Session slicing of mirrored packets
US-12184680-B2 · Dec 31, 2024 · US
US2016149934A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2016149934-A1 |
| Application number | US-201314898779-A |
| Country | US |
| Kind code | A1 |
| Filing date | Jul 18, 2013 |
| Priority date | Jul 18, 2013 |
| Publication date | May 26, 2016 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A communication apparatus for preventing the broadcasting of unauthorised messages on a broadcast bus network, the communication apparatus comprising: a first memory adapted to store first information; a second memory adapted to store second information; a monitoring unit adapted to: monitor the bus for processing messages being broadcasted on the bus, and output a third information and fourth information a comparing unit adapted to compare the first information with the third information and the second information with the fourth information; and, a message destroyer adapted to: when: the first information matches with the third information, and the second information does not match with the fourth information, causing the body of the current message to be altered while the current message is being broadcasted on the bus.
Opening claim text (preview).
1 . A communication apparatus for receiving and/or broadcasting authorised messages on a broadcast bus network and for preventing the broadcasting of unauthorised messages on the bus the authorised and unauthorised messages comprising a header and a body wherein the header is broadcasted before the body and comprises an indication of the type of message being broadcasted, the communication apparatus comprising: a first memory adapted to store first information with respect to at least one type of authorised messages which can be broadcasted by the communication apparatus; a second memory adapted to store second information with respect to at least the last authorised message broadcasted by the communication apparatus; a monitoring unit coupled to the bus and adapted to: monitor the bus for processing messages being broadcasted on the bus, and output a third information with respect to a type of a current message being broadcasted on the bus and fourth information with respect to at least part of the header of the current message; a comparing unit coupled to the monitoring unit, the first memory and the second memory, the comparing unit being adapted to compare the first information with the third information and the second information with the fourth information; and, a message destroyer coupled to the comparing unit and adapted to: when: the first information matches with the third information, and the second information does not match with the fourth information, convert the current message into an erroneous message by causing the body of the current message to be altered while the current message is being broadcasted on the bus. 2 . The communication apparatus of claim 1 , wherein the message destroyer is further adapted to alter at least part of the body of the current message. 3 . The communication apparatus of claim 1 , wherein the bus complies with a broadcast bus network standard such as Controller Area Network, CAN. 4 . The communication apparatus of claim 1 , further comprising: at least one second communication apparatus similar to the first communication apparatus and adapted to receive authorised messages from the bus; wherein: the message destroyer of the first communication apparatus is activated and a message destroyer of the second communication apparatus is deactivated; and, the first and second communication apparatuses are further adapted to receive erroneous message broadcasted on the bus. 5 . The communication apparatus of claim 4 , wherein the first and second communication apparatuses are further adapted to discard the processing of an erroneous message. 6 . The communication apparatus claim 4 , wherein at least the second communication apparatus is further adapted to enter into a safety state in response to the reception of an erroneous message. 7 . A method of preventing the broadcasting of unauthorised messages on a broadcast bus network comprising at least one communication apparatus according to claim 1 configured to receive and/or broadcast authorised messages on the bus, the authorised and unauthorised messages comprising a header and a body wherein the header is broadcasted before the body and comprises an indication of the type of message being broadcasted, the method comprising: storing in the first memory of the communication apparatus a first information with respect to at least one type of authorised messages which can be broadcasted by the communication apparatus; storing in the second memory of the communication apparatus a second information with respect to at least the last authorised message broadcasted by the communication apparatus; monitoring the bus, and based on the monitoring, outputting a third information with respect to a type of a current message being broadcasted on the bus and a fourth information with respect to at least part of the header of the current message; comparing the first information with the third information and the second information with the fourth information; and, when: the first information matches with the third information, and the second information does not match with the fourth information converting the current message into an erroneous message by causing the body of the current message to be altered while the current message is being broadcasted on the bus. 8 . The method of claim 7 , wherein in the step of converting, a message destroyer is used to alter at least part of the body of the current message. 9 . The method of claim 7 , wherein the bus complies with a broadcast bus network standard such as Controller Area Network, CAN. 10 . The method of claim 7 , further comprising using a computer program product stored in a non-transitory computer-readable storage medium to perform the steps of storing in the first memory, storing in the second memory, monitoring the bus, and converting.
Event detection, e.g. attack signature detection · CPC title
Active attacks involving interception, injection, modification, spoofing of data unit addresses, e.g. hijacking, packet injection or TCP sequence number attacks · CPC title
the transportation system being a vehicle · CPC title
for controlling access to devices or network resources · CPC title
Details regarding a bus interface enhancer · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.