IP Library Granted Patent US 12,347,444
Granted Patent B2
US 12,347,444 · App. 17/642,447 · Granted Jul 1, 2025

Method for operating a functionally secure audio output system

Inventors: Gerhard Dochow (Wetzlar, DE); Joachim Perrevoort (Münster, DE)
Assignee: Continental Automotive Technologies GmbH
G10L19/018G06F21/16G06F21/64
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,347,444
App. No.
17/642,447
Granted
Jul 1, 2025
Kind
B2
Abstract

A method for operating a functionally safe audio output system with a computing node with a simple certification and a complex computing node, the method comprising generating a code assigned to a warning in the computing node with a simple certification, transmitting the code to the complex computing node, generating, in a first computing process, an output signal having an acoustic watermark, transmitting the output signal to a second computing process independent of the first computing process, determining, in the second computing process independent of the first computing process, a code contained in the output signal, transmitting the code to the computing node with a simple certification, and verifying whether the audio output system is functionally safe on the basis of a comparison of the generated code with a code based on the received code.

Claims (50)

1. A method for operating a functionally safe audio output system with a first computing node and a second computing node, the method comprising:

generating a first code assigned to a warning in the first computing node;

transmitting the first code to the second computing node;

generating, in a first computing process, an output signal having an acoustic watermark, wherein the acoustic watermark is a modulation and encoding of the first code;

transmitting the output signal to a second computing process independent of the first computing process;

determining, in the second computing process independent of the first computing process, a second code contained in the output signal;

transmitting the second code to the first computing node; and

verifying whether the audio output system is functionally safe on the basis of a comparison of the generated first code with a code based on the received second code,

wherein the comparison of the generated first code with the code based on the received second code yields a probability for a negative verification, wherein the audio output system is functionally unsafe with a certain probability, and in that at least one threshold value is provided which, when exceeded, means that a positive or no verification of the functional safety is established, and

wherein the negative verification of the functional safety of the audio output system is established, performing at least one of:

actuating an alternative audio output,

switching the system into a safe state,

informing the presence of a system fault,

instigating a check on the basis of redundant properties of the audio output system, and

instigating a compensation on the basis of redundant properties of the audio output system.

2. The method of transmitting the output signal to the second computing process independent of the first computing process according to claim 1 , further comprising:

emitting the output signal by means of a sound transducer; and

receiving, by means of a sound sensor, an acoustic signal comprising the output signal output by the sound transducer.

3. The method according to claim 1 , further comprising:

emitting a first control signal from the first computing node to the second computing node in order to activate the inclusion of a first signal in the output signal.

4. The method according to claim 3 , further comprising at least one of:

superposing the generated first code with a code known to the first computing node and which is characteristic of the first signal;

generating the output signal from the acoustic watermark and at least one from the first signal or a second signal; and

emitting a second control signal from the first computing node to the second computing node in order to activate a limiting stage, which can limit a signal level of a second signal.

5. The method according to claim 1 , further comprising:

emitting a third control signal from the second computing node to the first computing node in order to notify the inclusion of a second signal in the output signal.

6. The method according to claim 1 , wherein determining in the second computing process independent of the first computing process, the second code contained in the acoustic signal and transmitting the second code to the first computing node are carried out repeatedly, and the code based on the received second code is generated by means of a statistical processing of the second codes that are repeatedly determined and transmitted to the first computing node.

7. The method according to claim 6 , wherein the code is at least one of the first code and the code known to the computing node is present multiple times in the output signal.

8. The method according to claim 1 , further comprising a sound transducer, and a sound sensor.

9. The method according to claim 8 , wherein the first computing process and the second computing process independent of the first computing process are carried out on the second computing node, and wherein the first computing process and the second computing process are separated from one another by means of at least one memory isolation technique.

10. The method according to claim 8 , wherein the method is performed in a vehicle.

11. The method according to claim 1 , the method further comprising:

executing instructions of a computer program by an embedded system.

12. The method according to claim 11 , wherein the computer program is stored on a data carrier.

13. A method for operating a functionally safe audio output system with a first computing node and a second computing node, the method comprising:

reading in a representative assigned to a warning and a first code from a database in the first computing node;

transmitting the representative to the second computing node;

generating, in a first computing process, an output signal having an acoustic watermark, wherein the acoustic watermark is a modulation and encoding of the first code;

transmitting the output signal to a second computing process independent of the first computing process;

determining, in the second computing process independent of the first computing process, a second code contained in the output signal;

transmitting the second code to the first computing node; and

verifying whether the audio output system is functionally safe on the basis of a comparison of the first code read in with a code based on the received second code,

wherein the comparison of the generated first code with the code based on the received second code yields a probability for a negative verification, wherein the audio output system is functionally unsafe with a certain probability, and in that at least one threshold value is provided which, when exceeded, means that a positive or no verification of the functional safety is established, and

wherein the negative verification of the functional safety of the audio output system is established, performing at least one of:

actuating an alternative audio output,

switching the system into a safe state,

informing the presence of a system fault,

instigating a check on the basis of redundant properties of the audio output system, and

instigating a compensation on the basis of redundant properties of the audio output system.

14. The method according to claim 13 , further comprising a sound transducer, a sound sensor, and a database.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 7, 2025
From: CONTINENTAL AUTOMOTIVE GMBH
To: CONTINENTAL AUTOMOTIVE TECHNOLOGIES GMBH
Reel/Frame 070441/0899 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 14, 2022
From: DOCHOW, GERHARD; PERREVOORT, JOACHIM
To: CONTINENTAL AUTOMOTIVE GMBH
Reel/Frame 059256/0376 →
Priority Claims (2)
DE 10 2019 213 888.8 · Sep 11, 2019 · national
DE 10 2019 214 346.6 · Sep 20, 2019 · national
Continuity (1)
Related Publication 20220342961A1 · Oct 27, 2022
References Cited (19)
US 7363497B1 · Ferguson · 2008 [cited by examiner]
US 10012691B1 · Zhou et al. · 2018 [cited by applicant]
US 20100223062A1 · Srinivasan et al. · 2010 [cited by applicant]
US 20170293464A1 · Braun et al. · 2017 [cited by applicant]
US 20190051060A1 · Rapeta et al. · 2019 [cited by applicant]
US 20190139399A1 · Chellappan et al. · 2019 [cited by applicant]
US 20200007342A1 · Liem · 2020 [cited by examiner]
CN 102237092A · 2011 [cited by applicant]
CN 102982806A · 2013 [cited by applicant]
CN 105976823A · 2016 [cited by applicant]
CN 108353229A · 2018 [cited by applicant]
DE 102014220520A1 · 2016 [cited by applicant]
WO 2016115483A2 · 2016 [cited by applicant]
Zhe Feng et al. “Watermark-based Sensor Data Authentication”, Apr. 28, 2019, XP055737767, URL:https://deepblue.lib.umich.edu/handle/2027.42/148655. [cited by applicant]
C. Neubauer et al. “Continuous Steganographic Data Transmission Using Uncompressed Audio”, 1998, Fraunhofer Institut fur Integriere Schaltungen, Erlangen, Germany. [cited by applicant]
Laurence Boney et al. “Digital Watermarks for Audio Signals”, 1996, Department of Electrical Engineering, University of Minnesota, Minneapolis, MN. [cited by applicant]
International Search Report and Written Opinion dated Oct. 19, 2020 from corresponding International patent application No. PCT/EP2020/075377. [cited by applicant]
Office Action and first search issued Sep. 10, 2024 from corresponding Chinese patent application No. 202080057490.2. [cited by applicant]
Notification of Allowance dated Mar. 21, 2025 from corresponding Chinese patent application No. 202080057490.2. [cited by applicant]