eUICC在智能家居安全认证的应用与前景

2 下载量 154 浏览量 更新于2024-08-29 收藏 687KB PDF 举报
"本文主要探讨了基于eUICC(Embedded Universal Integrated Circuit Card)的智能家居认证方案,以解决当前智能家居领域存在的安全隐患。文章作者是黎艳、卢燕青、张荣和郭茂文,来自中国电信股份有限公司广州研究院。文章首先分析了智能家居服务的主要安全风险,然后提出了基于eUICC的认证解决方案,包括系统的总体架构、模块交互和关键流程,并对eUICC在智能家居领域的未来应用进行了展望。" 正文: 智能家居作为现代科技发展的产物,已经渗透到人们日常生活中,但随之而来的安全问题也不容忽视。传统的认证方式,如账号密码或短信验证码,存在诸多安全隐患,如密码被盗、短信被截获等,这使得家庭设备容易受到非法访问,例如摄像头被黑客控制等。 eUICC是一种嵌入式用户卡,它能够提供更加安全可靠的设备身份验证,尤其适用于物联网设备。eUICC的优势在于其可远程更新的特性,允许运营商动态地管理和更换SIM卡中的身份信息,无需物理接触设备,增强了设备的灵活性和安全性。 在基于eUICC的智能家居认证方案中,总体架构通常包括设备端、云服务平台和网络运营商三个部分。设备端集成eUICC模块,负责与云平台进行安全通信;云服务平台管理设备的身份信息和安全策略,同时处理用户的控制指令;网络运营商则提供安全网络环境和数据传输服务。这一架构确保了从设备到云端的数据传输过程中的认证安全。 主要模块交互主要包括设备初始化阶段、身份认证阶段和持续通信阶段。在设备初始化时,eUICC与云平台进行身份验证,获取安全证书;在身份认证阶段,设备通过eUICC与云平台建立加密连接,验证设备合法性;在持续通信阶段,eUICC保证通信过程的机密性和完整性。 关键流程包括设备注册、证书下载和安全通信。设备注册是设备接入网络的第一步,通过eUICC进行;证书下载则是设备获取安全凭证的过程,这些凭证用于后续的通信认证;安全通信则是在设备与云平台之间建立加密通道,防止数据被窃取或篡改。 通过对eUICC在智能家居领域的应用前景展望,我们可以预见,随着物联网技术的发展,eUICC将在提升智能家居安全性方面发挥重要作用。它不仅可以增强用户对智能家居的信任度,还能促进智能家居市场的健康发展,为设备制造商和网络运营商提供更加安全、灵活的服务框架。 基于eUICC的智能家居认证方案是解决当前安全问题的有效途径,通过优化认证机制,提高设备安全性,将有助于推动智能家居行业的进一步发展。
2019-03-20 上传
Contents Contents .............................................................................................................................. 3 1 Introduction .................................................................................................................. 6 1.1 About eCall / ERA GLONASS ................................................................................................................. 7 1.2 eCall definitions .................................................................................................................................... 7 2 IVS system and eCall conformity ................................................................................. 8 2.1 eCall AT interface summary .................................................................................................................. 9 2.2 Table of timings (eCall Release 2 and 3) .............................................................................................. 10 3 eCall control through AT interface ............................................................................ 11 3.1 AT+UECALLSTAT ................................................................................................................................ 12 3.1.1 Read configuration: AT+UECALLSTAT? ....................................................................................... 12 3.1.2 Force the configuration in cache: AT+UECALLSTAT=0/1/2 ........................................................... 13 3.1.3 Restore configuration in cache: AT+UECALLSTAT=3 .................................................................... 13 3.2 AT+UECALLTYPE ................................................................................................................................ 14 3.3 AT+CECALL ........................................................................................................................................ 16 3.4 AT+UDCONF=90 ................................................................................................................................ 17 3.4.1 eCall test number: AT+UDCONF=90,1[,<ToN>,<number>] ......................................................... 17 3.4.2 eCall reconfiguration number: AT+UDCONF=90,2[,<ToN>,<number>] ....................................... 17 3.4.3 eCall T3242 duration: AT+UDCONF=90,11,<timer_duration> ..................................................... 17 3.4.4 eCall T3243 duration: AT+UDCONF=90,12,<timer_duration> ..................................................... 17 3.5 AT+UECALLDATA ............................................................................................................................... 18 3.5.1 Activation: AT+UECALLDATA=1,<push/pull mode>,<MSD data> ................................................ 18 3.5.2 In-band Modem status events: +UUECALLDATA: <urc_id> .......................................................... 18 3.5.3 MSD update: AT+UECALLDATA=2,<update mode>,<MSD data> ............................................... 19 3.5.4 Examples ..................................................................................................................................... 19 3.6 AT+UECALLVOICE .............................................................................................................................. 20 3.6.1 Internal voice control ................................................................................................................... 21 3.6.2 Configurable internal HLAP timers (eCall Release 4) ..................................................................... 23 4 eCall examples ............................................................................................................ 25 4.1 eCall session dynamic view: end-to-end In-band signaling .................................................................. 25 4.1.1 MSD transfer in push mode ......................................................................................................... 25 4.1.2 MSD update in TX idling mode .................................................................................................... 26 4.2 eCall control examples ........................................................................................................................ 27 4.2.1 Simple MSD transfer in push mode ............................................................................................. 27 4.2.2 MSD update on PULL request, with transmitter reset and microphone control ............................ 28 4.2.3 Answer to PSAP callback ............................................................................................................. 29 4.3 eCall configuration examples .............................................................................................................. 30 4.3.1 eCall initiation (eCall Release 2 vs 3) ............................................................................................ 30 4.3.2 eCall-only mode with an eCall-enabled USIM .............................................................................. 31 eCall / ERA GLONASS - Application Note UBX-13001924 - R09 Contents Page 4 of 62 4.3.3 Force the eCall-only mode with a not eCall-enabled USIM .......................................................... 32 4.3.4 Force the eCall without registration restrictions with a not eCall-enabled USIM ........................... 32 5 ERA-GLONASS additional features and use cases .................................................... 33 5.1 MSD transfer by SMS .......................................................................................................................... 33 5.1.1 MSD SMS transmission in PDU mode .......................................................................................... 33 5.2 SIM/eUICC profile switch .................................................................................................................... 35 5.2.1 Example of management of eCall transaction with temporary eUICC swap to emergency profile 35 6 eCall / ERA GLONASS In-band Modem simulation system ...................................... 37 6.1 PSAP simulator ................................................................................................................................... 37 6.1.1 Software & hardware requirements ............................................................................................. 37 6.2 IVS system .......................................................................................................................................... 38 6.2.1 Software & hardware requirements ............................................................................................. 38 6.3 m-center software .............................................................................................................................. 38 6.3.1 IVS simulator ............................................................................................................................... 39 6.3.2 PSAP simulator ............................................................................................................................ 43 6.4 eCall / ERA GLONASS system setup .................................................................................................... 45 6.4.1 PSAP simulator connecting with the PSAP GSM modem .............................................................. 45 6.4.2 Starting the PSAP simulator ......................................................................................................... 45 6.4.3 IVS simulator connecting with the IVS GSM modem .................................................................... 45 6.4.4 Starting the IVS simulator ............................................................................................................ 45 6.4.5 IVS In-band Modem setup without IVS simulator ......................................................................... 47 6.5 Running the eCall simulation .............................................................................................................. 47 6.5.1 eCall simulation example (without IVS simulator) ......................................................................... 47 6.5.2 Callback example ........................................................................................................................ 49 Appendix .......................................................................................................................... 50 A List of Acronyms ......................................................................................................... 50 B PAN European eCall IVS test list ................................................................................ 51 B.1 NAD Protocol ...................................................................................................................................... 51 B.2 In-band modem conformance ............................................................................................................ 51 B.3 High-level application protocol ........................................................................................................... 52 C ERA-GLONASS IVS test list ......................................................................................... 54 C.1 IVS functional and data transfer protocols test methods ..................................................................... 54 C.1.1 IVS tests in regard to functional requirements ............................................................................. 54 C.1.2 IVS tests in regard to requirements of data exchange protocols ................................................... 54 C.2 IVS tests for compliance with the established requirements for electromagnetic compatibility and resistance to climatic and mechanical loads ................................................................................................... 55 C.2.1 IVS tests for compliance with the established requirements for electromagnetic compatibility ..... 55 C.2.2 IVS tests for compliance with the established requirements for resistance to climatic loads .......... 55 C.2.3 IVS tests for compliance with the established requirements for resistance to mechanical loads .... 56 C.3 IVS tests for conformity to quality requirements for loudspeaker communication in vehicle cabin ....... 56 eCall / ERA GLONASS - Application Note UBX-13001924 - R09 Contents Page 5 of 62 C.4 IVS tests for conformity to accident detection requirements .............................................................. 56 C.5 IVS tests for wireless communication modules .................................................................................... 57 C.5.1 IVS tests in regard to implementation of GSM modem functions ................................................. 57 C.5.2 IVS tests in regard to implementation of UMTS modem functions ............................................... 57 C.5.3 IVS tests in regard to implementation of in-band modem functions ............................................. 58 C.6 IVS tests for navigation modules ......................................................................................................... 58 D eCall flag ..................................................................................................................... 59 Related documents .......................................................................................................... 60 Revision history ................................................................................................................ 61 Contact .............................................................................................................................. 62