Security for V2X Communications

Similar documents
Securing V2X communications with Infineon HSM

LESSONS LEARNED: SECURITY AND PRIVACY IN SAFETY PILOT MODEL DEPLOYMENT

CAMP. Intelligent Transportation Systems. A Security Credential Management System for Vehicle-to-Vehicle Communications

Accelerating solutions for highway safety, renewal, reliability, and capacity. Future of Transportation

SPaT Challenge Overview and Lessons Learned

Connected driving is the future. However, data exchange between vehicles. and roadside equipment will only become genuinely beneficial when it is

GNU Radio Software Defined DSRC Radio

Accelerating solutions for highway safety, renewal, reliability, and capacity. Connected Vehicles and the Future of Transportation

Future Implications for the Vehicle When Considering the Internet of Things (IoT)

V2X: Beyond the Horizon. IBTTA AET Meeting July 18, 2017

NCHRP Project Impacts of Connected Vehicles and Automated Vehicles on State and Local Transportation Agencies

Third public workshop of the Amsterdam Group and CODECS C-ITS Deployment in Europe: Common Security and Certificate Policy

Connected Vehicle Safety Pilot Overview and Infrastructure Readiness

Conquering Complexity: Addressing Security Challenges of the Connected Vehicle

Dedicated Short Range Communication: What, Why and How?

Tips for viewing this webinar

Connected Car. Dr. Sania Irwin. Head of Systems & Applications May 27, Nokia Solutions and Networks 2014 For internal use

A Perspective on V2X in the United States

THEA CV PILOT OVERVIEW, STATUS, CHALLENGES, AND LESSONS LEARNED

Virginia Connected Corridor

Controlling traffic In a Connected world

Examining future priorities for cyber security management

Intelligent Transportation Systems (ITS) for Critical Infrastructure Protection

Common transportation user experience through unified fundamental data definition and movement from mobile elements, to roadside, to centers.

Pennsylvania Safety Transportation and Research Track (PennSTART) April 10, 2018

Agenda. About TRL. What is the issue? Security Analysis. Consequences of a Cyber attack. Concluding remarks. Page 2

Connected & Automated Vehicle Activities

Regional TSM&O Vision and ITS Architecture Update

Cybersecurity Challenges for Connected and Automated Vehicles. Robert W. Heller, Ph.D. Program Director R&D, Southwest Research Institute

Automotive Cyber Security

Singapore Autonomous Vehicle Initiative (SAVI)

Internet of Things Towards a more collaborative model

Cooperative Vehicles Opportunity and Challenges

The Cost in Fatalities, Injuries and Crashes Associated with Waiting to Deploy Vehicle-to- Vehicle Communication

icf.com Smart Cities we are Dave Speiser Angela Strickland Deepak Gopalakrishna Kyle Tuberson November 21, 2017 Copyright 2017 ICF (NASDAQ:ICFI)

C-ROADS PORTUGAL. Daniela Carvalho. 11º Congresso do Comité Português da URSI Lisboa, 24/11/

Context-Aware Vehicular Cyber-Physical Systems with Cloud Support: Architecture, Challenges, and Solutions

GOARN s role in the SEARO Regional Framework on Operational Partnerships for Emergency Response

BUILDING A PLAN FOR DEPLOYMENT

Development Progress and OEM Perspective of C-V2X in China

European Activities towards Cooperative Mobility

Vehicle To Android Communication Mode

INSPIRING IOT INNOVATION: MARKET EVOLUTION TO REMOVE BARRIERS. Mark Chen Taiwan Country Manager, Senior Director, Sales of Broadcom

Turbocharging Connectivity Beyond Cellular

SPaT Challenge Webinar Series Webinar #1: Initial SPaT Challenge Activities

Smart Cities & The 4th Industrial Revolution

Compass4D Working towards deployment of C-ITS. Pierpaolo Tona, Project Manager

AZTech Capability Maturity Model

WeVe: When Smart Wearables Meet Intelligent Vehicles

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21

Vehicle Safety Communications Project Final Overview

3 ITS Standards Deployment and Testing Strategies

EC Perspective on Connectivity and Smart Mobility and the Role of "Digital Co-production/Co-creation" in Transportation

All rights reserved. ITS at ETSI. Presented by Luis Jorge Romero on behalf of ETSI TC ITS

July 7, Proposed Rule; Unlicensed National Information Infrastructure (U-NII) Devices in the 5 GHz Band [ET Docket No.

Project Summary. Feb. 2014

European Union Agency for Network and Information Security

Workshop on the IPv6 development in Saudi Arabia 8 February 2009; Riyadh - KSA

arxiv: v1 [cs.cr] 14 Feb 2018

A SMART PORT CITY IN THE INTERNET OF EVERYTHING (IOE) ERA VERNON THAVER, CTO, CISCO SYSTEMS SOUTH AFRICA

Introduction to VANET

SMARTATL. A Smart City Overview and Roadmap. Evanta CIO Executive Summit 1

A. SERVEL. EuCNC Special Sessions 5G connected car 01/07/2015

SunGuide : Connected Vehicle Concept of Operations

Third public workshop of the Amsterdam Group and CODECS European Framework for C-ITS Deployment

Mobile Millennium Using Smartphones as Traffic Sensors

Roger C. Lanctot Director, Automotive Connected Mobility

Layer-based Multi-sensor Fusion Architecture for Cooperative and Automated Driving Application Development

Maxime Flament, CTO 5GAA GAA

USDOT CONNECTED VEHICLE PILOT. ITS Midwest 2017 September 19, 2017

STREAMS Integrated Network Management Presented by: Matthew Cooper

5G promotes the intelligence connected vehicles. Dr. Menghua Tao Senior Solution Manager China Unicom

Emerging Connected Vehicle based

Christoph Voigt, Chairman 5GAA GAA

Engaging Maryland toward CAV advancements Christine Nizer, Administrator

Corporate Security & Emergency Management Summary of Submitted 2015 Budget From Rates

WORLD TELECOMMUNICATION STANDARDIZATION ASSEMBLY Hammamet, 25 October 3 November 2016

CONNECTED VEHICLE COMMUNICATIONS IN A RURAL SETTING

Planning for Connectivity in a Maturing Connected Environment

Future Trends in ITS Industry view

Connected Vehicle (CV) Technology Procurement State of the Practice Analysis

Security and Privacy in Car2Car Adhoc Networks

ITS 5C Summit. Operationalizing Connected Vehicle Services

The modern car has 100 million lines of code and over half of new vehicles will be connected by 2020.

Arizona State Troopers Highway Patrol Division Sergeant John Paul Cartier

Orange Smart Cities. Smart Metering and Smart Grid : how can a telecom operator contribute? November

Vehicle to Infrastructure Deployment Coalition V2I DC. Final Phase 1 Webinar 3:30 4:30 PM (Eastern) February 13, 2017

Connected Medical Devices

NKN is a new kind of network connectivity protocol & ecosystem powered by blockchain for an open, decentralized, and shared Internet.

AUTOMOTIVE FUNCTIONAL SAFETY: ACCELERATING INNOVATION THROUGH COOPERATION AND CONSENSUS IN STANDARDS

Mobile Computing Systems Lecture on

5G Spectrum Access. Wassim Chourbaji. Vice President, Government Affairs and Public Policy EMEA Qualcomm Technologies Inc.

STRATEGY ATIONAL. National Strategy. for Critical Infrastructure. Government

Trust Harris for LTE. Critical Conditions Require Critical Response

Lakeland FLORIDA S FIRST. Human Resources GIGABIT CITY WHY? Keith Merritt Commissioner February 16, 2015

Pennsylvania Safety Transportation and Research Track (PennSTART)

ITS Wisconsin Transportation Conference October 23, 2018

REAL-WORLD STRATEGIES FOR MEDICAL DEVICE SECURITY

Cisco Smart+Connected Communities

Standards for V2X Communication and Implications for OEMs and ITS

Transcription:

Security for V2X Communications ITS Canada Annual General Meeting May 1-4, 2016 Brian Romansky VP Strategic Technology Your Connected Car Your Connected Car Security Security Partner Partner

TrustPoint - Security Leadership and Innovation Security Consulting Security Software Toolkits Certificate Authority Experts in Security and Cryptography Leading experts in public-key policy and implementation Team that developed the Blackberry security model Technical security experts for US DOT V2X initiative Experience in implementing security for large scale deployments for companies worldwide Excellence in Solutions and Products for Connected Car and IoT Security Toolkits and Infrastructure Components Implements flawless efficient security Simplifies security implementation by removing complexity 2

V2X Technology Basic Safety Messages (BSMs): Vehicle position and speed Steering angle, throttle and brake status Vehicle size and bumper height Transmitted wirelessly 5 times per second Additional V2I Capabilities Unique Security Requirements 3

The Promise of V2X Technology Potential for an 80% reduction in collisions Augment existing Advanced Driver Assistance Systems (ADAS) technology Improve interoperability between human drivers and autonomous vehicles 2015 US NHTSA revised report 24 million reported vehicle crashes 33,000 fatalities 3.9 million injuries $836 billion economic loss Enable advanced infrastructure and emergency management solutions 4

Augment Advanced Driver Assisted Systems V2V Adds New Capabilities: Extended range -increased response time Predictive data -respond to steering, brake, throttle changes Two-way communication - negotiate collision avoidance Communicate with roadside equipment 5

Example: Google Car / City Bus Crash Car had to change lanes to avoid construction. Algorithm did not account for the size and response time of the bus. Software assumed that the approaching vehicle would yield. Vehicle data + two-way communication could have avoided this crash. 6

Security Requirements Security Need to validate that BSMs are from real cars Prevent attackers from creating fake messages to change traffic patterns or create a road hazard VS. Privacy Can t make it easy to track personal cars Each BSM contains exact position information Data is sent unencrypted to enable fast response time 7

Security Credential Management System (SCMS) Crucial requirements that must be met are: Ensure authenticity and integrity of messages Minimize opportunity for tracking personal vehicles System also mandates: Privacy for users: No PII can be collected Prevent tracking by insiders & outsiders Assume errors will happen and hackers will attack the system Detect and remove misbehaving systems Minimize over the air messaging bandwidth Tricky Result: Create a high volume of anonymous short lived identities and still be able to revoke these identities when needed 8

Crash Avoidance Metrics Partnership CAMP is under contract with the US DOT Design the Security Credential Management System (SCMS) Develop a working prototype system Support the US Connected Vehicle (CV) pilots in New York, Florida, and Wisconsin TrustPoint is a security technical advisor to the SCMS design program 9

Design for Security and Privacy Security Every message is digitally signed (but not encrypted) Linkage values allow for misbehavior detection and revocation Privacy No unique information about the car or the owner Certificate changes every 5 minutes Cycle through 20 certificates every week 20 new certificates per week per car with ~250M cars (US) = 260B certificates per year 10

SCMS Architecture 11

SCMS Architecture Central SCMS Manager Distributed ICA Managers 12

ICA Manager Role Operate a secure Intermediate Certificate Authority Back-end hardware and software Policies and operating procedures Issue certificates to equipment Vehicle On-Board Units (OBUs) or Road-Side Equipment (RSEs) Define and issue special application certificates for locally defined use cases Participate in misbehavior detection and revocation Submit misbehavior reports for equipment that is not functioning normally Respond to central Misbehavior Authority (MA) requests Manage Certificate Revocation Lists (CRLs) or equipment blacklists 13

Application Permissions and Roles Traffic Management: Adaptive traffic light mgmt and secure pre-emption Emergency work zone warnings and lane closures Road condition warnings and temporary speed restrictions Speed Harmonization Public Transportation: Public vehicle lane or zone prioritization and signal priority Intelligent bus stop Platooning and speed harmonization Infrastructure Management: Emergency vehicle lane and signal priority Work zone warning Temporary road hazard warning 14

SCMS Current Status Core design is complete Version 1.1 prototype is in testing, will support CV pilots & Smart City program launching in ~12 months Version 2.0 design work is in progress, will add critical details on misbehavior detection and CRL distribution Design is heavily influenced by vehicle manufacturers CV Pilot plans are introducing new needs from municipal operators More participation and early pilot test programs can bring balance to the design Initial Deployments are uncovering unanticipated conditions Mobile and temporary road signs (such as lane closure signs) Procedures to authorize replacements for failed or outdated equipment 15

Recommendations for Government Agencies Track progress of CV Pilot deployments US DOT website: http://www.its.dot.gov/pilots/ Develop your own Concept of Operations Develop a wish-list of custom applications and deployments Start planning for incremental deployments as standards mature Engage with hardware & software vendors, discuss your needs Deploy and test technology early and learn before making a major commitment Participate in local trials 16