Secure vehicle control unit update
Abstract
The present disclosure includes apparatuses and methods related to a secure vehicle control unit update. An example apparatus comprises a processing resource coupled to a memory resource. The memory resource can be configured to store a private key associated with a vehicle and store data corresponding to an update to a control unit of the vehicle. The processing resource can be configured to compare the private key associated with the vehicle and a private key included in the data corresponding to the update to the control unit that is stored in the memory resource and allow transmission of the update to the control unit of the vehicle in response to the private key associated with the vehicle matching the private key included in the data.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . An apparatus, comprising:
a firewall located between a control unit of a vehicle and a host computing device, comprising:
a controller configured to control generation and decoding of secure messages transmitted between the control unit, the firewall, and the host computing device;
a memory resource configured to:
store a first private key associated with the vehicle;
receive a secure message comprising data corresponding to a control circuitry update to the control unit; and
store data corresponding to the control circuitry update; and
a processing resource coupled to the memory resource, wherein the processing resource is configured to:
compare the first private key and a second private key included in the data corresponding to the control circuitry update;
send the control circuitry update to the control unit in response to the first private key associated with the vehicle matching the second private key; and
cancel sending of the control circuitry update to the control unit in response to the first private key associated with the vehicle not matching the second private key.
2 . The apparatus of claim 1 , wherein the first private key is generated based on a vehicle identification number (VIN) assigned to the vehicle.
3 . The apparatus of claim 1 , wherein the memory resource is configured to receive the data corresponding to the control circuitry update via an on board diagnostics (OBD) II interface.
4 . The apparatus of claim 1 , further comprising the memory resource configured to store data corresponding to a control unit parameter update to the control unit of the vehicle.
5 . The apparatus of claim 1 , further comprising the memory resource configured to store the data corresponding to the control circuitry update in response to the controller receiving a request that includes the control circuitry update to the control unit.
6 . The apparatus of claim 1 , wherein the data corresponding to the control circuitry update comprises vehicle part configuration data, trained data sets, control unit parameter updates, and data collected by the vehicle.
7 . The apparatus of claim 2 , wherein the first private key is based, at least in part, on the VIN associated with the vehicle.
8 . A system, comprising:
a vehicle including a firewall and a control unit, the firewall located between the control unit and a host computing device and comprising:
a first controller configured to decode signals received to the firewall, wherein the control unit is coupled to the first controller; and
a remote computing device including a memory resource, a processing resource, and a second controller,
wherein the host computing device sends a request for data corresponding to a control circuitry update of the control unit to the remote computing device and receives the data corresponding to the control circuitry update via a first secure message; and
wherein the host computing device sends data corresponding to the control circuitry update to the vehicle as a second secure message, and the firewall of the vehicle decrypts the second secure message and compares the private key included in the data corresponding to the control circuitry update to a private key stored in the firewall.
9 . The system of claim 8 , wherein the firewall of the vehicle is configured to write the data corresponding to the control circuitry update to a memory resource in the firewall.
10 . The system of claim 8 , wherein the firewall of the vehicle is configured to send the data corresponding to the control circuitry update to the control unit of vehicle in response to the private key included in the data corresponding to the control circuitry update matching the private key stored in the firewall.
11 . The system of claim 8 , wherein the firewall of the vehicle is configured to cancel sending the data corresponding to the control circuitry update to the control unit of vehicle in response to the private key included in the data corresponding to the control circuitry update not matching the private key stored in the firewall.
12 . The system of claim 8 , wherein the first secure message comprises a header comprising control information to provide for delivering the first secure message and a footer information signifying the end of the first secure message and information concerning the destination of the first secure message.
13 . The system of claim 8 , further comprising a port configured to receive from and send to communication with the host computing device.
14 . The system of claim 13 , further comprising a different port configured to receive from and send to communication with the firewall.
15 . The system of claim 8 , wherein the first secure message further comprises an authentication protocol and a message authentication code.
16 . A method, comprising:
sending, from a host computing device via a first port of the host computing device, a request to a firewall on a vehicle in communication with the host computing device to update a control circuitry of a control unit of the vehicle; sending, from the host computing device, a request for data corresponding to the update to a remote computing device, receiving, at the host computing device, data corresponding to the update from the remote computing device, wherein the data corresponding to the update to the control unit includes a private key associated with the vehicle; sending, from the host computing device and via the first port, the data corresponding to the update as a secure message to the firewall; decrypting the secure message and comparing, at the firewall, the private key associated with the vehicle to a private key stored on the firewall; and authorizing the update to the control unit in response to the private key associated with the vehicle matching the private key stored on the firewall.
17 . The method of claim 16 , further including storing the data corresponding to the update in a memory resource on the firewall.
18 . The method of claim 16 , further including sending a vehicle identification number (VIN) associated with the vehicle with the request for data corresponding to the update.
19 . The method of claim 16 , further including executing the update to the control unit by updating firmware of the control unit.
20 . The method of claim 16 , further including decoding signals received to the firewall used to control operation of the firewall and the control unit of a vehicle.Join the waitlist — get patent alerts
Track US2022070159A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.