Memory device with secure boot updates and self recovery
US-2024406008-A1 · Dec 5, 2024 · US
US2023259353A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2023259353-A1 |
| Application number | US-202318153551-A |
| Country | US |
| Kind code | A1 |
| Filing date | Jan 12, 2023 |
| Priority date | Feb 15, 2022 |
| Publication date | Aug 17, 2023 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An operation management device for managing operation of a plurality of electronic control devices installed on a vehicle includes: an update management unit configured to: receive a download instruction to download updated data from an external device; and deliver the received updated data to an electronic control device and instruct the electronic control device to write the updated data, the updated data including an updated program for the electronic control device, the electronic control device being at least one of the electronic control devices, the electronic control device being a target device for downloading the updated data; and a failure diagnosis unit configured to execute failure diagnosis for the electronic control devices, wherein when the update management unit instructs any of the electronic control devices to write the updated data, the update management unit prohibits the failure diagnosis unit from executing the failure diagnosis.
Opening claim text (preview).
What is claimed is: 1 . An operation management device for managing operation of a plurality of electronic control devices installed on a vehicle, the operation management device comprising: an update management unit configured to: receive a download instruction to download updated data from an external device outside the vehicle; and deliver the received updated data to an electronic control device and instruct the electronic control device to write the updated data, the updated data including an updated program for the electronic control device, the electronic control device being at least one of the electronic control devices, the electronic control device being a target device for downloading the updated data; and a failure diagnosis unit configured to execute failure diagnosis for the electronic control devices, wherein when the update management unit instructs any of the electronic control devices to write the updated data, the update management unit prohibits the failure diagnosis unit from executing the failure diagnosis. 2 . The operation management device according to claim 1 , each of the plurality of electronic control devices being connected to the operation management device either directly through a communication transmission line to be able to communicate with each other or indirectly through the communication transmission line and at least one of the electronic control devices other than the electronic control device to be able to communicate with each other, the operation management device further comprising: an activation management unit configured to manage an activation configuration, the activation configuration being information indicating an activation order of the plurality of electronic control devices; and an activation unit configured to activate the electronic control devices, wherein the update management unit prohibits execution of diagnostic operation and then notifies the target device to the activation management unit based on the download instruction, the activation management unit notifies an electronic control device and an update activation configuration to the activation unit, the electronic control device being at least one of the electronic control devices, the electronic control device needing to be activated to establish communication between the update management unit and the target device, the update activation configuration being the activation configuration indicating an activation order, and the activation unit activates the electronic control device needing to be activated, according to the update activation configuration. 3 . The operation management device according to claim 2 , wherein the failure diagnosis unit executes failure diagnosis for the electronic control device indicated in the update activation configuration after the activation unit activates the electronic control device according to the update activation configuration. 4 . The operation management device according to claim 3 , wherein the plurality of electronic control devices, the operation management device, and the communication transmission line configure a communication network, and the communication network includes at least one transmission line switch that switches connection in the communication transmission line, the activation management unit manages a network configuration that indicates a state to be set for the transmission line switch in the communication network, the activation management unit notifies an update network configuration to the activation unit, the update network configuration being the network configuration for establishing communication between the update management unit and the target device, and the activation unit switches the transmission line switch according to the update network configuration, and then activates the electronic control device needing to be activated, according to the update activation configuration. 5 . The operation management device according to claim 4 , wherein when the target device ends writing of the updated data, the update management unit prohibits the failure diagnosis unit from executing the failure diagnosis, the activation management unit notifies, to the activation unit, the network configuration used before notifying the update network configuration to the activation unit, and the activation unit switches the transmission line switch according to the network configuration notified from the activation management unit. 6 . An operation management method to be performed by a computer of an operation management device, the operation management device managing operation of a plurality of electronic control devices installed on a vehicle, the method comprising: a step of receiving a download instruction to download updated data from an external device outside the vehicle, the updated data including an updated program for an electronic control device, the electronic control device being at least one of the electronic control devices; a step of prohibiting execution of failure diagnosis for the electronic control devices; and a step of delivering the received updated data to the electronic control device and instructing the electronic control device to write the updated data, the electronic control device being a target device for downloading the updated data.
Updates (security arrangements therefor G06F21/57) · CPC title
Modular or universal configuration of the monitoring system, e.g. monitoring system having modules that may be combined to build monitoring program; monitoring system that can be applied to legacy systems; adaptable monitoring system; using different communication protocols · CPC title
Real time diagnostics · CPC title
Diagnosing or detecting failures; Failure detection models · CPC title
External transmission of data to or from the vehicle · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.