-
公开(公告)号:US20230199500A1
公开(公告)日:2023-06-22
申请号:US18167627
申请日:2023-02-10
Applicant: Huawei Technologies Co., Ltd.
Inventor: Feng Geng , Qingdi Sha , Steven Yin Zhong
IPC: H04W12/122 , H04L9/32
CPC classification number: H04W12/122 , H04L9/32 , H04W56/002
Abstract: A secure onboard network communication method includes obtaining an initial value of a first freshness value (FV), obtaining a second value based on the initial value, and refreshing the initial value to the second value; sending a first message, where the first message includes the second value of the first FV; obtaining an initial value of a second FV, and when a first condition is met, refreshing the second FV to the second value, where the first condition includes a condition that the second value of the first FV is greater than or equal to a sum of the initial value of the second FV and a predetermined value.
-
公开(公告)号:US20230231864A1
公开(公告)日:2023-07-20
申请号:US18186040
申请日:2023-03-17
Applicant: HUAWEI TECHNOLOGIES CO., LTD.
Inventor: Rehana Yasmin , Zhuo Wei , Suk In KANG , Feng Geng
CPC classification number: H04L63/1425 , H04L63/1416 , H04L12/40013 , H04L2012/40215
Abstract: The present disclosure provides an intrusion monitoring system, an intrusion monitoring method and related products. The intrusion monitoring system includes: a first monitoring component deployed in a controller area network, a second monitoring component deployed in an Ethernet network, and a first control component; the first monitoring component is configured to obtain first CAN reporting information on data traffic in the system and transmit the first CAN reporting information to the first control component; the second monitoring component is configured to obtain second Ethernet reporting information on the data traffic and transmit the second Ethernet reporting information to the first control component; and the first control component is configured to receive the first CAN reporting information from the first monitoring component and the second Ethernet reporting information from the second monitoring component, and determine whether the data traffic is an attack.
-
公开(公告)号:US20230318823A1
公开(公告)日:2023-10-05
申请号:US18330030
申请日:2023-06-06
Applicant: Huawei Technologies Co., Ltd.
Inventor: Feng Geng , Yong Li , Pingping Yi , Min Li
CPC classification number: H04L9/088 , G07C5/0808
Abstract: The vehicle diagnostic system includes a key management system and a to-be-diagnosed unit. The key management system receives a key authorization request sent by a diagnostic device, generates a temporary key based on the key authorization request, and sends a key authorization response to the diagnostic device. The key authorization response carries the temporary key. The key management system configures the temporary key for the to-be-diagnosed unit, so that the diagnostic device and the to-be-diagnosed unit complete a diagnostic based on the temporary key and obtain a diagnostic result. The temporary key is independent of a long-term key in a vehicle. The temporary key is configured to complete the vehicle diagnostic, so that the diagnostic device can be prevented from accessing the long-term key in the vehicle as much as possible.
-
公开(公告)号:US20220311751A1
公开(公告)日:2022-09-29
申请号:US17840806
申请日:2022-06-15
Applicant: Huawei Technologies Co., Ltd.
Inventor: Yong Li , Feng Geng , Li Duan , Pingping Yi , Min Li
Abstract: A secure communications method includes: receiving, by a first network device, a second ephemeral public key of a second network device; determining, by the first network device, an ephemeral session key based on a first shared key, a first ephemeral secret key of the first network device, and the second ephemeral public key, where the first shared key is shared between the first network device and the second network device; and performing, by the first network device, secure communication with the second network device based on the ephemeral session key.
-
-
-