IP Library Granted Patent US 9,912,754
Granted Patent B2
US 9,912,754 · App. 14/702,452 · Granted Mar 6, 2018

Vehicular data isolation device

Inventors: Corey Wideman (Shelby Township, MI); Kevin M. Baltes (Wixom, MI); Joseph E. Ploucha (Commerce Township, MI); Thomas M. Forest (Macomb, MI); Michael L. Imel (Farmington Hills, MI)
Assignee: GM Global Technology Operations LLC
H04L67/12H04L63/101H04L67/125H04L69/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,912,754
App. No.
14/702,452
Granted
Mar 6, 2018
Kind
B2
Abstract

A system and method of regulating data communications between a vehicle electronics system and a computing device includes: communicatively linking a first data port of an isolation device with the vehicle electronics system; communicatively linking a second data port of the isolation device with the computing device; receiving data at the isolation device sent between the computing device and the vehicle electronics system; and permitting the data to pass through the isolation device based on the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data.

Claims (40)

1. A method of regulating data communications between a vehicle electronics system and a computing device, comprising the steps of:

(a) communicatively linking a first data port of an isolation device with the vehicle electronics system;

(b) communicatively linking a second data port of the isolation device with the computing device, wherein the isolation device includes first and second microprocessors with the first microprocessor being linked to the first data port and the second microprocessor being linked to the second data port, and wherein the first and second microprocessors are communicatively linked to each other via a communications bus that separates the first and second microprocessors from each other;

(c) receiving data at the isolation device sent between the computing device and the vehicle electronics system;

(d) determining whether the computing device is authorized to send data by comparing the content of a message identifier included with the received data with one or more authorized device identifiers, or a list of data type permissions, or both;

(e) upon determining that the computer device is authorized to send data, permitting the data to pass through the isolation device between the first and second microprocessors via the communication bus based on the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data; and

(f) in response to a detection of tampering or unauthorized access, preventing communication between the first or second microprocessors via the communication bus by deactivating the communication bus, the tampering or unauthorized access determined based on at least one of the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data.

2. The method of claim 1 , further comprising the step of detecting the message identifier included in the received data.

3. The method of claim 2 , further comprising the step of comparing the content of the message identifier with one or more device identifiers.

4. The method of claim 2 , further comprising the step of comparing the content of the message identifier with a list of data type permissions.

5. The method of claim 1 , further comprising the step of wirelessly receiving an update of a list of data type permissions, a device identifier, or both.

6. The method of claim 1 , further comprising the step of installing the isolation device in the vehicle with tamper-resistance attachments.

7. The method of claim 1 , wherein the step of deactivating the communication bus includes depowering the communication bus or shorting the communication bus.

8. A method of regulating data communications between a vehicle electronics system and a computing device, comprising the steps of:

(a) communicatively linking a first data port of an isolation device with the vehicle electronics system;

(b) communicatively linking a second data port of the isolation device with a computing device, wherein the isolation device includes first and second microprocessors with the first microprocessor being linked to the first data port and the second microprocessor being linked to the second data port, and wherein the first and second microprocessors are communicatively linked to each other via a communications bus that separates the first and second microprocessors from each other;

(c) receiving data at the isolation device sent between the computing device and the vehicle electronics system;

(d) determining whether the computing device is authorized to send data by comparing the content of a message identifier included with the received data with one or more authorized device identifiers, or a list of data type permissions, or both;

(e) recording at least some portion of the received data at the isolation device;

(f) upon determining that the computer device is authorized to send data, permitting the data to pass through the isolation device between the first and second microprocessors via the communication bus based on the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data;

(g) wirelessly transmitting the recorded data to a central facility via a vehicle telematics unit; and

(h) in response to a detection of tampering or unauthorized access, preventing communication between the first or second microprocessors via the communication bus by deactivating the communication bus, the tampering or unauthorized access determined based on at least one of the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data.

9. The method of claim 8 , further comprising the step of detecting the message identifier included in the received data.

10. The method of claim 9 , further comprising the step of comparing the content of the message identifier with one or more device identifiers.

11. The method of claim 9 , further comprising the step of comparing the content of the message identifier with a list of data type permissions.

12. The method of claim 8 , further comprising the step of wirelessly receiving an update of a list of data type permissions, a device identifier, or both.

13. The method of claim 8 , further comprising the step of installing the isolation device in the vehicle with tamper-resistance attachments.

14. An isolation device located at a vehicle that selectively permits the communication of data between a vehicle electronics system and a computing device, comprising:

a first data port receiving a wired connection to the vehicle electronics system;

a first microprocessor and memory device communicatively linked to the first data port;

a second data port receiving a wired connection to the computing device;

a second microprocessor and another memory device communicatively linked to the second data port; and

a communication bus communicatively linking the first data port and the second data port and separating the first and second microprocessors from each other, wherein data is selectively communicated between the vehicle electronics system and the computing device via the communication bus along a data path including both the first and second microprocessors based on the content of the data, the identity of the computing device, or both;

wherein the isolation device is configured to determine whether the computing device is authorized to send data by comparing the content of a message identifier included with the received data with one or more authorized device identifiers, or a list of data type permissions, or both; and

wherein the isolation device is configured to, in response to a detection of tampering or unauthorized access, prevent communication between the first or second microprocessors via the communication bus by deactivating the communication bus, the tampering or unauthorized access determined based on at least one of the identity of the computing device, the rate at which the data passes through the isolation device, or the content of the data.

15. The isolation device of claim 14 , wherein the isolation device is communicatively linked to a vehicle telematics unit.

16. The isolation device of claim 15 , wherein the vehicle telematics unit wirelessly receives an update of a list of data type permissions, a device identifier, or both.

17. The isolation device of claim 14 , wherein the isolation device is installed in the vehicle with tamper-resistance attachments.

18. The isolation device of claim 14 , wherein one or more device identifiers are stored in the memory device of the first microprocessor or the memory device of the second microprocessor.

19. The isolation device of claim 14 , wherein a list of data type permissions is stored in the memory device of the first microprocessor or the memory device of the second microprocessor.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 28, 2015
From: WIDEMAN, COREY; BALTES, KEVIN M.; PLOUCHA, JOSEPH E.; FOREST, THOMAS M.; IMEL, MICHAEL L.
To: GM GLOBAL TECHNOLOGY OPERATIONS LLC
Reel/Frame 035735/0257 →
Continuity (1)
Related Publication 20160323386A1 · Nov 3, 2016