Abstract:
A head unit (100) that is a vehicle communication apparatus connected to a bus in an in-vehicle network system, the in-vehicle network system including a plurality of apparatuses that perform communication of frames via the bus, includes a multimedia control unit (150) that identifies a transmit frame, the transmit frame being a frame to be delivered to the bus, and a system control unit (110) capable of exchanging information on frames with the multimedia control unit (150) via wired communication or wireless communication. At least one of the multimedia control unit (150) and the system control unit (110) determines a conformity of the transmit frame with a rule.
Abstract:
Provided is an update management method that causes an external tool, capable of transmitting an update message to update data such as shared keys and the like within electronic control units (ECUs) making up an onboard network, to update shared keys and the like within the ECUs, while reducing the risk of all ECUs being unauthorizedly rewritten in a case where secret information given to the external tool is leaked. The update management method is to receive and verify update authority information indicating authority of the external tool, and in a case that an update message instructing updating of shared keys or the like of one or multiple ECUs has been transmitted from the external tool (step S1010), if the verification is successful and the update authority information indicates that the transmission of the update message is within the range of authority of the external tool (step S1013), the update is executed at the ECU (step S1019), and otherwise, update at the ECU is inhibited.
Abstract:
A gateway (90) connected to a bus (10), a bus (20), and the like used by a plurality of electronic control units for communication includes a frame communication unit (901) that receives a frame, a transfer control unit (906) that removes verification information used to verify a frame from the content of the frame received by the frame communication unit (901) and transfers the frame to a destination bus or that adds verification information to the content of the frame and transfers the frame to the destination bus, and the like.
Abstract:
Provided is a key management method to secure security in an onboard network system having multiple electronic control units storing a shared key. In the key management method of the onboard network system including multiple electronic units (ECUs) that perform communication by frames via a bus, a master ECU (400) stores a shared key to be mutually shared with one or more ECUs (100a through 100d). Each of the ECUs (100a through 100d) acquire a session key by communication with the master ECU (400) based on the stored shared key, and after this acquisition, executes encryption processing regarding a frame transmitted or received via the bus, using this session key. In a case where a vehicle in which the onboard network system is installed is in a particular state, the master ECU (400) executes inspection (e.g., steps S1201, S1203) of a security state of the shared key stored by the ECU (100a) or the like.