SlideShare uma empresa Scribd logo
1 de 24
Baixar para ler offline
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
2018-03-13
Alexander Much, Rudolf Grave
Safety and Security Aspects of
Automotive High Performance
Controllers
22018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Changes in E/E architecture
Safety
Security
Outlook
Agenda
Safety and Security Aspects of Automotive High Performance Controllers
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Changes in E/E architecture
42018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
We need to completely re-think the E/E architecture:
• Domain or zonal architectures
• Centralized computing units
• High-speed, reliable and dependable networking
• Connected vehicle within infrastructure eco-systems
What comes first?
Mobile on Wheels or Wheels on Mobile?
Safety and Security Aspects of Automotive High Performance Controllers
Source: https://pxhere.com/en/photo/1064249, CC0 Public Domain
Cloud and mobile first!
52018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Most prominent answer:
„Of course, my car!“
People don‘t realize:
• How many security solutions are in today‘s phones
• Cloud and phones set the „state-of-the-art“
• ... not cars!
What needs to be „more“ secure?
Phone and Cloud vs. Vehicle
Safety and Security Aspects of Automotive High Performance Controllers
Source: https://pixabay.com/en/smartphone-phone-castle-key-1868489/, CC0 Creative Commons
62018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Evolution of E/E Architectures
Safety and Security Aspects of Automotive High Performance Controllers
today tomorrow future
Domain Architecture Centralized Architecture Zoned Architecture
• Signal based communication
• System of ECUs
• Predictable communication
• Function orientated topology
• Central computing nodes
• Mix of signal based and service
orientated communication
• Partly centralized functions
• Software upgradability
• IP/Ethernet communication
• Centralized applications/functions
• Computing power for AD and AI
• Anything anywhere (sensors/actors)
• Architecture follows software/ system
demands
72018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
• Centralized computing platform (yellow)
• Zonal ECUs in a ring architecture (green)
• Actors and sensors (purple) connected via Zonal ECUs
• Applications are running on centralized computing
platforms, zonal ECUs sensors and actors provide
standardized service interfaces.
• Reduction in wiring / weight and cost
Zonal E/E Architecture
Safety and Security Aspects of Automotive High Performance Controllers
Zonal E/E Architecture
For comparison: Star Wiring
82018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Connected E/E Architecture (Logical View)
Safety and Security Aspects of Automotive High Performance Controllers
UI
Computing
Cluster
Computing
Cluster(s)
Smart Antenna
Gateway IO Concentrators,
Actors, Sensors
Smart
Sensors
Smart
Sensors
Steering
Braking Battery
Engine
Back-end
System
Gigabit
Ethernet
Reliable ECU
Performance ECU
IO Concentrators
Back-end Server
92018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Use-case: remote update
Safety and Security Aspects of Automotive High Performance Controllers
Architectural principles:
• Central external
connection
• Distribution of updates
across multiple ECUs
Supporting features
• Coordinated A/B Update
across ECUs
• Secure networks and
communication
• Layered security
architecture
Smart Antenna
Gateway
Back-end
System
Reliable ECU
Performance ECU
IO Concentrators
Back-end Server
102018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Use-case: ADAS
Safety and Security Aspects of Automotive High Performance Controllers
Architectural principles :
• Separation between
planning and
performance parts
• Hierarchical safety
architecture
Supporting features
• ASIL-B performance
platform
• ASIL-D classic platform
• Hierarchical, distributed
runtime supervision
Smart Antenna
Gateway
Back-end
System
Reliable ECU
Performance ECU
IO Concentrators
Back-end Server
112018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Principals of a future architecture
Safety and Security Aspects of Automotive High Performance Controllers
HPC = High performance controller
HPC-1 HPC-2 HPC-3
Horizontal deployment of functions
RT-SW RT-SW RT-SW RT-SW
“logic”-SW “logic”-SW “logic”-SW “logic”-SW “logic”-SW “logic”-SW
Computing
layer
Real time
and sensor/
actuator layer
Back-end
Vehicle API / Basic services / information layer
Every information anywhere” –
enables horizontal deployment
of services and updating
service.
 But need to be controlled
for safety and security reasons
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Safety
132018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Example: Fail-Operational Networking
Safety and Security Aspects of Automotive High Performance Controllers
Fault-tolerant communication
Redundant
communication
paths
Redundant paths
between Eth
switches (RedM or
IEEE 802.1CB)
Duplicate network
for CAN/FlexRay
(nodes connected
via 2 links)
Fault-tolerant application services Fault-tolerant
network services
Communication
path quality
Com SW quality:
focus on safety
related feature and
FFI to all other
parts
Com controller and
switch quality
Parallel active
service
Service instance A’
active
Service instance
A’’ active
B selects data
from A’ or A’’
based on priority
Primary/Backup
service
Primary instance
A’ active
Backup instance
A’’ in stand-by,
becomes active
when primary fails
(no heartbeat)
Critical service
with redundancy
(e.g. backup time
master)
Locked service –
no changes on
committed, critical
resources (e.g. ECU
shutdown lock,
network
bandwidth lock)
142018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Separation of concerns:
• Performance
• Safety
• Security
Mixture of Classic and Adaptive:
• Safety closely related to real-
time domain
• Plenty of room for legacy
applications
High Performance Controllers: SW Architecture
Safety and Security Aspects of Automotive High Performance Controllers
AUTOSAR OS
Adaptive AUTOSAR
QM
App App
MCU
Classic AUTOSAR
Automotive-grade Hypervisor
Adaptive AUTOSAR
Safety
App
LINUX OS LINUX OS
Classic AUTOSAR
Safety
App
Safety Cores
Safety OS
Performance Cores
Performance Partitions for Vehicle & Consumer Functions Safety Partition
Security
TEE
App
Security HW
Trusted OS
Security Partition
152018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Classic AUTOSAR
Components
Example: Distributed Health Management
Safety and Security Aspects of Automotive High Performance Controllers
Classic AUTOSAR
Components
Lockstep
Safety OS
WDG
Core CoreCore Core
Safety
Core
Safety
Core
Core…. CoreCore
Health
Control
Bootloader
Hypervisor
Privileged Partition
Adaptive AUTOSAR on
Linux
Health Manager
Vehicle Functions Partition
Adaptive AUTOSAR on Linux
Container
Vehicle
Function
Virtual
Resources
Container
Vehicle
Function
Virtual
Resources
Container
Vehicle
Function
Virtual
Resources
Pesistency
Manager
Execution
manager
Health
Manager
Diagnostic
Manager
Virtual
Resources
Physical Resources
….
Classic AUTOSAR
Safety
Core
Safety
Core
Lockstep
Safety OS
WDG
Health
Control
Classic AUTOSAR
Monitor Control
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Security
172018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Security >>> Safety
• Connectivity, Ethernet and High-Performance ECUs open the
car to new threats
• More data  more lucrative to attack
• Product development life-cycles (PLCs) don‘t suffice, a switch to
service life-cycles (SLCs) needed:
– Automotive quality assurance in DevOps environments?
– Regulatory clearance?
– Field monitoring and incident response management
– Third-party security observation, also for open source software
• Cars will need to be updated frequently
Which has more „impact“?
Safety and Security
Safety and Security Aspects of Automotive High Performance Controllers
Source: http://maxpixel.freegreatpicture.com/Virus-Computer-Word-Security-Trojan-Cloud-Cyber-2120014, CC0 Public Domain
182018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Secure System Layers
Safety and Security Aspects of Automotive High Performance Controllers
Secure Environment
Secure External
Communication
Secure Network
Segmentation
Secure OnBoard
Communication
Secure Platform
Secure Boot
Secure Hardware Element
Secure Update / Diagnostics
- Applications
- Flashware
Separation / Isolation
- Memory Protection
- Scheduling Policies
- Access Control
AUTOSAR SecOC
Ethernet Security
Domain Separation
Trust Zones
IDS/ADS
Firewall
Secure External Channels
- TLS
Secure Logging Agent
Secure Backend Infrastructure
192018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Limit the number of ECUs with off-board
connections
Restrict access to the network (I)
Safety and Security Aspects of Automotive High Performance Controllers
Today: multiple connections
202018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
• Divide network into security zones, e.g. extern, “demilitarized”, internal.
• Restrict traffic between zones: Physical split or separation via VLANs:
Not only extern-intern, but also intern-intern, e.g. infotainment to powertrain
Restrict access to the network (II)
Safety and Security Aspects of Automotive High Performance Controllers
VLAN Tagging to separate external – internal
• External frames are tagged with an orange VLAN tag at the switch
• Only nodes assigned to the orange VLAN can receive frames from the
external tester
• Frames to be sent to external tester, are sent via the orange VLAN – the
switch at the gateway removes the orange VLAN tags before forwarding it
to the tester
VLAN Tagging to separate internal networks
• ECUs from Infotainment (blue VLAN), chassis (green VLAN) and
powertrain (yellow VLAN) can be separated
• Traffic between VLANs require a switch or Gateway
Tester
212018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Example: Platform Security Layers
Safety and Security Aspects of Automotive High Performance Controllers
Operating Systems
Containers
Hardware
Classic
µC
HSM Performance µP SwitchSecure EnginePerformance Cores
Hypervisor
Processes
Resource Access Control
Intermediate Address Space
Separation (1st-Stage MMU)
Control Flow Integrity
Hardware Resource Separation
Physical Address Space Separation
2nd-Stage MMU
Scheduling Domains
Resource Constraints
Control Flow Integrity
Virtual Address Space
Crypto Accelerators
3 Core Logic (Secure, Public & PKA)
Dedicated RAM/ROM (key material)
eFuses
Life Cycle Management
Hardware Access Protection
Crypto AcceleratorsHSM (EVITA medium)
HIS SHE support
DoS prevention
VLAN Tagging
Static ARP tables
Monitoring Ports
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Outlook
232018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
Outlook: Interesting Times...
Safety and Security Aspects of Automotive High Performance Controllers
machine learning crowed sourced data system of systems third party access
personalization shortened
development cycles
evolution after SOP new topics
new business models
?
2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018.
All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights.
www.elektrobit.com
alexander.much@elektrobit.com
Get in touch!

Mais conteúdo relacionado

Mais procurados

Overview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trendOverview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trend3G4G
 
Automotive Telematics Market Analysis
Automotive Telematics Market AnalysisAutomotive Telematics Market Analysis
Automotive Telematics Market AnalysisTee Lim
 
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...Andrei Kholodnyi
 
Electronic Control Unit(ECU)
Electronic Control Unit(ECU)Electronic Control Unit(ECU)
Electronic Control Unit(ECU)Ankul Gupta
 
Overview of automotive network protocol
Overview of automotive network protocolOverview of automotive network protocol
Overview of automotive network protocolpoojashinde212
 
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR Tooling
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR ToolingWebinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR Tooling
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR ToolingKPIT
 
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMW
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMWPrinciples of a vehicle infotainment platform - Hans-Ulrich Michel, BMW
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMWmfrancis
 
The Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarThe Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarJorgen Thelin
 
Over-the-air (OTA) updates and the Connected car
Over-the-air (OTA) updates and the Connected carOver-the-air (OTA) updates and the Connected car
Over-the-air (OTA) updates and the Connected carPratik Desai, PhD
 
5G NR radio protocols to support URLLC
5G NR radio protocols to support URLLC5G NR radio protocols to support URLLC
5G NR radio protocols to support URLLC3G4G
 
Diagnostic in Adaptive AUTOSAR
Diagnostic in Adaptive AUTOSARDiagnostic in Adaptive AUTOSAR
Diagnostic in Adaptive AUTOSARBernhard Wagner
 
Understand LPWA tetchnologies (Sigfox and LoRa)
Understand LPWA tetchnologies (Sigfox and LoRa)Understand LPWA tetchnologies (Sigfox and LoRa)
Understand LPWA tetchnologies (Sigfox and LoRa)Robert Vivanco Salcedo
 
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...Mavenir
 
1628502836912_CAN_TP,DCM&AutosarCAN.pptx
1628502836912_CAN_TP,DCM&AutosarCAN.pptx1628502836912_CAN_TP,DCM&AutosarCAN.pptx
1628502836912_CAN_TP,DCM&AutosarCAN.pptxYamini454
 
Controller area network (can bus)
Controller area network (can bus)Controller area network (can bus)
Controller area network (can bus)nassim unused
 
Multicore and AUTOSAR
Multicore and AUTOSARMulticore and AUTOSAR
Multicore and AUTOSARHansang Lee
 

Mais procurados (20)

Overview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trendOverview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trend
 
Automotive Telematics Market Analysis
Automotive Telematics Market AnalysisAutomotive Telematics Market Analysis
Automotive Telematics Market Analysis
 
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...
Developing safety autonomous driving solutions based on the adaptive AUTOSAR ...
 
Electronic Control Unit(ECU)
Electronic Control Unit(ECU)Electronic Control Unit(ECU)
Electronic Control Unit(ECU)
 
Overview of automotive network protocol
Overview of automotive network protocolOverview of automotive network protocol
Overview of automotive network protocol
 
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR Tooling
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR ToolingWebinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR Tooling
Webinar Presentation- Typical Challenges Faced by Tier 1s in AUTOSAR Tooling
 
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMW
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMWPrinciples of a vehicle infotainment platform - Hans-Ulrich Michel, BMW
Principles of a vehicle infotainment platform - Hans-Ulrich Michel, BMW
 
The Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarThe Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected Car
 
Over-the-air (OTA) updates and the Connected car
Over-the-air (OTA) updates and the Connected carOver-the-air (OTA) updates and the Connected car
Over-the-air (OTA) updates and the Connected car
 
Iso26262 component reuse_webinar
Iso26262 component reuse_webinarIso26262 component reuse_webinar
Iso26262 component reuse_webinar
 
5G NR radio protocols to support URLLC
5G NR radio protocols to support URLLC5G NR radio protocols to support URLLC
5G NR radio protocols to support URLLC
 
Diagnostic in Adaptive AUTOSAR
Diagnostic in Adaptive AUTOSARDiagnostic in Adaptive AUTOSAR
Diagnostic in Adaptive AUTOSAR
 
Understand LPWA tetchnologies (Sigfox and LoRa)
Understand LPWA tetchnologies (Sigfox and LoRa)Understand LPWA tetchnologies (Sigfox and LoRa)
Understand LPWA tetchnologies (Sigfox and LoRa)
 
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...
Mavenir: Why and How Private LTE & 5G Networks Are Rapidly Evolving for Enter...
 
5G NR-based C-V2X
5G NR-based C-V2X5G NR-based C-V2X
5G NR-based C-V2X
 
1628502836912_CAN_TP,DCM&AutosarCAN.pptx
1628502836912_CAN_TP,DCM&AutosarCAN.pptx1628502836912_CAN_TP,DCM&AutosarCAN.pptx
1628502836912_CAN_TP,DCM&AutosarCAN.pptx
 
Controller area network (can bus)
Controller area network (can bus)Controller area network (can bus)
Controller area network (can bus)
 
FOTA Upgrade on Automotive and IoT Industry
FOTA Upgrade on Automotive and IoT IndustryFOTA Upgrade on Automotive and IoT Industry
FOTA Upgrade on Automotive and IoT Industry
 
C programming part2
C programming part2C programming part2
C programming part2
 
Multicore and AUTOSAR
Multicore and AUTOSARMulticore and AUTOSAR
Multicore and AUTOSAR
 

Semelhante a Safety and Security Aspects of Automotive High Performance Controllers

EB corbos and the L4Re microhypervisor: Open-source automotive safety
EB corbos and the L4Re microhypervisor: Open-source automotive safetyEB corbos and the L4Re microhypervisor: Open-source automotive safety
EB corbos and the L4Re microhypervisor: Open-source automotive safetyAlexander Much
 
Adaptive AUTOSAR - The New AUTOSAR Architecture
Adaptive AUTOSAR - The New AUTOSAR ArchitectureAdaptive AUTOSAR - The New AUTOSAR Architecture
Adaptive AUTOSAR - The New AUTOSAR ArchitectureAdaCore
 
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"Alexander Much
 
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication Networks
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication NetworksMIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication Networks
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication NetworksMIPI Alliance
 
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"Alexander Much
 
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systems
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systemsSolutions for ADAS and AI data engineering using OpenPOWER/POWER systems
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systemsGanesan Narayanasamy
 
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture Design
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture DesignTowards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture Design
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture DesignRealTime-at-Work (RTaW)
 
Is Linux ready for safety related applications?
Is Linux ready for safety related applications?Is Linux ready for safety related applications?
Is Linux ready for safety related applications?Alexander Much
 
Elisa Polystar Automate Presentation Mobitel 240822.pdf
Elisa Polystar Automate Presentation Mobitel 240822.pdfElisa Polystar Automate Presentation Mobitel 240822.pdf
Elisa Polystar Automate Presentation Mobitel 240822.pdfNuwanChandimal1
 
In Automotive Environments - HU Michel
In Automotive Environments - HU MichelIn Automotive Environments - HU Michel
In Automotive Environments - HU Michelmfrancis
 
Intelligent, safe and reliable power distribution for electric vehicles
Intelligent, safe and reliable power distribution for electric vehiclesIntelligent, safe and reliable power distribution for electric vehicles
Intelligent, safe and reliable power distribution for electric vehiclesEaton Corporation
 
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...ThousandEyes
 
IoT Meetup September 2019
IoT Meetup September 2019IoT Meetup September 2019
IoT Meetup September 2019IoT Academy
 
Open Source for Industry 4.0 – Open IoT Summit NA 2018
Open Source for Industry 4.0 – Open IoT Summit NA 2018Open Source for Industry 4.0 – Open IoT Summit NA 2018
Open Source for Industry 4.0 – Open IoT Summit NA 2018Benjamin Cabé
 
VMware Solutions for the Connected Car
VMware Solutions for the Connected CarVMware Solutions for the Connected Car
VMware Solutions for the Connected CarAngel Villar Garea
 
Effective IIoT Implementation combining different data sources
Effective IIoT Implementation combining different data sourcesEffective IIoT Implementation combining different data sources
Effective IIoT Implementation combining different data sourcesM2M Alliance e.V.
 
Presentation cloud services
Presentation   cloud servicesPresentation   cloud services
Presentation cloud servicesxKinAnx
 
IRJET- Review Paper on Iot Based Technology in Automobiles
IRJET-  	  Review Paper on Iot Based Technology in AutomobilesIRJET-  	  Review Paper on Iot Based Technology in Automobiles
IRJET- Review Paper on Iot Based Technology in AutomobilesIRJET Journal
 

Semelhante a Safety and Security Aspects of Automotive High Performance Controllers (20)

EB corbos and the L4Re microhypervisor: Open-source automotive safety
EB corbos and the L4Re microhypervisor: Open-source automotive safetyEB corbos and the L4Re microhypervisor: Open-source automotive safety
EB corbos and the L4Re microhypervisor: Open-source automotive safety
 
Adaptive AUTOSAR - The New AUTOSAR Architecture
Adaptive AUTOSAR - The New AUTOSAR ArchitectureAdaptive AUTOSAR - The New AUTOSAR Architecture
Adaptive AUTOSAR - The New AUTOSAR Architecture
 
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"
20160914 EuroSPI: "Automotive Security: Challenges, Standards and Solutions"
 
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication Networks
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication NetworksMIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication Networks
MIPI DevCon 2020 | Keynote: Trends in Future In-Vehicle Communication Networks
 
TTTech Company Overview
TTTech Company OverviewTTTech Company Overview
TTTech Company Overview
 
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"
20160706 Automotive SYS: "Evolving Needs for Software Systems - Demonstrated"
 
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systems
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systemsSolutions for ADAS and AI data engineering using OpenPOWER/POWER systems
Solutions for ADAS and AI data engineering using OpenPOWER/POWER systems
 
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture Design
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture DesignTowards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture Design
Towards Computer-Aided, Iterative TSN-and Ethernet-based E/E Architecture Design
 
IBM Cloud to the Edge
IBM Cloud to the EdgeIBM Cloud to the Edge
IBM Cloud to the Edge
 
Is Linux ready for safety related applications?
Is Linux ready for safety related applications?Is Linux ready for safety related applications?
Is Linux ready for safety related applications?
 
Elisa Polystar Automate Presentation Mobitel 240822.pdf
Elisa Polystar Automate Presentation Mobitel 240822.pdfElisa Polystar Automate Presentation Mobitel 240822.pdf
Elisa Polystar Automate Presentation Mobitel 240822.pdf
 
In Automotive Environments - HU Michel
In Automotive Environments - HU MichelIn Automotive Environments - HU Michel
In Automotive Environments - HU Michel
 
Intelligent, safe and reliable power distribution for electric vehicles
Intelligent, safe and reliable power distribution for electric vehiclesIntelligent, safe and reliable power distribution for electric vehicles
Intelligent, safe and reliable power distribution for electric vehicles
 
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...
How Schneider Electric Assures Its Salesforce Lightning Migration with Thousa...
 
IoT Meetup September 2019
IoT Meetup September 2019IoT Meetup September 2019
IoT Meetup September 2019
 
Open Source for Industry 4.0 – Open IoT Summit NA 2018
Open Source for Industry 4.0 – Open IoT Summit NA 2018Open Source for Industry 4.0 – Open IoT Summit NA 2018
Open Source for Industry 4.0 – Open IoT Summit NA 2018
 
VMware Solutions for the Connected Car
VMware Solutions for the Connected CarVMware Solutions for the Connected Car
VMware Solutions for the Connected Car
 
Effective IIoT Implementation combining different data sources
Effective IIoT Implementation combining different data sourcesEffective IIoT Implementation combining different data sources
Effective IIoT Implementation combining different data sources
 
Presentation cloud services
Presentation   cloud servicesPresentation   cloud services
Presentation cloud services
 
IRJET- Review Paper on Iot Based Technology in Automobiles
IRJET-  	  Review Paper on Iot Based Technology in AutomobilesIRJET-  	  Review Paper on Iot Based Technology in Automobiles
IRJET- Review Paper on Iot Based Technology in Automobiles
 

Último

83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar
83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar
83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagardollysharma2066
 
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...Garima Khatri
 
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Number
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp NumberVip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Number
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Numberkumarajju5765
 
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...shivangimorya083
 
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Callshivangimorya083
 
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...Delhi Call girls
 
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Callshivangimorya083
 
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111Sapana Sha
 
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一nsrmw5ykn
 
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Callshivangimorya083
 
What Causes BMW Chassis Stabilization Malfunction Warning To Appear
What Causes BMW Chassis Stabilization Malfunction Warning To AppearWhat Causes BMW Chassis Stabilization Malfunction Warning To Appear
What Causes BMW Chassis Stabilization Malfunction Warning To AppearJCL Automotive
 
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 person
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 personDelhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 person
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 personshivangimorya083
 
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdf
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdfJohn Deere 7430 7530 Tractors Diagnostic Service Manual W.pdf
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdfExcavator
 
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...Hot Call Girls In Sector 58 (Noida)
 
GREEN VEHICLES the kids picture show 2024
GREEN VEHICLES the kids picture show 2024GREEN VEHICLES the kids picture show 2024
GREEN VEHICLES the kids picture show 2024AHOhOops1
 
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一mjyguplun
 
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...Suhani Kapoor
 

Último (20)

83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar
83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar
83778-77756 ( HER.SELF ) Brings Call Girls In Laxmi Nagar
 
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...
VIP Mumbai Call Girls Thakur village Just Call 9920874524 with A/C Room Cash ...
 
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Number
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp NumberVip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Number
Vip Hot Call Girls 🫤 Mahipalpur ➡️ 9711199171 ➡️ Delhi 🫦 Whatsapp Number
 
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...
Hot And Sexy 🥵 Call Girls Delhi Daryaganj {9711199171} Ira Malik High class G...
 
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
Call Girls In Kirti Nagar 📱 9999965857 🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SERVICE
Call Girls In Kirti Nagar 📱  9999965857  🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SERVICECall Girls In Kirti Nagar 📱  9999965857  🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SERVICE
Call Girls In Kirti Nagar 📱 9999965857 🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SERVICE
 
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...
Call Girls in Malviya Nagar Delhi 💯 Call Us 🔝9205541914 🔝( Delhi) Escorts Ser...
 
Call Girls in Shri Niwas Puri Delhi 💯Call Us 🔝9953056974🔝
Call Girls in  Shri Niwas Puri  Delhi 💯Call Us 🔝9953056974🔝Call Girls in  Shri Niwas Puri  Delhi 💯Call Us 🔝9953056974🔝
Call Girls in Shri Niwas Puri Delhi 💯Call Us 🔝9953056974🔝
 
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls East Of Kailash 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111
ENJOY Call Girls In Okhla Vihar Delhi Call 9654467111
 
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一
新南威尔士大学毕业证(UNSW毕业证)成绩单原版一比一
 
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Mayur Vihar 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
What Causes BMW Chassis Stabilization Malfunction Warning To Appear
What Causes BMW Chassis Stabilization Malfunction Warning To AppearWhat Causes BMW Chassis Stabilization Malfunction Warning To Appear
What Causes BMW Chassis Stabilization Malfunction Warning To Appear
 
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 person
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 personDelhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 person
Delhi Call Girls Saket 9711199171 ☎✔👌✔ Full night Service for more than 1 person
 
Hotel Escorts Sushant Golf City - 9548273370 Call Girls Service in Lucknow, c...
Hotel Escorts Sushant Golf City - 9548273370 Call Girls Service in Lucknow, c...Hotel Escorts Sushant Golf City - 9548273370 Call Girls Service in Lucknow, c...
Hotel Escorts Sushant Golf City - 9548273370 Call Girls Service in Lucknow, c...
 
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdf
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdfJohn Deere 7430 7530 Tractors Diagnostic Service Manual W.pdf
John Deere 7430 7530 Tractors Diagnostic Service Manual W.pdf
 
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...
꧁ ୨ Call Girls In Radisson Blu Plaza Delhi Airport, New Delhi ❀7042364481❀ Es...
 
GREEN VEHICLES the kids picture show 2024
GREEN VEHICLES the kids picture show 2024GREEN VEHICLES the kids picture show 2024
GREEN VEHICLES the kids picture show 2024
 
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一
如何办理爱尔兰都柏林大学毕业证(UCD毕业证) 成绩单原版一比一
 
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...
VIP Russian Call Girls in Jamshedpur Deepika 8250192130 Independent Escort Se...
 

Safety and Security Aspects of Automotive High Performance Controllers

  • 1. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. 2018-03-13 Alexander Much, Rudolf Grave Safety and Security Aspects of Automotive High Performance Controllers
  • 2. 22018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Changes in E/E architecture Safety Security Outlook Agenda Safety and Security Aspects of Automotive High Performance Controllers
  • 3. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Changes in E/E architecture
  • 4. 42018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. We need to completely re-think the E/E architecture: • Domain or zonal architectures • Centralized computing units • High-speed, reliable and dependable networking • Connected vehicle within infrastructure eco-systems What comes first? Mobile on Wheels or Wheels on Mobile? Safety and Security Aspects of Automotive High Performance Controllers Source: https://pxhere.com/en/photo/1064249, CC0 Public Domain Cloud and mobile first!
  • 5. 52018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Most prominent answer: „Of course, my car!“ People don‘t realize: • How many security solutions are in today‘s phones • Cloud and phones set the „state-of-the-art“ • ... not cars! What needs to be „more“ secure? Phone and Cloud vs. Vehicle Safety and Security Aspects of Automotive High Performance Controllers Source: https://pixabay.com/en/smartphone-phone-castle-key-1868489/, CC0 Creative Commons
  • 6. 62018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Evolution of E/E Architectures Safety and Security Aspects of Automotive High Performance Controllers today tomorrow future Domain Architecture Centralized Architecture Zoned Architecture • Signal based communication • System of ECUs • Predictable communication • Function orientated topology • Central computing nodes • Mix of signal based and service orientated communication • Partly centralized functions • Software upgradability • IP/Ethernet communication • Centralized applications/functions • Computing power for AD and AI • Anything anywhere (sensors/actors) • Architecture follows software/ system demands
  • 7. 72018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. • Centralized computing platform (yellow) • Zonal ECUs in a ring architecture (green) • Actors and sensors (purple) connected via Zonal ECUs • Applications are running on centralized computing platforms, zonal ECUs sensors and actors provide standardized service interfaces. • Reduction in wiring / weight and cost Zonal E/E Architecture Safety and Security Aspects of Automotive High Performance Controllers Zonal E/E Architecture For comparison: Star Wiring
  • 8. 82018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Connected E/E Architecture (Logical View) Safety and Security Aspects of Automotive High Performance Controllers UI Computing Cluster Computing Cluster(s) Smart Antenna Gateway IO Concentrators, Actors, Sensors Smart Sensors Smart Sensors Steering Braking Battery Engine Back-end System Gigabit Ethernet Reliable ECU Performance ECU IO Concentrators Back-end Server
  • 9. 92018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Use-case: remote update Safety and Security Aspects of Automotive High Performance Controllers Architectural principles: • Central external connection • Distribution of updates across multiple ECUs Supporting features • Coordinated A/B Update across ECUs • Secure networks and communication • Layered security architecture Smart Antenna Gateway Back-end System Reliable ECU Performance ECU IO Concentrators Back-end Server
  • 10. 102018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Use-case: ADAS Safety and Security Aspects of Automotive High Performance Controllers Architectural principles : • Separation between planning and performance parts • Hierarchical safety architecture Supporting features • ASIL-B performance platform • ASIL-D classic platform • Hierarchical, distributed runtime supervision Smart Antenna Gateway Back-end System Reliable ECU Performance ECU IO Concentrators Back-end Server
  • 11. 112018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Principals of a future architecture Safety and Security Aspects of Automotive High Performance Controllers HPC = High performance controller HPC-1 HPC-2 HPC-3 Horizontal deployment of functions RT-SW RT-SW RT-SW RT-SW “logic”-SW “logic”-SW “logic”-SW “logic”-SW “logic”-SW “logic”-SW Computing layer Real time and sensor/ actuator layer Back-end Vehicle API / Basic services / information layer Every information anywhere” – enables horizontal deployment of services and updating service.  But need to be controlled for safety and security reasons
  • 12. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Safety
  • 13. 132018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Example: Fail-Operational Networking Safety and Security Aspects of Automotive High Performance Controllers Fault-tolerant communication Redundant communication paths Redundant paths between Eth switches (RedM or IEEE 802.1CB) Duplicate network for CAN/FlexRay (nodes connected via 2 links) Fault-tolerant application services Fault-tolerant network services Communication path quality Com SW quality: focus on safety related feature and FFI to all other parts Com controller and switch quality Parallel active service Service instance A’ active Service instance A’’ active B selects data from A’ or A’’ based on priority Primary/Backup service Primary instance A’ active Backup instance A’’ in stand-by, becomes active when primary fails (no heartbeat) Critical service with redundancy (e.g. backup time master) Locked service – no changes on committed, critical resources (e.g. ECU shutdown lock, network bandwidth lock)
  • 14. 142018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Separation of concerns: • Performance • Safety • Security Mixture of Classic and Adaptive: • Safety closely related to real- time domain • Plenty of room for legacy applications High Performance Controllers: SW Architecture Safety and Security Aspects of Automotive High Performance Controllers AUTOSAR OS Adaptive AUTOSAR QM App App MCU Classic AUTOSAR Automotive-grade Hypervisor Adaptive AUTOSAR Safety App LINUX OS LINUX OS Classic AUTOSAR Safety App Safety Cores Safety OS Performance Cores Performance Partitions for Vehicle & Consumer Functions Safety Partition Security TEE App Security HW Trusted OS Security Partition
  • 15. 152018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Classic AUTOSAR Components Example: Distributed Health Management Safety and Security Aspects of Automotive High Performance Controllers Classic AUTOSAR Components Lockstep Safety OS WDG Core CoreCore Core Safety Core Safety Core Core…. CoreCore Health Control Bootloader Hypervisor Privileged Partition Adaptive AUTOSAR on Linux Health Manager Vehicle Functions Partition Adaptive AUTOSAR on Linux Container Vehicle Function Virtual Resources Container Vehicle Function Virtual Resources Container Vehicle Function Virtual Resources Pesistency Manager Execution manager Health Manager Diagnostic Manager Virtual Resources Physical Resources …. Classic AUTOSAR Safety Core Safety Core Lockstep Safety OS WDG Health Control Classic AUTOSAR Monitor Control
  • 16. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Security
  • 17. 172018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Security >>> Safety • Connectivity, Ethernet and High-Performance ECUs open the car to new threats • More data  more lucrative to attack • Product development life-cycles (PLCs) don‘t suffice, a switch to service life-cycles (SLCs) needed: – Automotive quality assurance in DevOps environments? – Regulatory clearance? – Field monitoring and incident response management – Third-party security observation, also for open source software • Cars will need to be updated frequently Which has more „impact“? Safety and Security Safety and Security Aspects of Automotive High Performance Controllers Source: http://maxpixel.freegreatpicture.com/Virus-Computer-Word-Security-Trojan-Cloud-Cyber-2120014, CC0 Public Domain
  • 18. 182018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Secure System Layers Safety and Security Aspects of Automotive High Performance Controllers Secure Environment Secure External Communication Secure Network Segmentation Secure OnBoard Communication Secure Platform Secure Boot Secure Hardware Element Secure Update / Diagnostics - Applications - Flashware Separation / Isolation - Memory Protection - Scheduling Policies - Access Control AUTOSAR SecOC Ethernet Security Domain Separation Trust Zones IDS/ADS Firewall Secure External Channels - TLS Secure Logging Agent Secure Backend Infrastructure
  • 19. 192018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Limit the number of ECUs with off-board connections Restrict access to the network (I) Safety and Security Aspects of Automotive High Performance Controllers Today: multiple connections
  • 20. 202018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. • Divide network into security zones, e.g. extern, “demilitarized”, internal. • Restrict traffic between zones: Physical split or separation via VLANs: Not only extern-intern, but also intern-intern, e.g. infotainment to powertrain Restrict access to the network (II) Safety and Security Aspects of Automotive High Performance Controllers VLAN Tagging to separate external – internal • External frames are tagged with an orange VLAN tag at the switch • Only nodes assigned to the orange VLAN can receive frames from the external tester • Frames to be sent to external tester, are sent via the orange VLAN – the switch at the gateway removes the orange VLAN tags before forwarding it to the tester VLAN Tagging to separate internal networks • ECUs from Infotainment (blue VLAN), chassis (green VLAN) and powertrain (yellow VLAN) can be separated • Traffic between VLANs require a switch or Gateway Tester
  • 21. 212018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Example: Platform Security Layers Safety and Security Aspects of Automotive High Performance Controllers Operating Systems Containers Hardware Classic µC HSM Performance µP SwitchSecure EnginePerformance Cores Hypervisor Processes Resource Access Control Intermediate Address Space Separation (1st-Stage MMU) Control Flow Integrity Hardware Resource Separation Physical Address Space Separation 2nd-Stage MMU Scheduling Domains Resource Constraints Control Flow Integrity Virtual Address Space Crypto Accelerators 3 Core Logic (Secure, Public & PKA) Dedicated RAM/ROM (key material) eFuses Life Cycle Management Hardware Access Protection Crypto AcceleratorsHSM (EVITA medium) HIS SHE support DoS prevention VLAN Tagging Static ARP tables Monitoring Ports
  • 22. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Outlook
  • 23. 232018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. Outlook: Interesting Times... Safety and Security Aspects of Automotive High Performance Controllers machine learning crowed sourced data system of systems third party access personalization shortened development cycles evolution after SOP new topics new business models ?
  • 24. 2018-03-13 | Funktionale Sicherheit und Security in der Fahrzeugelektronik 2018 | Public | © Elektrobit Automotive GmbH 2018. All rights reserved, also regarding any disposal, exploitation, reproduction, editing, distribution, as well as in the event of applications for industrial property rights. www.elektrobit.com alexander.much@elektrobit.com Get in touch!