Title :
Secure Broadcast with One-Time Signatures in Controller Area Networks
Author :
Groza, Bogdan ; Murvay, Stefan
Author_Institution :
Fac. of Automatics & Comput., Politeh. Univ. of Timisoara, Timisoara, Romania
Abstract :
We use one-time signatures to assure authenticity for messages that are broadcast over a Controller Area Network (CAN). The advantage is that we can use the simplest one-way functions which are computationally efficient while authentication does not depend on disclosure delays as in the case of protocols based on one-way chains and time synchronization. As the size of the one-time signatures is proportional to the bit length of the signed message, another benefit in using them is due to the reduced size of messages that are broadcast in CAN. To avoid the use of authentication trees, which will allow multiple uses of the one-time signature, but increases the size of signatures as well as memory requirements, we use an upper layer of key-chains with time synchronization in order to commit the public keys that can be further used for signing at any instant. The theoretical results are followed by experimental results on development boards equipped with Free scale S12, a commonly used automotive grade microcontroller. We also benefit from the acceleration offered by the XGATE coprocessor available on S12X derivatives which significantly increases computational performances. To further increase efficiency we also design and use a hardware random number generator which saves computational time that otherwise will be spent to derive fresh key material.
Keywords :
computer network security; controller area networks; coprocessors; digital signatures; microcontrollers; random number generation; Free scale S12 microcontroller; XGATE coprocessor; broadcast security; controller area network; hardware random number generator; message authenticity; one-time signature; one-way chains; time synchronization; Authentication; Generators; Protocols; Public key; Synchronization; White noise; CAN; broadcast authentication; one-time signature;
Conference_Titel :
Availability, Reliability and Security (ARES), 2011 Sixth International Conference on
Conference_Location :
Vienna
Print_ISBN :
978-1-4577-0979-1
Electronic_ISBN :
978-0-7695-4485-4
DOI :
10.1109/ARES.2011.62