1 October 2015
V2X Security Credential Management System (SCMS) Proof-of-Concept Implementation funded by US DOT/NHTSA
Benedikt Brecht, CAMP Principal Investigator, VWGoA
Benedikt Brecht, CAMP Principal Investigator, VWGoA October 2015 1 - - PowerPoint PPT Presentation
V2X Security Credential Management System (SCMS) Proof-of-Concept Implementation funded by US DOT/NHTSA Benedikt Brecht, CAMP Principal Investigator, VWGoA October 2015 1 CAMP Partners Project funded by Supported by October 2015 2 What is
1 October 2015
Benedikt Brecht, CAMP Principal Investigator, VWGoA
2 October 2015
3 October 2015
Photo Source: U.S. DOT
4 October 2015 4
Remote Vehicles sends position and speed
Photo Source: Continental
5 October 2015 5
Remote Vehicles sends position and speed
Photo Source: Cadillac
6 October 2015
Traffic light sends current state and time to next state
Dept: VWGoA Safety Affairs
Photo Source: Audi/jalopnik.com
7 October 2015
GM announced V2V for the 2017 Cadillac CTS “We’re doing it because it’s what customers around the world want. Through technology and innovation, we will make driving safer.” USDOT Secretary - Anthony Foxx “The Department wants to speed the nation toward an era when vehicle safety isn’t just about surviving
MIT Technology Review Announced V2X communication as one of the 10 breakthrough technologies 2015. http://www.technologyreview.com/featuredstory/534981/ car-to-car-communication
8 October 2015
Photo Source: Shutterstock
9 October 2015
Photo Source: Independent.co.uk
10 October 2015
Photo Source: moviepilot.com
11 October 2015
Device receives keys and information to establish trusted connections to SCMS components
Photo Source: Wikimedia Commons
12 October 2015
Device receives long-term certificate to use in interaction with SCMS components
Photo Source: depositphotos.com
13 October 2015
Short-term certificates to use in interactions with other devices
Photo Source: REUTERS/Ricardo Moraes
14 October 2015
Device detects misbehavior and might report to MA or MA detects misbehavior on a global level
Photo Source: Liudmila P. Sundikova
15 October 2015
Device should no longer be trusted - MA revokes certificates and informs devices and SCMS components
Photo Source: Andy Devlin/NHLI via Getty Images
16 October 2015
Certification Lab Linkage Authority 1 Linkage Authority 2 Location Obscurer Proxy Root CA CRL Store Policy Technical SCMS Manager SCMS Manager Device 1 Device 2 Device 3 Device 3 Device Config. Manager CRL Broadcast Intermediate CA
Legend
Regular communication Out-of-band communication Not Intrinsically Central Intrinsically Central
Enrollment CA Pseudonym CA Internal Blacklist Manager Global Detection CRL Generator
Misbehaviour Authority
Registration Authority
17 October 2015
William Whyte (CAMP VSC5)
18 October 2015
safety warnings, e.g.:
19 October 2015
20 October 2015
21 October 2015
To Enrollment Certificate Authority: Prove Eligibility Receive ONE enrollment certificate
Certificate Provisioning Participate in V2V Enrollment
To Registration Authority: Show Enrollment Cert Receive SET of pseudonym certificates
22 October 2015
Certification Lab Enrollment CA Pseudonym CA Linkage Authority 1 Linkage Authority 2 Registration Authority Location Obscurer Proxy Root CA Misbehavior Authority CRL Store Internal Blacklist Manager CRL Generator Global Detection Policy Technical SCMS Manager Device 1 Device 2 Device 3 Device 3 Device Config. Manager
Legend
Regular communication Out-of-band communication Not Intrinsically Central Intrinsically Central
CRL Broadcast Intermediate CA
23 October 2015
Certification Lab Enrollment CA Pseudonym CA Linkage Authority 1 Linkage Authority 2 Registration Authority Location Obscurer Proxy Root CA Misbehavior Authority CRL Store Internal Blacklist Manager CRL Generator Global Detection Policy Technical SCMS Manager Device 1 Device 2 Device 3 Device 3 Device Config. Manager
Legend
Provides information before execution Directly acts in this use case
CRL Broadcast Intermediate CA
24 October 2015
Certification Lab Enrollment CA Pseudonym CA Linkage Authority 1 Linkage Authority 2 Registration Authority Location Obscurer Proxy Root CA Misbehavior Authority CRL Store Internal Blacklist Manager CRL Generator Global Detection Policy Technical SCMS Manager Device 1 Device 2 Device 3 Device 3 Device Config. Manager
Legend
Provides information before execution Directly acts in this use case
CRL Broadcast Intermediate CA
25 October 2015
Certification Lab Enrollment CA Pseudonym CA Linkage Authority 1 Linkage Authority 2 Registration Authority Location Obscurer Proxy Root CA Misbehavior Authority CRL Store Internal Blacklist Manager CRL Generator Global Detection Policy Technical SCMS Manager Device 1 Device 2 Device 3 Device 3 Device Config. Manager
Legend
Provides information before execution Directly acts in this use case
CRL Broadcast Intermediate CA
26 October 2015
27 October 2015
to OBE during bootstrap that OBE then uses to request application certificates
BSM authentication
applications
RSE during bootstrap that RSE then uses to request application certificates
broadcast messages, confidential communication between OBE and RSE.
28 October 2015
29 October 2015