US 12,107,871 B2
Apparatus for security of vehicle can communication and method thereof
Yong En Kim, Cheonan-si (KR); Young Wook Son, Cheonan-si (KR); Chul Soo Kim, Cheonan-si (KR); Jong Phil Won, Cheonan-si (KR); Ho Seong Lee, Cheonan-si (KR); Taek Kyu Lim, Cheonan-si (KR); and Ji Min Kim, Cheonan-si (KR)
Assigned to Korea Automotive Technology Institute, Cheonan-si (KR)
Filed by Korea Automotive Technology Institute, Cheonan-si (KR)
Filed on Sep. 27, 2021, as Appl. No. 17/486,284.
Claims priority of application No. 10-2020-0154744 (KR), filed on Nov. 18, 2020.
Prior Publication US 2022/0159018 A1, May 19, 2022
Int. Cl. H04L 9/40 (2022.01); H04L 12/40 (2006.01)
CPC H04L 63/1416 (2013.01) [H04L 12/40 (2013.01); H04L 63/1441 (2013.01); H04L 2012/40215 (2013.01); H04L 2012/40273 (2013.01)] 15 Claims
OG exemplary drawing
 
1. An apparatus for security of vehicle controller area network (CAN) communication, comprising:
a security module unit included in each node of a vehicle CAN communication network and configured to monitor an identifier (ID) of each CAN message received through a CAN transceiver to determine whether the CAN message is a malicious CAN message to perform error processing; and
a control unit configured to set an ID to be monitored by the security module unit and control the security module unit not to perform monitoring on the ID when the node transmits the CAN message,
wherein the control unit is configured to disable the security module unit to not operate when the node itself uses an enable signal (EN) to transmit the CAN message, and is configured to enable the security module unit to operate only when the node itself receives the CAN message,
wherein, based on a determination that the received CAN message is the malicious CAN message, the security module unit inputs superior data of 0 to a transmitting (TX) terminal of the CAN transceiver such that signals CAN H and CAN L, output to a bus of the CAN transceiver, are output with a superior bit dominant value,
wherein the apparatus further comprises an AND gate connected to the transmitting (TX) terminal of the CAN transceiver, and
wherein output signals of the security module unit and the control unit are combined through the AND gate to be output to the CAN transceiver.