Skip to main content

2015 | OriginalPaper | Buchkapitel

Towards a Framework for Alignment Between Automotive Safety and Security Standards

verfasst von : Christoph Schmittner, Zhendong Ma

Erschienen in: Computer Safety, Reliability, and Security

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Modern automotive systems increasingly rely on software and network connectivity for new functions and features. Security of the software and communications of the on-board system of systems becomes a critical concern for the safety of new generation vehicles. Besides methods and tools, safety and security of automotive systems requires frameworks of standards for holistic process and assurance. As a part of our ongoing work, this paper investigates the possibility of a combined safety and security approach to standards in the automotive domain. We examine existing approaches in the railway and avionics domain with similar challenges and identify specific requirements for the automotive domain. We evaluate ISO 15408 as a potential candidate for a combined safety and security approach for complementing automotive safety standard ISO 26262, and discuss their points of alignment.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Fußnoten
1
A work product is the result of an activity related to a requirement.
 
Literatur
3.
Zurück zum Zitat Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S., Koscher, K., Czeskis, A., Roesner, F., Kohno, T.: Comprehensive experimental analyses of automotive attack surfaces. In: USENIX Security Symposium (2011) Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S., Koscher, K., Czeskis, A., Roesner, F., Kohno, T.: Comprehensive experimental analyses of automotive attack surfaces. In: USENIX Security Symposium (2011)
4.
Zurück zum Zitat Schmittner, C., Ma, Z., Schoitsch, E.: Combined Safety and Security Development Lifecylce. Cambridge (2015) Schmittner, C., Ma, Z., Schoitsch, E.: Combined Safety and Security Development Lifecylce. Cambridge (2015)
5.
Zurück zum Zitat Schmittner, C., Ma, Z., Gruber, T.: Standardization challenges for safety and security of connected. In: Automated and Intelligent Vehicles, Wien, November 2014 Schmittner, C., Ma, Z., Gruber, T.: Standardization challenges for safety and security of connected. In: Automated and Intelligent Vehicles, Wien, November 2014
6.
Zurück zum Zitat Eames, D.P., Moffett, J.D.: The integration of safety and security requirements. In: Felici, M., Kanoun, K., Pasquini, A. (eds.) SAFECOMP 1999. LNCS, vol. 1698, p. 468. Springer, Heidelberg (1999) CrossRef Eames, D.P., Moffett, J.D.: The integration of safety and security requirements. In: Felici, M., Kanoun, K., Pasquini, A. (eds.) SAFECOMP 1999. LNCS, vol. 1698, p. 468. Springer, Heidelberg (1999) CrossRef
8.
Zurück zum Zitat Dong-bo, P., Feng, L.: Influence between safety and security. In: ICIEA 2007, pp. 1323–1325 (2007) Dong-bo, P., Feng, L.: Influence between safety and security. In: ICIEA 2007, pp. 1323–1325 (2007)
9.
Zurück zum Zitat International Electrotechnical Commission: IEC 62443, Industrial communication networks - Network and system security - Security for industrial automation and control systems International Electrotechnical Commission: IEC 62443, Industrial communication networks - Network and system security - Security for industrial automation and control systems
10.
Zurück zum Zitat International Electrotechnical Commission: IEC 61508: Functional Safety of Electrical / Electronic / Programmable Electronic Safety-Related Systems (2010) International Electrotechnical Commission: IEC 61508: Functional Safety of Electrical / Electronic / Programmable Electronic Safety-Related Systems (2010)
11.
Zurück zum Zitat International Organization for Standardization: ISO 26262 Road vehicles - Functional safety (2011) International Organization for Standardization: ISO 26262 Road vehicles - Functional safety (2011)
12.
Zurück zum Zitat International Standardization Organization: ISO 15408, Information technology - Security techniques - Evaluation criteria for IT security (Common Criteria) International Standardization Organization: ISO 15408, Information technology - Security techniques - Evaluation criteria for IT security (Common Criteria)
16.
Zurück zum Zitat Macher, G., Sporer, H., Berlach, R., Armengaud, E., Kreiner, C.: SAHARA: a security-aware hazard and risk analysis method. In: Proceedings of the 2015 Design, Automation & Test in Europe Conference & Exhibition, pp. 621–624 (2015) Macher, G., Sporer, H., Berlach, R., Armengaud, E., Kreiner, C.: SAHARA: a security-aware hazard and risk analysis method. In: Proceedings of the 2015 Design, Automation & Test in Europe Conference & Exhibition, pp. 621–624 (2015)
18.
Zurück zum Zitat Kalmbach, R., Bernhart, W., Grosse Kleimann, P., Hoffmann, M.: Automotive landscape 2025 - opportunities and challenges ahead. Technical report, Roland Berger, Strategy Consultants, March 2011 Kalmbach, R., Bernhart, W., Grosse Kleimann, P., Hoffmann, M.: Automotive landscape 2025 - opportunities and challenges ahead. Technical report, Roland Berger, Strategy Consultants, March 2011
19.
20.
Zurück zum Zitat Markey, E.J.: Tracking & Hacking Security & Privacy Gaps Put American Drivers at Risk. Technical report (2015) Markey, E.J.: Tracking & Hacking Security & Privacy Gaps Put American Drivers at Risk. Technical report (2015)
Metadaten
Titel
Towards a Framework for Alignment Between Automotive Safety and Security Standards
verfasst von
Christoph Schmittner
Zhendong Ma
Copyright-Jahr
2015
DOI
https://doi.org/10.1007/978-3-319-24249-1_12