US2022070159A1PendingUtilityA1

Secure vehicle control unit update

Assignee: MICRON TECHNOLOGY INCPriority: Dec 19, 2017Filed: Nov 12, 2021Published: Mar 3, 2022
Est. expiryDec 19, 2037(~11.4 yrs left)· nominal 20-yr term from priority
Inventors:Alberto Troia
H04L 63/083H04L 63/0428G06F 21/575G06F 21/572
60
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

The present disclosure includes apparatuses and methods related to a secure vehicle control unit update. An example apparatus comprises a processing resource coupled to a memory resource. The memory resource can be configured to store a private key associated with a vehicle and store data corresponding to an update to a control unit of the vehicle. The processing resource can be configured to compare the private key associated with the vehicle and a private key included in the data corresponding to the update to the control unit that is stored in the memory resource and allow transmission of the update to the control unit of the vehicle in response to the private key associated with the vehicle matching the private key included in the data.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . An apparatus, comprising:
 a firewall located between a control unit of a vehicle and a host computing device, comprising:
 a controller configured to control generation and decoding of secure messages transmitted between the control unit, the firewall, and the host computing device; 
 a memory resource configured to:
 store a first private key associated with the vehicle; 
 receive a secure message comprising data corresponding to a control circuitry update to the control unit; and 
 store data corresponding to the control circuitry update; and 
 
 a processing resource coupled to the memory resource, wherein the processing resource is configured to:
 compare the first private key and a second private key included in the data corresponding to the control circuitry update; 
 send the control circuitry update to the control unit in response to the first private key associated with the vehicle matching the second private key; and 
 cancel sending of the control circuitry update to the control unit in response to the first private key associated with the vehicle not matching the second private key. 
 
   
     
     
         2 . The apparatus of  claim 1 , wherein the first private key is generated based on a vehicle identification number (VIN) assigned to the vehicle. 
     
     
         3 . The apparatus of  claim 1 , wherein the memory resource is configured to receive the data corresponding to the control circuitry update via an on board diagnostics (OBD) II interface. 
     
     
         4 . The apparatus of  claim 1 , further comprising the memory resource configured to store data corresponding to a control unit parameter update to the control unit of the vehicle. 
     
     
         5 . The apparatus of  claim 1 , further comprising the memory resource configured to store the data corresponding to the control circuitry update in response to the controller receiving a request that includes the control circuitry update to the control unit. 
     
     
         6 . The apparatus of  claim 1 , wherein the data corresponding to the control circuitry update comprises vehicle part configuration data, trained data sets, control unit parameter updates, and data collected by the vehicle. 
     
     
         7 . The apparatus of  claim 2 , wherein the first private key is based, at least in part, on the VIN associated with the vehicle. 
     
     
         8 . A system, comprising:
 a vehicle including a firewall and a control unit, the firewall located between the control unit and a host computing device and comprising:
 a first controller configured to decode signals received to the firewall, wherein the control unit is coupled to the first controller; and 
   a remote computing device including a memory resource, a processing resource, and a second controller,
 wherein the host computing device sends a request for data corresponding to a control circuitry update of the control unit to the remote computing device and receives the data corresponding to the control circuitry update via a first secure message; and 
 wherein the host computing device sends data corresponding to the control circuitry update to the vehicle as a second secure message, and the firewall of the vehicle decrypts the second secure message and compares the private key included in the data corresponding to the control circuitry update to a private key stored in the firewall. 
   
     
     
         9 . The system of  claim 8 , wherein the firewall of the vehicle is configured to write the data corresponding to the control circuitry update to a memory resource in the firewall. 
     
     
         10 . The system of  claim 8 , wherein the firewall of the vehicle is configured to send the data corresponding to the control circuitry update to the control unit of vehicle in response to the private key included in the data corresponding to the control circuitry update matching the private key stored in the firewall. 
     
     
         11 . The system of  claim 8 , wherein the firewall of the vehicle is configured to cancel sending the data corresponding to the control circuitry update to the control unit of vehicle in response to the private key included in the data corresponding to the control circuitry update not matching the private key stored in the firewall. 
     
     
         12 . The system of  claim 8 , wherein the first secure message comprises a header comprising control information to provide for delivering the first secure message and a footer information signifying the end of the first secure message and information concerning the destination of the first secure message. 
     
     
         13 . The system of  claim 8 , further comprising a port configured to receive from and send to communication with the host computing device. 
     
     
         14 . The system of  claim 13 , further comprising a different port configured to receive from and send to communication with the firewall. 
     
     
         15 . The system of  claim 8 , wherein the first secure message further comprises an authentication protocol and a message authentication code. 
     
     
         16 . A method, comprising:
 sending, from a host computing device via a first port of the host computing device, a request to a firewall on a vehicle in communication with the host computing device to update a control circuitry of a control unit of the vehicle;   sending, from the host computing device, a request for data corresponding to the update to a remote computing device,   receiving, at the host computing device, data corresponding to the update from the remote computing device, wherein the data corresponding to the update to the control unit includes a private key associated with the vehicle;   sending, from the host computing device and via the first port, the data corresponding to the update as a secure message to the firewall;   decrypting the secure message and comparing, at the firewall, the private key associated with the vehicle to a private key stored on the firewall; and   authorizing the update to the control unit in response to the private key associated with the vehicle matching the private key stored on the firewall.   
     
     
         17 . The method of  claim 16 , further including storing the data corresponding to the update in a memory resource on the firewall. 
     
     
         18 . The method of  claim 16 , further including sending a vehicle identification number (VIN) associated with the vehicle with the request for data corresponding to the update. 
     
     
         19 . The method of  claim 16 , further including executing the update to the control unit by updating firmware of the control unit. 
     
     
         20 . The method of  claim 16 , further including decoding signals received to the firewall used to control operation of the firewall and the control unit of a vehicle.

Join the waitlist — get patent alerts

Track US2022070159A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.