Efficiently verify the security of automotive communications and secure every frame of in-vehicle data streams

SecOC Information Security Solutions

With the development of automotive intelligence and networking, the security of in-vehicle systems is increasingly challenged.
SecOC (Secure Onboard Communication) was created to provide authentication and anti-replay attack capabilities for data transmission in in-vehicle networks, ensuring the legitimacy and integrity of every communication data.

core functionality

Achieve security and trust in every data transfer
The solution is based on the SecOC scheme for authentication of sensitive information in vehicles.
TOSUN SecOC system is based on TOSUN self-developed core software TSMaster and CAN tools to achieve, can cover the development and production process of the test requirements, the main functions include the master node synchronization message parsing, complete freshness value generation, calculation of the MAC value, generate and send security messages, receive parsed and verified security messages and fault injection function.
SecOC Solutions Test Master Panel

01

Synchronous message reception

The synchronization message sent by the gateway ensures the synchronized management of the freshness values and guarantees the freshness of the communication messages.

Freshness Value Management - Complete Data Structure for Freshness Values

02

Supports multi-node testing

Supports ECU single node testing and multi-node joint testing

SecOC secure message sending

03

signal simulation

Simulates vehicle hardwired IO signals, bus node signals, power supply logic and process signals, and electrical faults required by the electronic control unit to be tested.

Fault Injection Test-Detailed Message Information

04

Data Acquisition and Analysis

Real-time acquisition and parsing of controller control and drive signals provides complete test and evaluation.

Full process coverage

Supports all types of communication verification needs from development to production.

Precision protection

The use of standard algorithms and strict freshness value management ensures that every communication is safe and reliable.

Efficient problem detection

The reliability of the system is further improved by fault injection testing.

Extremely high compatibility

Conforms to AUTOSAR SecOC standards and is compatible with various CAN bus communication protocols, ensuring that your product complies with international Telematics safety standards.

What is SecOC? How does it improve the security of in-vehicle communications?

SecOC is the abbreviation of Security Onboard Communication, which is a new basic module added by AUTOSAR from Classic Platform 4.2, and its main function is to provide authentication and prevent replay attacks for data transmission on the automotive embedded network bus.
The SecOC mechanism requires that the SecOC module be implemented between the electronic control units (ECUs) that send and receive Protocol Data Units (PDUs).

During the sending process, the SecOC module generates a secure PDU by adding authentication information to the original PDU of the protocol to be transmitted.
This authentication information includes Freshness Value (abbreviated as FV) and Message Authentication Code (abbreviated as MAC).

The Freshness Value Management Module (FVM) is responsible for generating the FVs.The FVMs are divided into master FVMs (which are the responsibility of the gateway) and slave FVMs (which are the responsibility of other ECUs implementing the SecOC mechanism).
The former ensures that the FVs at the sending and receiving ends of the PDUs remain consistent by sending a Freshness Value Synchronization message to the latter, while the latter sends an FV Synchronization Request message to the former.

The data identifier of the PDU, the original PDU, and the complete freshness value are concatenated together and then passed to the authentication algorithm to generate the MAC value.
After the receiver receives the secure PDU, it will be verified by the MAC authentication module to verify its freshness and integrity. If the validation is successful, the raw data PDU will be passed to the upper layer application software module; if the validation fails, it will be directly discarded.

What application scenarios is TOSUN's SecOC solution suitable for?

TOSUN's SecOC solution is applicable to a variety of in-vehicle application scenarios, including but not limited to: power system communication protection, securing data for autonomous driving functions, and OTA remote updates, etc. It can effectively protect the vehicle's core system from external threats.

How does SecOC implement freshness value management?

The SecOC solution utilizes multi-layer counters (e.g., trip counters, reset counters, message counters, etc.) to manage the freshness value, and synchronizes the update of the freshness value through the master and slave nodes to ensure the uniqueness and immediacy of each communication and to effectively prevent data replay attacks.

What communication protocols does SecOC support?

TOSUN SecOC solution supports various communication protocols such as CAN, CAN FD and Ethernet, and complies with the AUTOSAR standard, providing a high degree of compatibility and integration into various in-vehicle communication environments.

Can TOSUN SecOC be integrated with other TOSUN in-vehicle tools?

Can. The TOSUN SecOC solution is implemented based on TSMaster and TOSUN CAN tools, and can be seamlessly integrated into other TOSUN in-vehicle tools to meet multi-level testing needs.

Why is fault injection testing important for in-vehicle communications security?

Fault injection testing can simulate a variety of potential attack scenarios and help detect the system's response and stability to abnormal communications. Through this type of testing, developers can identify potential security vulnerabilities in the system and further enhance the reliability of the product.

Learn more about Synstar solutions for a safer, smarter automotive ecosystem.

Check out other solutions today to find the perfect one for you!

Learn more about TOSUN SecOC solutions

Contact our professional team to learn more about automotive testing solutions, TOSUN will be happy to provide you with customized solutions, and is always available to answer any technical questions you may have.