SW-Update. Thomas Fleischmann June 5 th 2015

Similar documents
How Security Mechanisms Can Protect Cars Against Hackers. Christoph Dietachmayr, CIS Solution Manager EB USA Techday, Dec.

Sicherheitsaspekte für Flashing Over The Air in Fahrzeugen. Axel Freiwald 1/2017

Scalable and Flexible Software Platforms for High-Performance ECUs. Christoph Dietachmayr Sr. Engineering Manager, Elektrobit November 8, 2018

10 th AUTOSAR Open Conference

Automotive Anomaly Monitors and Threat Analysis in the Cloud

PREEvision Technical Article

Software Architecture for Secure ECUs. Rudolf Grave EB TechDay-June 2015

Cyber security mechanisms for connected vehicles

Mentor Automotive Save Energy with Embedded Software! Andrew Patterson Presented to CENEX 14 th September 2016

Architecture concepts in Body Control Modules

Introduction to Adaptive AUTOSAR. Dheeraj Sharma July 27, 2017

Diagnostic Trends 2017 An Overview

Countermeasures against Cyber-attacks

OTA and Remote Diagnostics

Flash Bootloader. Product Information

M2MD Communications Gateway: fast, secure and efficient

Automotive Linux Summit 2017 May 31-June 2, 2017, Tokyo, Japan Advances and challenges in remote configuration of connected cars

A NEW CONCEPT IN OTA UPDATING FOR AUTOMOTIVE

Software integration challenge multi-core experience from real world projects

Autonomous Driving From Fail-Safe to Fail-Operational Systems

TechPaper. Over-the-air updates what advantages does the AUTOSAR Adaptive Platform offer?

M2MD Communications Gateway: fast, secure, efficient

Automotive Gateway: A Key Component to Securing the Connected Car

Diagnostic Use Cases V

Indigo. Vector Diagnostic Tester V / 6

SIMPLIFYING THE CAR. Helix chassis. Helix chassis. Helix chassis WIND RIVER HELIX CHASSIS WIND RIVER HELIX DRIVE WIND RIVER HELIX CARSYNC

OFF-ROAD VEHICLE DIAGNOSTICS WITH AUTOSAR. Jigar Patel Namdeo Dhawle July 18, 2018

Virtual Hardware ECU How to Significantly Increase Your Testing Throughput!

Secure Ethernet Communication for Autonomous Driving. Jared Combs June 2016

MIGRATING TO CAN FD. Tony Adamson. Marketing Director CAN / LIN / FlexRay

Automotive Security An Overview of Standardization in AUTOSAR

AUTOSAR proofs to be THE automotive software platform for intelligent mobility

Automotive Security: Challenges and Solutions

Automotive Security: Challenges, Standards and Solutions. Alexander Much 12 October 2017

Adaptive AUTOSAR: Infrastructure Software for Advanced Driver Assistance. Chris Thibeault June 7, 2016

Market Trends and Challenges in Vehicle Security

vflash Vector Webinar V

Efficient testing of ECUs despite Security

Infotainment Solutions. with Open Source and i.mx6. mentor.com/embedded. Andrew Patterson Business Development Director Embedded Automotive

Welcome Note. Dr. Thomas Scharnhorst, AUTOSAR Spokesperson 10 th AUTOSAR Open Conference 8 th Nov 2017, Mountain View, California

Build a Driver Information System with IoT Technology

The Safe State: Design Patterns and Degradation Mechanisms for Fail- Operational Systems

EB TechPaper. EB Assist Car Data Recorder Innovative test drive support. automotive.elektrobit.com

Connected driving is the future. However, data exchange between vehicles. and roadside equipment will only become genuinely beneficial when it is

Standardization for efficient testing of Automotive Ethernet ECUs

13W-AutoSPIN Automotive Cybersecurity

Securing the future of mobility

Open Source in Automotive Infotainment

Automated Driving Necessary Infrastructure Shift

Trusted Platform Modules Automotive applications and differentiation from HSM

KPIT S Connected Vehicle Practice

Smart Antennas and Hypervisor: Enabling Secure Convergence. July 5, 2017

AGL Reference Hardware Specification Document

Turbocharging Connectivity Beyond Cellular

Standardized Tool Components for NRMM-Diagnostics

ODX Process from the Perspective of an Automotive Supplier. Dietmar Natterer, Thomas Ströbele, Dr.-Ing. Franz Krauss ZF Friedrichshafen AG

AUTOSAR Software Design with PREEvision

AUTOSAR - Challenges and Solutions from a Software Vendor s Perspective

Adaptive AUTOSAR Extending the Scope of AUTOSAR-based Embedded Software

ARM Moves Further Into Automotive with NXP's Launch of S32K Series to the General Market

Automotive Cyber Security

verus edge: Fully loaded. DIAGNOSTICS, REPAIR, MANAGEMENT AND BEYOND

Software and Hardware Tools for Driver Assistance & Automated Driving Chris Thibeault Head of US Product Expert Group Elektrobit November 8, 2018

Automotive Networks Are New Busses and Gateways the Answer or Just Another Challenge? ESWEEK Panel Oct. 3, 2007

Driven by SOLUTIONS. Professional vehicle diagnostic solutions for every workshop. ESI[tronic] 2.0 Online - KTS - DCU

INTERNET OF THINGS KONTRON

ARM processors driving automotive innovation

ETHERNET JOURNEY AT JAGUAR LAND ROVER CHALLENGES IN THE DEVELOPMENT OF AN ETHERNET BACKBONE

Designing a software framework for automated driving. Dr.-Ing. Sebastian Ohl, 2017 October 12 th

Secure Product Design Lifecycle for Connected Vehicles

OTA-On-Demand (OOD) Services with AGL

Architectures of Automotive Electrical. Nicolas Navet. Can be freely used for teaching Complexity Mastered. Outline

MotoHawk support for ISO 15765

S32K Microcontroller Press Pack

Realizing Automated Driving Systems using Ethernet TSN and Adaptive AUTOSAR

1000BASE-T1 from Standard to Series Production

OSGi Technology in the Vehicle. Hans-Ulrich Michel, BMW Group Research and Technology,

NXP Connects the Car 25 Jul. 2013

NC1701 ENHANCED VEHICLE COMMUNICATIONS CONTROLLER

Security and Performance Benefits of Virtualization

Dr. Andreas Both / Zhang Enqin Automotive Runtime Software

Adaptive AUTOSAR Extending the Scope of AUTOSAR-based Embedded Software

STMicroelectronics Automotive MCU Technical Day 意法半导体汽车微控制器技术日 2017 年 ST 汽车 MCU 技术日 2017 年 6 月 6 日, 上海 2017 年 6 月 8 日, 深圳 2017 年 6 月 13 日, 北京

LAUNCH. X-431 PADII Product Introduction

IVI and ADAS Automotive Solutions

EB TechPaper. Combining the strengths of Elektrobit's SecOC with Argus IDPS. elektrobit.com

Automatic validation of diagnostics in ECUs

Adaptive AUTOSAR for high-performance in-car computers

How to make Connected Car Reality? Dr. Walter J. Buga CEO

Driven by SOLUTIONS. The new generation of vehicle diagnostic solutions. ESI[tronic], KTS and DCU from Bosch

In Vehicle Networking : a Survey and Look Forward

KSAR Support. for. ST s SPC5 32-bit Automotive MCUs

Uptane: Securely Updating Automobiles. Sam Weber NYU 14 June 2017

PENETRATION TESTING OF AUTOMOTIVE DEVICES. Dr. Ákos Csilling Robert Bosch Kft., Budapest HUSTEF 15/11/2017

Compliance Verification Process for Ethernet ECUs

Mentor Automotive. Vehicle Network Design to meet the needs of ADAS and Autonomous Driving

AUTOMOTIVE FOUNDATIONAL SOFTWARE SOLUTIONS FOR THE MODERN VEHICLE

The Adaptive Platform for Future Use Cases

Failure Diagnosis and Prognosis for Automotive Systems. Tom Fuhrman General Motors R&D IFIP Workshop June 25-27, 2010

Automotive Cybersecurity: A steep learning curve

Transcription:

Thomas Fleischmann June 5 th 2015

2

3

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 4

More and more product value from software Automotive Mobile Software Components Silicon Components Mechanical Components Other 22% 7% 41% 11% 15% 5% 69 % 30% Source: VDC Research, June 2013 Elektrobit (EB) 2015 5

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 6

Elektrobit (EB) 2015 Confidential 7

From the CE industry Elektrobit (EB) 2015 8

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 9

Different kinds of flashing Calibration / Code Parameter settings E.g. 0101111011 on -> off Data set download Data set 1 0101111011 Flashing Application Bootloader, OS Elektrobit (EB) 2015 10

UDS update programming Read data by Identifier Diagnostic session control extended session Routine Control Check Prog Precond. Control DTC Setting (-> Off) Comm. Control Disable Non-Diag.Comm. Diagnostic Session Control Prog.Session Security Access Request Seed Transfer Key Write data by Identifier -Write fingerprint Read ECU identification in oder to check HW/SW compatibility Switch to extended session as next steps are not allowed in default session Check preconditions e.g. motor off, battery V sufficient Disable trouble code storage Disable normal ECU communication Switch to the programming session Login procedure, depending on security level Write ID of tester to document programming Elektrobit (EB) 2015 11

UDS update programming Routine control - erase memory Request download Transfer data Request transfer exit Routine control check memory and reprog. dependencies ECU Reset Comm. Control enable Non- Diag.Comm. Control DTC Setting Diagnostic session control Default session Erase flash memory Prepare ECU for download In a loop: Transfer data blocks to ECU End download often the actual flash is started now Verify and ensure consistency Restart the ECU Re-enable normal communication Switch on trouble code logging End of programming Elektrobit (EB) 2015 12

On-Board Diagnose (2) Modern gateway architecture CAN motor ECU Trans control FlexRay drive by wire DoIP,... Diagnostic CAN Gateway Comfort CAN Door climat contr. ACC LIN fan Infotainment navi radio telematic ethernet front camera rear camera Elektrobit (EB) 2015 13

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 14

One aproach Add a special agent into each ECU SW- Packages Backend SW- Packages OMA- DM Server OEM specific OMA- DM Client Update agent manager TCU Update agent ECU Update agent ECU Update agent ECU Elektrobit (EB) 2015 Confidential 15

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 16

EB Solution: Evolution versus Revolution Solution: Use established mechanisms and processes with smart extensions Client receives SW Update via online connectivity (e.g. OTA-DM) Connection is secured via established mechanisms Internally an onboard diagnostics tester is connected to other ECUs Benefits Only one specific OTA-DM Client needed Legacy ECUs can be updated as well as next generations ECUs Avoid introducing a completely new path that has to be secured OTA for existing architectures more efficient and faster Elektrobit (EB), 2015 17

EB Solution The Smart Antenna A smart antenna will concentrate all wireless protocols in one place and secure the car infrastructure from the wireless access. Technologies: Linux/Autosar multi-core system Firewall between Linux and Autosar Update OTA enabled Secure connection to back-end system Ethernet connection to gateway Linux Hypervisor Autosar Elektrobit (EB) 2015

The real Challenge Obvious, but not the challenge: Download packages to the car, Variants and versions to be managed The real challenges are: Security & attack vectors Update distributed functions Dealing with power consumption Elektrobit (EB), 2015 19

Security Solutions by EB With more than 10 years of experience in engineering security processes and solutions, we are the perfect partner for carmakers and Tier 1 suppliers when ECUs require a secure software base. Use Cases: Authentication Signature Flash protection Software-enabling (carmaker-specific or according to HIS) Anti-theft protection Mileage protection Secure on-board communication Data protection Support for cryptographic hardware, e.g., SHE and HSM Compression and decompression Benefit from: Deep expertise Standardized and efficient embedded cryptography architectures based on AUTOSAR, HIS-Standard and customerspecific software: EB s security solutions seamlessly integrate into EB tresos AutoCore Reliability Support during the entire software life cycle paired with comprehensive maintenance services: EB s security solutions are already on the road in millions of cars Elektrobit (EB), 2015 20

Agenda The big picture SW-Update today Diagnostics vs SW-Update Our solution for SW-Update The real challenges beyond getting a file into the car Elektrobit (EB), 2015 21

The mirrored car Elektrobit (EB) 2015 22

Battery BIG BATTERY IMAGE Elektrobit (EB) 2015 23

Things to touch Elektrobit (EB) 2015 24

Building a SW Update OTA solution needs B EB Expert know how about the system (EB tresos and AUTOSAR) Solutions to save on battery power (e.g. pipelined programming, partial networking,.. ) Solid understanding and partners for the backend An answer to ensure overall system security (Hypervisor, security solutions, ) Good understanding about future vehicle networks (smart antenna, role of domain controllers, ) Elektrobit (EB) 2015 25

Thank you! automotive.elektrobit.com Thomas.Fleischmann@elektrobit.com