C-DAX is funded by the European Union's Seventh Framework Programme (FP7-ICT-2011-8) under grant agreement n° 318708
Secu ecurity rity of EV f EV-charging charging
Erik Poll
Radboud University Nijmegen
Secu ecurity rity of EV f EV-charging charging Erik Poll - - PowerPoint PPT Presentation
Secu ecurity rity of EV f EV-charging charging Erik Poll Radboud University Nijmegen C-DAX is funded by the European Union's Seventh Framework Programme (FP7-ICT-2011-8) under grant agreement n 318708 EV EV ch char arging: ging: th
C-DAX is funded by the European Union's Seventh Framework Programme (FP7-ICT-2011-8) under grant agreement n° 318708
Radboud University Nijmegen
within limited local capacity of the line NB two verify different reasons to (re)schedule EV charging!
Erik Poll – Radboud University Nijmegen
2
limited capacity
(if smart meters do not have remote off-switch)
all the headaches of public transport card & smart meter?
Erik Poll – Radboud University Nijmegen
3
regional utility company
electricity supplier with whom EV owner has a contract
manages Charge Spots for customers of several EMSPs
supplied electricity to ESMPs to sell on to its customers
performs on-line maintenance of charge spots for CSO
precise market model still in flux.
Erik Poll – Radboud University Nijmegen
4
Erik Poll – Radboud University Nijmegen
5
charge spot DSO DSO CSO SO substa station tion
smart meter
ESMP billing cost consideration: does charge spot contain a smart meter of the DSO? OCSP OCPP Mode 3 CSIO
Lots of interesting potential for aggregation, eg
not which individual customers are involved
not where and when this client used this
(aggregated) usage, not which client of which ESMP is involved
Erik Poll – Radboud University Nijmegen
6
DSO has to manage limited capacity of the line
investment in thicker cables
available for EVs over time
charge spot
Erik Poll – Radboud University Nijmegen
7
DSO DSO substa station tion
smart meter
limited capacity
DSO informs CSO of available capacity, per 15 min. interval
Major cost saving in required physical infrastructure (ie. cables)
charge spot
Erik Poll – Radboud University Nijmegen
8
DSO DSO CSO SO OCSP OCPP substa station tion
smart meter
Customers of an EMSP can use public charge spots of any Charge Spot Operator.
User authenticated using an RFID card
Erik Poll – Radboud University Nijmegen
9
charge spot CSO SO EMSP billing billing
billing
energy gy suppl pplier ier authentication
charge spot
Erik Poll – Radboud University Nijmegen
10
DSO DSO CSO SO OCSP OCPP Mode 3 substa station tion
smart meter
ESMP
charge spot
Erik Poll – Radboud University Nijmegen
11
DSO DSO CSO SO OCSP OCPP Mode 3 substa station tion
smart meter
ESMP ESMP ESMP CSO SO CIR CIR DSO DSO DSO DSO CSO SO
Mifare Classic RFID card. This can be eavesdropped & replayed, so cards are trivial to clone
broken prior to the intro of EV charging. Why did nobody pick up on this in the design or before roll-out?
Erik Poll – Radboud University Nijmegen
12
The discussion of security in OCPP and OSCP standards is limited
+ using a standard security solution such as TLS is a good idea – securing this link might not provide end-to-end security we want…
Erik Poll – Radboud University Nijmegen
13
Using secure communication tunnels (and then using standard solutions such as TLS) is a good idea! However, these have their limits.... 1. Concatenated secure tunnels do not provide end-to-end security.
Eg no end-to-end security between A and C below as C will have to trust B!
2. TLS does not provide convenient non-repudation.
For C to prove to a third party that B sent some data, it would have to log the entire TLS session
Erik Poll – Radboud University Nijmegen
14
TLS
A B C
TLS
charge spot
Erik Poll – Radboud University Nijmegen
15
DSO DSO CSO SO OCSP OCPP Mode 3 substa station tion
smart meter
ESMP CIR CIR
charge spot
Erik Poll – Radboud University Nijmegen
16
DSO DSO CSO SO OCSP OCPP Mode 3 substa station tion
smart meter
ESMP CIR CIR
charge spot
Erik Poll – Radboud University Nijmegen
17
DSO DSO CSO SO OCSP OCPP Mode 3 substa station tion
smart meter
ESMP CIR CIR
ESMPs still have to trust CSOs to provide correct data DSOs still have to trust CSOs to provide correct data
links, secure the data being sent
communicating parties
meter reading signed by both the EV and the charge spot
authentication, which will also sign meter reading records for charging session
Erik Poll – Radboud University Nijmegen
18
information important to manage the grid
automatically provide the end-to-end security needed
but precisely what does it mean in a specific context?
Erik Poll – Radboud University Nijmegen
19