Key points are not available for this paper at this time.
The development of intelligent connected vehicles cannot be separated from secure network communication. So far, a large number of security communication technologies have emerged, such as secure transport layer protocol, national secret TLS, etc. However, the number of vehicle attack events has not decreased but has become more frequent. One of the reasons is that the current mainstream in vehicle network CAN protocol lacks necessary security protection measures, and related communication security technologies still lack practical application in vehicle production. This article discusses the security strategy of intelligent connected vehicle communication based on HSM, including the establishment of an encryption channel using TLS with a national security dual certificate mechanism, secure key storage, signature, and signature verification and authentication mechanisms. Vehicle networking communication mainly includes external communication, security gateway, and in vehicle ECU communication. Both Android apps with Key Master functionality and Windows apps with TPM functionality can securely communicate with vehicles. With the help of certificates, certificate chains, ECDHE, and OpenSSL Engine mechanisms, secure communication between cloud, external devices, and vehicles can be achieved. This solution has been deployed and implemented in a certain automotive company.
H.J. Wang (Thu,) studied this question.