论文标题
CAN-MM:控制器区域网络消息身份验证的多路复用消息身份验证代码在公路车辆中
CAN-MM: Multiplexed Message Authentication Code for Controller Area Network message authentication in road vehicles
论文作者
论文摘要
对于网络攻击,汽车市场越来越有利可图,并且不断向完全相互联系的车辆转变。汽车上安装的电子控制单元(ECU)通常在关键和敌对的环境中运行。因此,汽车制造商和政府都决定支持一系列举措,以减轻汽车领域的风险和威胁。控制器区域网络(CAN)是汽车字段中的主要通信协议,通过消息身份验证代码(MAC)确保了通过此网络的通信的完整性。但是,吞吐量和框架大小的限制将该技术的应用限制为CAN协议的特定版本,而几辆汽车仍然没有保护。本文介绍的是可以多重的Mac(CAN-MM),这是一种新的方法,将频率调制到具有标准CAN通信的多重MAC数据。 CAN-MM允许传输MAC有效载荷,以保持与标准CAN协议的所有版本的全下现兼容性。此外,多路复用允许同时发送数据和MAC。
The automotive market is increasingly profitable for cyberattacks with the constant shift toward fully interconnected vehicles. Electronic Control Units (ECUs) installed on cars often operate in a critical and hostile environment. Hence, both carmakers and governments have decided to support a series of initiatives to mitigate risks and threats belonging to the automotive domain. The Controller Area Network (CAN) is the primary communication protocol in the automotive field, and the integrity of the communication over this network is assured through Message Authentication Codes (MAC). However, limitations in throughput and frame size limit the application of this technique to specific versions of the CAN protocol, leaving several vehicles still unprotected. This paper presents CAN Multiplexed MAC (CAN-MM), a new approach exploiting frequency modulation to multiplex MAC data with standard CAN communication. CAN-MM allows transmitting MAC payloads maintaining full-back compatibility with all versions of the standard CAN protocol. Moreover, multiplexing allows sending DATA and MAC simultaneously.