针对当前车辆远程诊断授权协议无法确定车辆软硬件环境完整性的问题,提出一种新的车辆远程诊断授权协议,通过车载可信平台模块提供的度量机制对车辆软硬件信息进行完整性度量,并将度量过程与现有远程诊断授权协议相结合,实现了可信第三方对被诊断车辆的强身份认证,并保证车辆当前软硬件完整可信.通过工具自动证明了新协议满足安全目标,并分析说明了协议开销增长处于合理范围.
The state-of-art remote authorization protocol for vehicle diagnosis cannot ensure the validation of vehicle hardware and software. We propose a new remote authorization protocol for vehicle diagnosis. We use the measurement mechanism provided by the in-vehicle trusted platform module (TPM) to measure the hardware and software of tne vehicle for validation. Embedding this measurement process into the current remote authorization protocol can achieve a strong authentication to the diagnosed vehicle for the trusted-third-party and ensure the validation on the current status of vehicular hardware and software. The new protocol is automatically proved to comply with the security objectives and the increase in computation and communication costs is moderate.