there is concern that the owner has forgotten the purpose and significance of the distribution of the Replog data. Therefore, two-step consent may be given in order to make the owner recognize the purpose and significance of the distribution of the replog data again.
  • the predetermined period for example, several months
  • the necessity determination unit 14d determines that the charge for the distribution of the present replog data is determined, if it determines that the charge does not occur, it determines that it is not necessary to perform the two-step approval, and the charge is determined. If it is determined that it occurs, it may be determined that it is necessary to perform two-step approval. That is, if a fee is charged at the time of the distribution of the replog data this time, an economic burden is caused by the fee. Therefore, two-step consent may be given to let the owner recognize the occurrence of the financial burden.
  • the control unit 14 causes the mobile terminal 5 of the current owner to transmit the campaign notification and the first-step approval request (S89).
  • the mobile terminal 5 of the current owner receives the campaign notification and the first-step approval request transmitted from the center device 2, it notifies the current owner of the campaign information (S90) and permits the start of downloading of the replog data. Prompt the owner to choose whether or not.
  • the portable terminal 5 of the current owner when the owner selects permission to start the download of the replog data (S91), transmits the first-step acceptance response to the center device 2 as permission (S92).
  • the notification of the campaign and the 2 A stage approval request is transmitted to the vehicle master device 7 to make an identification request (S93).
  • the vehicle master device 7 receives the campaign notification and the second-step consent request (identification confirmation request) transmitted from the center device 2, the vehicle master device 7 transmits an identification confirmation notification instruction to the vehicle HMI device 12 (S94). The confirmation is notified to the current owner (S95), and the current owner is prompted to input the security code (S96). In this case, since the security code is transmitted to the mobile terminal 5 of the current owner, the current owner can input the correct security code.
  • the vehicle HMI device 12 transmits the operation content to the vehicle master device 7 (S37).
  • the vehicle master device 7 receives the operation content from the vehicle HMI device 12, the vehicle master device 7 sends a personal identification response as a success to the center device 2 (S98).
  • the control unit 14 when the control unit 14 receives the personal identification response transmitted from the vehicle master device 7 and determines that the received personal identification response is successful, the control unit 14 sends the replog data to the vehicle master device 7. It is distributed (S99).
  • the approval request is made in stages to the mobile terminal 5 and the vehicle HMI device 12, and the reply log data to the vehicle side is sent according to the result of the approval response determination from the mobile terminal 5 and the vehicle HMI device 12.
  • Controlled delivery For example, even if the owner of the vehicle is changed and the old owner permits the distribution of the replog data, it is possible to prevent the situation where the distribution of the replog data is started only by the permission of the old owner. As a result, it is possible to prevent the situation where the distribution of the replog data is started even though the distribution of the replog data is not permitted by the current owner of the vehicle. Data can be distributed appropriately.
  • the approval request is made to the mobile terminal 5 when the one-step approval is made.
  • the one-step consent is given to the vehicle HMI device 7, the opportunity for the owner to give a consent response is limited to the time of boarding.
  • the owner has a chance to give a consent response. It is not limited to this, and the owner can make a response in the period in which the mobile terminal 5 is held, and the degree of freedom in giving the response can be increased.
  • the replog data is distributed. Distribution of the replog data can be started only by the user operating the mobile terminal 5.
  • the first-step approval request is made to the mobile terminal 5 and the second-step approval request is made to the vehicle HMI device 7 when the two-step approval is made. ..
  • the opportunity for the user to give the first-step approval response is limited to the passengers being on board. It is possible to make the first-step consent response while the mobile terminal 5 is held, and it is possible to increase the degree of freedom of the opportunity to make the first-step consent response.
  • the identity confirmation request is sent to the vehicle HMI device 7, and the second-step acceptance request is sent to the vehicle HMI device 7, and the identity confirmation response from the vehicle HMI device 7 is successful.
  • the replog data is distributed. By operating the vehicle HMI device 7 after the user operates the mobile terminal 5, the distribution of the replog data can be started.
  • the elapsed time from the previous distribution of the Replog data to the occurrence of the distribution event of this Replog data is determined, and whether or not it is necessary to perform two-step approval is determined according to the determination result. Even if the owner has not been changed, if the elapsed time from the time when the last Replog data was distributed to the time when this Replog data distribution event occurred exceeds the specified period, the owner will determine the purpose and significance of the Replog data distribution. I am afraid that I am forgetting. By performing the two-step consent, it is possible to make the owner recognize again the purpose and significance of the distribution of the replog data, and it is possible to prevent the owner from easily allowing the distribution of the replog data.
  • the replog data may be distributed without determining whether or not the two-step consent is required.
  • the approval request is not limited to a stepwise structure, and the approval request may be made simultaneously. That is, when the center device 2 transmits an acceptance request to the mobile terminal 5 and the vehicle HMI device 12 at the same time and determines that the acceptance response from both the mobile terminal 5 and the vehicle HMI device 12 is permission, the reply The data may be distributed.
  • the configuration is not limited to the two-stage consent, and the three- or more-stage consent may be used.
  • the identification is not limited to the security code, but the security code is not used, for example, when a keyword is registered with user information and the registered keyword and the identity are confirmed. It may be configured to verify the identity by collating with the keyword entered in.
  • the data distributed from the center device 2 to the vehicle side is not limited to the replog data for updating the application program of the ECU, but may be map data or the like, for example.
  • the present invention is not limited to the case where the owner is changed, and may be applied to a usage pattern in which the vehicle is temporarily lent to another person without changing the owner.
  • the campaign notification screen, the download permission screen, the security code notification screen, the security code input screen, the download permission screen, and the user registration guide screen may be any screen display as long as the owner can perform the intended operation. ..
  • control unit and the method thereof described in the present disclosure are realized by a dedicated computer provided by configuring a processor and a memory programmed to execute one or more functions embodied by a computer program. May be.
  • control unit and the method thereof described in the present disclosure may be realized by a dedicated computer provided by configuring a processor with one or more dedicated hardware logic circuits.
  • control unit and the method thereof described in the present disclosure are based on a combination of a processor and a memory programmed to execute one or a plurality of functions and a processor configured by one or more hardware logic circuits. It may be realized by one or more dedicated computers configured.
  • the computer program may be stored in a computer-readable non-transition tangible recording medium as an instruction executed by the computer.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Automation & Control Theory (AREA)
  • Computer Hardware Design (AREA)
  • Mechanical Engineering (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Human Computer Interaction (AREA)
  • Transportation (AREA)
  • General Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • Health & Medical Sciences (AREA)
  • Computing Systems (AREA)
  • Information Transfer Between Computers (AREA)
  • Traffic Control Systems (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Navigation (AREA)
PCT/JP2020/002966 2019-02-22 2020-01-28 センター装置、データ配信システム及び配信制御プログラム Ceased WO2020170732A1 (ja)

Priority Applications (1)

Application Number Priority Date Filing Date Title
US17/404,372 US12174977B2 (en) 2019-02-22 2021-08-17 Center device on a vehicle network, data distribution system and storage medium storing computer program for distribution control for re-programming ECUS

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2019-030574 2019-02-22
JP2019030574A JP7318230B2 (ja) 2019-02-22 2019-02-22 センター装置、データ配信システム及び配信制御プログラム

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US17/404,372 Continuation US12174977B2 (en) 2019-02-22 2021-08-17 Center device on a vehicle network, data distribution system and storage medium storing computer program for distribution control for re-programming ECUS

Publications (1)

Publication Number Publication Date
WO2020170732A1 true WO2020170732A1 (ja) 2020-08-27

Family

ID=72144842

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2020/002966 Ceased WO2020170732A1 (ja) 2019-02-22 2020-01-28 センター装置、データ配信システム及び配信制御プログラム

Country Status (3)

Country Link
US (1) US12174977B2 (enExample)
JP (1) JP7318230B2 (enExample)
WO (1) WO2020170732A1 (enExample)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023053622A1 (ja) * 2021-09-30 2023-04-06 株式会社デンソー データ通信システム、センター装置、マスタ装置及び秘密情報共有プログラム
JPWO2023053621A1 (enExample) * 2021-09-30 2023-04-06

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP7315873B2 (ja) * 2020-01-31 2023-07-27 日本電信電話株式会社 データ流通管理装置、データ流通管理方法、およびプログラム
JP7739811B2 (ja) * 2021-07-27 2025-09-17 日産自動車株式会社 ソフトウェア更新装置及びソフトウェア更新制御方法
JP7596962B2 (ja) * 2021-07-28 2024-12-10 トヨタ自動車株式会社 センタ、方法、及びプログラム
DE112022005679T5 (de) 2021-11-30 2024-10-17 Denso Corporation Zentralvorrichtung und kampagneninformationsverteilungsverfahren
JP7407989B1 (ja) 2023-03-01 2024-01-04 Kddi株式会社 情報処理装置、情報処理方法及びプログラム

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2009080726A (ja) * 2007-09-27 2009-04-16 Nifty Corp ユーザ認証機構
JP2009215722A (ja) * 2008-03-07 2009-09-24 Denso Corp 車両遠隔操作システム
JP2013037474A (ja) * 2011-08-05 2013-02-21 Mitsubishi Electric Corp 組込み機器保守システム
WO2015132822A1 (ja) * 2014-03-06 2015-09-11 パナソニック インテレクチュアル プロパティ コーポレーション オブ アメリカ 機器制御方法、機器管理システム及び機器管理システムに接続される宅内サーバ装置
JP2017224047A (ja) * 2016-06-13 2017-12-21 クラリオン株式会社 ソフトウェア更新装置およびソフトウェア更新システム
JP2019003509A (ja) * 2017-06-16 2019-01-10 富士ゼロックス株式会社 情報処理装置及び情報処理プログラム

Family Cites Families (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2010191786A (ja) 2009-02-19 2010-09-02 Fujitsu Ten Ltd 車載装置
US9253200B2 (en) * 2013-10-28 2016-02-02 GM Global Technology Operations LLC Programming vehicle modules from remote devices and related methods and systems
US9374355B2 (en) * 2013-10-28 2016-06-21 GM Global Technology Operations LLC Programming vehicle modules from remote devices and related methods and systems
JP6342718B2 (ja) 2014-06-02 2018-06-13 株式会社東海理化電機製作所 車両通信システム
JP2016152438A (ja) 2015-02-16 2016-08-22 パナソニックIpマネジメント株式会社 ソフトウェア更新装置、携帯端末及びソフトウェア更新システム
US9865110B2 (en) * 2015-05-22 2018-01-09 M2MD Technologies, Inc. Method and system for securely and automatically obtaining services from a machine device services server
CN107835760B (zh) 2015-06-30 2020-08-28 日立汽车系统株式会社 车辆数据重写控制装置以及车辆数据重写认证系统
US11146401B2 (en) * 2016-08-10 2021-10-12 Ford Global Technologies, Llc Software authentication before software update
US10871952B2 (en) * 2017-12-20 2020-12-22 Nio Usa, Inc. Method and system for providing secure over-the-air vehicle updates
US11146659B2 (en) * 2018-06-07 2021-10-12 Ford Global Technologies, Llc Optimized TCU transit power

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2009080726A (ja) * 2007-09-27 2009-04-16 Nifty Corp ユーザ認証機構
JP2009215722A (ja) * 2008-03-07 2009-09-24 Denso Corp 車両遠隔操作システム
JP2013037474A (ja) * 2011-08-05 2013-02-21 Mitsubishi Electric Corp 組込み機器保守システム
WO2015132822A1 (ja) * 2014-03-06 2015-09-11 パナソニック インテレクチュアル プロパティ コーポレーション オブ アメリカ 機器制御方法、機器管理システム及び機器管理システムに接続される宅内サーバ装置
JP2017224047A (ja) * 2016-06-13 2017-12-21 クラリオン株式会社 ソフトウェア更新装置およびソフトウェア更新システム
JP2019003509A (ja) * 2017-06-16 2019-01-10 富士ゼロックス株式会社 情報処理装置及び情報処理プログラム

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023053622A1 (ja) * 2021-09-30 2023-04-06 株式会社デンソー データ通信システム、センター装置、マスタ装置及び秘密情報共有プログラム
JPWO2023053622A1 (enExample) * 2021-09-30 2023-04-06
JPWO2023053621A1 (enExample) * 2021-09-30 2023-04-06
WO2023053621A1 (ja) * 2021-09-30 2023-04-06 株式会社デンソー データ通信システム、センター装置、マスタ装置、暗号化プログラム及び復号化プログラム
JP7768236B2 (ja) 2021-09-30 2025-11-12 株式会社デンソー データ通信システム、センター装置、マスタ装置、暗号化プログラム及び復号化プログラム

Also Published As

Publication number Publication date
JP7318230B2 (ja) 2023-08-01
JP2020132042A (ja) 2020-08-31
US20220075883A1 (en) 2022-03-10
US12174977B2 (en) 2024-12-24

Similar Documents

Publication Publication Date Title
WO2020170732A1 (ja) センター装置、データ配信システム及び配信制御プログラム
US11709666B2 (en) Electronic control system for vehicle, program update approval determination method and program update approval determination program
US11934823B2 (en) Electronic control system for vehicle, program update approval determination method and program update approval determination program
US12115922B2 (en) Vehicle identity access management
US11228884B2 (en) Vehicle-to-vehicle file sharing system and method
US20200183676A1 (en) Vehicle information communication system
CN113873498A (zh) 服务器、管理方法、非临时存储介质及软件更新装置、中心、空中下载主机
US11196560B2 (en) Policy and token based authorization framework for connectivity
JP6465258B1 (ja) 制御装置、制御方法、およびコンピュータプログラム
CN113050964A (zh) 车辆及软件更新方法
JP6702269B2 (ja) 制御装置、制御方法、およびコンピュータプログラム
JP7392407B2 (ja) センター装置、車両用電子制御システム、プログラム更新の進捗制御方法及びプログラム更新の進捗制御プログラム
WO2023007577A1 (ja) ソフトウェア更新装置、ソフトウェア更新システム、及びソフトウェア更新方法
CN113837828A (zh) 车载软件出售方法、装置、车辆及存储介质
JP2025105856A (ja) ソフトウェア更新装置、ソフトウェア更新システム、及びソフトウェア更新方法
JP7779227B2 (ja) 車両、および、ソフトウェア更新システム
JP7434205B2 (ja) プログラム更新管理システム、移動体故障診断装置、プログラム更新管理方法
CN117640704A (zh) 服务器、软件更新系统及更新方法、非暂时性存储介质
CN118092959A (zh) 车辆、软件更新方法以及非暂时性存储介质
JP2024032412A (ja) サーバ、ソフトウェア更新システム、ソフトウェア更新方法、プログラム
JP7739811B2 (ja) ソフトウェア更新装置及びソフトウェア更新制御方法
CN118435164A (zh) 一种升级方法、装置及系统
CN121194907A (zh) 电子控制装置、功能限制管理系统、功能限制管理方法以及功能限制管理程序
JP2026015439A (ja) 車両、および、ソフトウェア更新システム
CN121464423A (en) Vehicle control system, arbitration method, and program

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 20759594

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 20759594

Country of ref document: EP

Kind code of ref document: A1