IP Library Granted Patent US 12,309,279
Granted Patent B2
US 12,309,279 · App. 17/610,888 · Granted May 20, 2025

Method for installing a computing component and associated electronic device

Inventors: Eric Abadie (Boulogne-Billancourt, FR); Sebastien Bessiere (Tournefeuille, FR); Pascal Menier (St Gaudens, FR)
Assignees: AMPERE S.A.S.; NISSAN MOTOR CO., LTD.
H04L9/3236H04L9/3247H04L2209/84
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,309,279
App. No.
17/610,888
Granted
May 20, 2025
Kind
B2
Abstract

A method for installing a computing component in an electronic device fitted in a vehicle, comprising the steps consisting of: receiving a device packet comprising a manifest including a hash value of the computing component; checking the integrity of the manifest; receiving the computing component; checking the correlation between the hash value of the computing component and the computing component received; installing the computing component only in the case of a positive check of the integrity of the manifest and a positive check of the correlation. An associated electronic device is also described.

Claims (40)

1. A method for installing a data-processing component in an electronic equipment item with which a vehicle is provided, comprising:

receiving a device packet comprising a first manifest which includes a hash value of the data-processing software component;

verifying integrity of the first manifest;

receiving the data-processing software component;

verifying a correspondence between the hash value of the data-processing software component and the data-processing software component received and performing a Vehicle Identification Number (VIN) comparison to verify compatibility between the data-processing software component and the vehicle; and

installing the data-processing software component into the vehicle only in the case of positive verification of the integrity of the first manifest and positive verification of the correspondence.

2. The method as claimed in claim 1 , wherein the first manifest includes a first vehicle identifier, and the method further comprises:

comparing the first vehicle identifier with a second vehicle identifier stored within the vehicle; and

installing the data-processing software component only in the case of a positive comparison of the first identifier and the second identifier.

3. The method as claimed in claim 1 , wherein the device packet includes a first signature and wherein the integrity of the manifest is verified by applying a cryptographic signature verification algorithm to the first signature and to the first manifest.

4. The method as claimed in claim 1 , wherein the data-processing software component is received independently of the device packet.

5. The method as claimed in claim 1 , wherein the data-processing software component is received within the device packet.

6. The method as claimed in claim 1 , further comprising:

receiving a container comprising the device packet and a second manifest; and

verifying the integrity of the second manifest.

7. The method as claimed in claim 6 , wherein the container includes another device packet which is intended for another electronic equipment item.

8. The method as claimed in claim 6 , wherein the second manifest includes a first vehicle identifier, and the method further comprises:

comparing the first vehicle identifier with a second vehicle identifier stored within the vehicle; and

transmitting the device packet only in the case of positive comparison of the first identifier and the second identifier.

9. The method as claimed in claim 6 , wherein the container is received from a remote server in response to a request transmitted by the vehicle.

10. The method as claimed in claim 6 , wherein the container is received from a memory card inserted in a reader with which the vehicle is provided.

11. The method as claimed in claim 1 , wherein the data-processing software component comprises a second signature and a content, and wherein the method comprises a step of verifying the integrity of the content using the second signature.

12. An electronic equipment item with which a vehicle is intended to be provided, comprising:

processing circuitry configured to:

receive a device packet comprising a manifest including a hash value of a data-processing software component;

verify an integrity of the manifest;

receive the data-processing software component;

verify a correspondence between the hash value of the data-processing software component and the data-processing software component received and performing a Vehicle Identification Number (VIN) comparison to verify compatibility between the data-processing software component and the vehicle; and

install the data-processing software component in the vehicle only in the case of positive verification of the integrity of the manifest and positive verification of the correspondence.

13. The electronic equipment item as claimed in claim 12 , wherein the manifest includes a first vehicle identifier, and the processing circuitry is further configured to:

compare the first vehicle identifier and a second identifier of the vehicle stored within the vehicle, and

install the data-processing software component only in the event of positive verification of the integrity of the manifest, positive comparison of the first identifier and the second identifier and positive verification of the correspondence.

14. A method for installing a data-processing component in an electronic equipment item with which a vehicle is provided, comprising:

receiving a device packet comprising a first manifest which includes a hash value of the data-processing component;

verifying integrity of the first manifest;

receiving the data-processing component;

verifying a correspondence between the hash value of the data-processing component and the data-processing component received;

installing the data-processing component only in the case of positive verification of the integrity of the first manifest and positive verification of the correspondence;

receiving a container comprising the device packet and a second manifest; and

verifying the integrity of the second manifest.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 23, 2024
From: RENAULT S.A.S.
To: AMPERE S.A.S.
Reel/Frame 067526/0311 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 2, 2021
From: ABADIE, ERIC; BESSIERE, SEBASTIEN; MENIER, PASCAL
To: RENAULT S.A.S.; NISSAN MOTOR CO., LTD.
Reel/Frame 058271/0510 →
Priority Claims (1)
FR 1905119 · May 16, 2019 · national
Continuity (1)
Related Publication 20220303139A1 · Sep 22, 2022
References Cited (6)
US 20130111212A1 · Baltes · 2013 [cited by examiner]
US 20160013934A1 · Smereka · 2016 [cited by examiner]
US 20170060559A1 · Ye · 2017 [cited by examiner]
Dennis K. Nilsson, “Secure Firmware Updates over the Air in Intelligent Vehicles”, 2008, Department of Computer Science and Engineering Chalmers University of Technology. pp. 380-384 (Year: 2008). [cited by examiner]
International Search Report and Written Opinion issued May 7, 2020 in PCT/EP2020/060506, 12 pages. [cited by applicant]
Nilsson, D.K., et al., “Secure Firmware Updates over the Air in Intelligent Vehicles”, Communications Workshop, 2008, ICC Workshops '08, IEEE International Conference on, IEEE, May 19, 2008, XP031265266, pp. 380-384. [cited by applicant]