• DocumentCode
    1832596
  • Title

    Secure Broadcast with One-Time Signatures in Controller Area Networks

  • Author

    Groza, Bogdan ; Murvay, Stefan

  • Author_Institution
    Fac. of Automatics & Comput., Politeh. Univ. of Timisoara, Timisoara, Romania
  • fYear
    2011
  • fDate
    22-26 Aug. 2011
  • Firstpage
    371
  • Lastpage
    376
  • Abstract
    We use one-time signatures to assure authenticity for messages that are broadcast over a Controller Area Network (CAN). The advantage is that we can use the simplest one-way functions which are computationally efficient while authentication does not depend on disclosure delays as in the case of protocols based on one-way chains and time synchronization. As the size of the one-time signatures is proportional to the bit length of the signed message, another benefit in using them is due to the reduced size of messages that are broadcast in CAN. To avoid the use of authentication trees, which will allow multiple uses of the one-time signature, but increases the size of signatures as well as memory requirements, we use an upper layer of key-chains with time synchronization in order to commit the public keys that can be further used for signing at any instant. The theoretical results are followed by experimental results on development boards equipped with Free scale S12, a commonly used automotive grade microcontroller. We also benefit from the acceleration offered by the XGATE coprocessor available on S12X derivatives which significantly increases computational performances. To further increase efficiency we also design and use a hardware random number generator which saves computational time that otherwise will be spent to derive fresh key material.
  • Keywords
    computer network security; controller area networks; coprocessors; digital signatures; microcontrollers; random number generation; Free scale S12 microcontroller; XGATE coprocessor; broadcast security; controller area network; hardware random number generator; message authenticity; one-time signature; one-way chains; time synchronization; Authentication; Generators; Protocols; Public key; Synchronization; White noise; CAN; broadcast authentication; one-time signature;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2011 Sixth International Conference on
  • Conference_Location
    Vienna
  • Print_ISBN
    978-1-4577-0979-1
  • Electronic_ISBN
    978-0-7695-4485-4
  • Type

    conf

  • DOI
    10.1109/ARES.2011.62
  • Filename
    6045987