Paper 2019/268

Lightweight Authentication for Low-End Control Units with Hardware Based Individual Keys*

Sergei Bauer, Martin Brunner, and Peter Schartner

Abstract

With increasing autonomous features of vehicles, key issues of robotic- and automotive engineering converge toward each other. Closing existing security gaps of device communication networks will be an enabling feature for connecting autonomously interacting systems in a more secure way. We introduce a novel approach for deriving a secret key using a lightweight cipher in the firmware of a low-end control unit. In this approach, we propose to use a non-standardized lightweight algorithm with unique hardware based parameters to prevent duplicate key generation. The randomness of the selected cipher was assessed by applying the NIST statistical test suite to produced key values. By evaluating the method on a typical low-end automotive platform, we could demonstrate the realistic applicability of the solution. The proposed method counteracts a known security issue in device communication between control units not only present in automotive solutions but also in the robotics domain. The security of the implemented solution has been compared to current automotive guidelines and recommendations for the security of resource constrained devices, also present in robotics. This approach allows low-end communication systems to be enhanced by message- and device authentication.

Note: This is the full paper version from which only a reduced 2 page demo paper was accepted at IEEE IRC 2019

Metadata
Available format(s)
PDF
Category
Applications
Publication info
Published elsewhere. Major revision. IEEE IRC 2019
DOI
10.1109/IRC.2019.00082
Keywords
Lightweight CryptographyMessage AuthenticationRobotic Network SecurityAutomotive Device AuthenticationARX Block CipherElectrical Control Unit
Contact author(s)
sergei bauer @ k-ai at
History
2019-03-06: received
Short URL
https://ia.cr/2019/268
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2019/268,
      author = {Sergei Bauer and Martin Brunner and Peter Schartner},
      title = {Lightweight Authentication for Low-End Control Units with Hardware Based Individual Keys*},
      howpublished = {Cryptology {ePrint} Archive, Paper 2019/268},
      year = {2019},
      doi = {10.1109/IRC.2019.00082},
      url = {https://eprint.iacr.org/2019/268}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.