IP Library › Granted Patent US 11,569,984
Granted Patent B2
US 11,569,984 · App. 17/036,470 · Granted Jan 31, 2023

Key management method used in encryption processing for safely transmitting and receiving messages

Inventors: Yoshihiro Ujiie (Osaka, JP); Jun Anzai (Kanagawa, JP); Yoshihiko Kitamura (Tokyo, JP); Masato Tanabe (Kanagawa, JP); Takeshi Kishikawa (Osaka, JP)
Assignee: PANASONIC INTELLECTUAL PROPERTY CORPORATION OF AMERICA
H04L9/08B60R16/0231H04L9/083H04L9/088H04L9/0822H04L63/0428H04L63/068H04L67/12H04L2209/84
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,569,984
App. No.
17/036,470
Granted
Jan 31, 2023
Kind
B2
Abstract

A key management method serves as an electronic control unit (ECU) in an onboard network system having a plurality of ECUs that perform communication by frames via a network. The method includes storing a shared key and executing encryption processing based on the shared key. The method further includes executing inspection of a security state of the shared key stored in a case where a vehicle is in at least one of the following particular states: the vehicle is not driving and is an accessory-on state; a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling; the vehicle is parked, which is indicated by the gearshift; the vehicle is in a stopped state before driving, which is indicated by the gearshift; and a charging plug is connected to the vehicle, and the vehicle is electrically charging.

Claims (43)

1. A key management method in a key management device serving as an electronic control unit (ECU) in an onboard network system having a plurality of electronic control units (ECUs) that perform communication by frames via a network, the method comprising:

storing, in a first-type electronic control unit out of the plurality of electronic control units, a shared key to be mutually shared with one or more second-type electronic control units other than the first-type electronic control unit, the shared key also being stored in the one or more second-type electronic control units other than the first-type electronic control unit;

executing encryption processing regarding a frame transmitted or received via the network, based on the shared key; and

executing, by the first-type electronic control unit, inspection of a security state of the shared key stored by the second-type electronic control units in a case where a vehicle in which the onboard network system is installed is in at least one particular state,

wherein the at least one particular state includes at least one of the following particular states,

(a) the vehicle is not driving and is an accessory-on state,

(b) a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling,

(c) the vehicle is parked, which is indicated by the gearshift,

(d) the vehicle is in a stopped state before driving, which is indicated by the gearshift, and

(e) a charging plug is connected to the vehicle, and the vehicle is electrically charging.

2. The key management method according to claim 1 ,

wherein the inspection is an inspection relating to an expiration date of the shared key.

3. The key management method according to claim 1 ,

wherein the inspection is an inspection relating to a serial ID of the second-type electronic control unit that stores the shared key.

4. The key management method according to claim 1 ,

wherein, in a case where the plurality of electronic control units includes a plurality of the second-type electronic control units, the inspection is an inspection relating to a transmission order of frames at the plurality of second-type electronic control units.

5. The key management method according to claim 4 ,

wherein the first-type electronic control unit transmits a frame indicating a predetermined request and thereafter sequentially receives frames from the plurality of second-type electronic control units, and based on the IDs of the frames, performs the inspection by distinguishing whether or not the IDs have been received in an order that a predetermined order list indicates.

6. The key management method according to claim 1 ,

wherein the first-type electronic control unit executes the inspection only in a case of the particular state.

7. The key management method according to claim 1 ,

wherein the first-type electronic control unit executes the inspection by communication with a server located externally from the vehicle.

8. The key management method according to claim 1 ,

wherein the plurality of electronic control units perform communication by frames via the network, following a Controller Area Network protocol.

9. An onboard network system having a plurality of electronic control units (ECUs) that perform communication by frames via a network, the system comprising:

a first-type electronic control unit, out of the plurality of electronic control units, configured to store a shared key to be mutually shared with one or more second-type electronic control units other than the first-type electronic control unit, the shared key also being stored in the one or more second-type electronic control units other than the first-type electronic control unit; and

each of the second-type electronic control units configured to execute encryption processing regarding a frame transmitted or received via the network, based on the shared key,

wherein the first-type electronic control unit executes inspection of a security state of the shared key stored by the second-type electronic control units in a case where a vehicle in which itself is installed is in at least one particular state,

(a) the vehicle is not driving and is an accessory-on state,

(b) a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling,

(c) the vehicle is parked, which is indicated by the gearshift,

(d) the vehicle is in a stopped state before driving, which is indicated by the gearshift, and

(e) a charging plug is connected to the vehicle, and the vehicle is electrically charging.

10. A key management device serving as an electronic control unit (ECU) in an onboard network system having a plurality of electronic control units (ECUs) that perform communication by frames via a network, the device comprising:

a processor; and

a memory having a computer program stored thereon, the computer program causing the processor to execute operations including

storing a shared key to be mutually shared with one or more electronic control units other than itself out of the plurality of electronic control units, the shared key also being stored in the one or more second-type electronic control units other than the first-type electronic control unit, and

inspecting of a security state of the shared key stored by the electronic control units other than itself in a case where a vehicle in which itself is installed is in at least one particular state,

(a) the vehicle is not driving and is an accessory-on state,

(b) a fuel cap of the vehicle is open, and the vehicle is not driving and is fueling,

(c) the vehicle is parked, which is indicated by the gearshift,

(d) the vehicle is in a stopped state before driving, which is indicated by the gearshift, and

(e) a charging plug is connected to the vehicle, and the vehicle is electrically charging.

Priority Claims (1)
JP 2015-168311 · Aug 27, 2015 · national
Continuity (5)
Continuation 16686855 · Nov 18, 2019
Continuation 15203622 · Jul 6, 2016
Continuation PCTJP2015005223 · Oct 16, 2015
Provisional Application 62079301 · Nov 13, 2014
Related Publication 20210028925A1 · Jan 28, 2021
Cited By (1)
US 12,395,498