周千荷 呂堯
摘? ?要:智能網聯汽車已成為全球汽車產業發展的戰略方向,汽車正由人工操控的機械產品逐步向電子信息系統控制的智能產品轉變。隨著汽車智能化、網絡化、平臺化的發展,其面臨的網絡安全問題愈發凸顯。就此,歐盟網絡安全局(ENISA)于2019年底發布了《智能汽車安全的良好實踐》,以指導汽車廠商等產業鏈上下游的企業,共同解決智能汽車面臨的網絡安全問題。文章分析了《智能汽車安全的良好實踐》主要內容,提出了我國智能汽車網絡安全發展面臨的問題,結合ENISA報告提出了我國智能汽車網絡安全發展的對策建議。
關鍵詞:智能網聯汽車;通用模型;安全威脅
中圖分類號: TP309? ? ? ? ? 文獻標識碼:A
Abstract: The intelligent network connected vehicle has become the strategic direction of the global automobile industry development. The automobile is gradually changing from the mechanical products controlled by human to the intelligent products controlled by the electronic information system. With the development of the intelligent, network and platform of the automobile, the network security problems it faces are increasingly prominent. In this regard, the European Union Network Security Agency (enisa) issued the "good practice of intelligent vehicle safety" at the end of 2019 to guide the upstream and downstream enterprises in the industry chain such as automobile manufacturers to jointly solve the network security problems faced by intelligent vehicles. This paper analyzes the main contents of good practice of intelligent vehicle safety, puts forward the problems faced by the development of intelligent vehicle network safety in China, and puts forward the countermeasures and suggestions for the development of intelligent vehicle network safety in China based on the enisa report.
Key words: smart net alliance;universal model; security threats
1 引言
2020年2月24日,國家發改委等11部委聯合印發《智能汽車創新發展戰略》,從國家層面為智能汽車產業發展指明了方向,其中明確提出了“構建全面高效的智能汽車網絡安全體系”。歐盟網絡安全局(ENISA)于2019年底發布了《智能汽車安全的良好實踐》(本文簡稱《良好實踐》),提出了智能汽車網絡安全及隱私保護等問題的解決思路和框架。《良好實踐》提出的多項內容在國際范圍內尚屬首次,對于我國構建智能汽車網絡安全體系具備重要的參考研究價值。
2 亮點分析
2.1構建了智能汽車整體安全觀
《良好實踐》從智能汽車基本要素的定義,到威脅場景劃分以及應對的體系框架,形成了邏輯清晰的“三層”智能汽車安全認知架構。針對安全威脅的安全措施框架,包括智能汽車網絡安全性涉及的所有基本要件、供應鏈安全及汽車整個生命周期網絡安全性等。……