Refine Your Search

Topic

Author

Affiliation

Search Results

Technical Paper

Cybersecurity in the Context of Fail-Operational Systems

2024-04-09
2024-01-2808
The development of highly automated driving functions (AD) recently rises the demand for so called Fail-Operational systems for native driving functions like steering and braking of vehicles. Fail-Operational systems shall guarantee the availability of driving functions even in presence of failures. This can also mean a degradation of system performance or limiting a system’s remaining operating period. In either case, the goal is independency from a human driver as a permanently situation-aware safety fallback solution to provide a certain level of autonomy. In parallel, the connectivity of modern vehicles is increasing rapidly and especially in vehicles with highly automated functions, there is a high demand for connected functions, Infotainment (web conference, Internet, Shopping) and Entertainment (Streaming, Gaming) to entertain the passengers, who should no longer occupied with driving tasks.
Technical Paper

Challenges with the Introduction of X-By-Wire Technologies to Passenger Vehicles and Light Trucks in regards to Functional Safety, Cybersecurity and Availability

2023-04-11
2023-01-0581
Classic vehicle production had limitations in bringing the driving commands to the actuators for vehicle motion (engine, steering and braking). Steering columns, hydraulic tubes or steel cables needed to be placed between the driver and actuator. Change began with the introduction of e-gas systems. Mechanical cables were replaced by thin, electric signal wires. The technical solutions and legal standardizations for addressing the steering and braking systems, were not defined at this time. Today, OEMs are starting E/E-Architecture transformations for manifold reasons and now have the chance to remove the long hydraulic tubes for braking and the solid metal columns used for steering. X-by-wire is the way forward and allows for higher Autonomous Driving (AD) levels for automated driving vehicles. This offers new opportunities to design the vehicle in-cabin space. This paper will start with the introduction of x-by-wire technologies.
Technical Paper

Simulation Driven Design of HVAC Systems under Competing HVAC Noise and Defrost Performance Requirements

2021-08-31
2021-01-1020
It is particularly easy to get tunnel vision as a domain expert, and focus only on the improvements one could provide in their area of expertise. To make matters worse, many Original Equipment Manufacturers (OEMs) are silo-ed by domain of expertise, unconsciously promoting this single mindedness in design. Unfortunately, the successful and profitable development of a vehicle is dependent on the delicate balance of performance across many domains, involving multiple physics and departments. Taking for instance the design of a Heating, Ventilation & Air Conditioning (HVAC) system, the device’s primary function is to control the climate system in vehicle cabins, and more importantly to make sure that critical areas on the windshield can be defrosted in cold weather conditions within regulation time. With the advent of electric and autonomous vehicles, further importance is now also placed on the energy efficiency of the HVAC, and its noise.
Technical Paper

The Particle Number Counter as a “Black Box” - A Novel Approach to a Universal Particle Number Calibration Standard for Automotive Exhaust

2020-09-15
2020-01-2195
The reduction of vehicle exhaust particle emissions is a success story of European legislation. Various particle number (PN) counters and calibration procedures serve as tools to enforce PN emission limits during vehicle type approval (VTA) or periodical technical inspection (PTI) of in-use vehicles. Although all devices and procedures apply to the same PN-metric, they were developed for different purposes, by different stakeholder groups and for different target costs and technical scopes. Furthermore, their calibration procedures were independently defined by different stakeholder communities. This frequently leads to comparability and interpretation issues. Systematic differences of stationary and mobile PN counters (PN-PEMS) are well-documented. New, low-cost PTI PN counters will aggravate this problem. Today, tools to directly compare different instruments are scarce.
Technical Paper

Routing Methods Considering Security and Real-Time of Vehicle Gateway System

2020-04-14
2020-01-1294
Recently, vehicle networks have increased complexity due to the demand for autonomous driving or connected devices. This increasing complexity requires high bandwidth. As a result, vehicle manufacturers have begun using Ethernet-based communication for high-speed links. In order to deal with the heterogeneity of such networks where legacy automotive buses have to coexist with high-speed Ethernet links vehicle manufacturers introduced a vehicle gateway system. The system uses Ethernet as a backbone between domain controllers and CAN buses for communication between internal controllers. As a central point in the vehicle, the gateway is constantly exchanging vehicle data in a heterogeneous communication environment between the existing CAN and Ethernet networks. In an in-vehicle network context where the communications are strictly time-constrained, it is necessary to measure the delay for such routing task.
Technical Paper

Smart 24 V Battery Switch for a Reliable Redundant Power Supply in Commercial, Construction, and Agriculture Vehicles (CAV)

2019-10-11
2019-01-5078
For highly automated driving, commercial vehicles require an Electric/Electronic (E/E) architecture, which - in addition to sensor fusion - ensures safety-critical processes such as steering and braking at all times. Among other things, a redundant 24 V supply with corresponding disconnection is required. The battery switch is a key component. Commercial, construction, and agricultural vehicles (CAV) need to operate at the highest possible availability and the lowest possible cost of ownership. This is why automated and autonomous driving has the potential to revolutionize the CAV sector. Driverless machines can be operated around the clock and almost non-stop. Platooning allows automated, interconnected trucks to drive in a convoy and very close to each other. Platooning saves fuel.
Technical Paper

High Performance Processor Architecture for Automotive Large Scaled Integrated Systems within the European Processor Initiative Research Project

2019-04-02
2019-01-0118
Autonomous driving systems and connected mobility are the next big developments for the car manufacturers and their suppliers during the next decade. To achieve the high computing power needs and fulfill new upcoming requirements due to functional safety and security, heterogeneous processor architectures with a mixture of different core architectures and hardware accelerators are necessary. To tackle this new type of hardware complexity and nevertheless stay within monetary constraints, high performance computers, inspired by state of the art data center hardware, could be adapted in order to fulfill automotive quality requirements. The European Processor Initiative (EPI) research project tries to come along with that challenge for next generation semiconductors. To be as close as possible to series development needs for the next upcoming car generations, we present a hybrid semiconductor system-on-chip architecture for automotive.
Technical Paper

A Physical-Based Approach for Modeling the Influence of Different Operating Parameters on the Dependency of External EGR Rate and Indicated Efficiency

2018-09-10
2018-01-1736
External Exhaust Gas Recirculation (EGR) provides an opportunity to increase the efficiency of turbocharged spark-ignition engines. Of the competing technologies and configurations, Low-Pressure EGR (LP-EGR) is the most challenging in terms of its dynamic behavior. Only some of the stationary feasible potential can be used during dynamic engine operation. To guarantee fuel consumption-optimized engine operation with no instabilities, a load point-dependent limitation of the EGR rate or alternatively an adaptation of the operating point to the actual EGR rate is crucial. For this purpose, a precise knowledge of efficiency and combustion variance is necessary. Since the operating state includes the actual EGR rate, it has an additional dimension, which usually results in an immense measuring effort.
Technical Paper

Prediction of Eigenfrequencies and Eigenmodes of Seatbelt Retractors in the Vehicle Environment, Supporting an Acoustically Optimal Retractor Integration by CAE

2018-06-13
2018-01-1543
From an acoustical point of view, the integration of seatbelt retractors in a vehicle is a real challenge that has to be met early in the vehicle development process. The buzz and rattle noise of seat belt retractors is a weak yet disturbing interior noise. Street irregularities excite the wheels and this excitation is transferred via the car body to the mounting location of the retractor. Ultimately, the inertia sensor of the locking mechanism is also excited. This excitation can be amplified by structural resonances and generate a characteristic impact noise. The objective of this paper is to describe a simulation method for an early development phase that predicts the noise-relevant low frequency local modes and consequently the contact of the retractor with the mounting panel of the car body via the finite element method.
Journal Article

Novel Index for Evaluation of Particle Formation Tendencies of Fuels with Different Chemical Compositions

2017-08-18
2017-01-9380
Current regulatory developments aim for stricter emission limits, increased environmental protection and purification of air on a local and global scale. In order to find solutions for a cleaner combustion process, it is necessary to identify the critical components and parameters responsible for the formation of emissions. This work provides an evaluation process for particle formation during combustion of a modern direct injection engine, which can help to create new aftertreatment techniques, such as a gasoline particle filter (GPF) system, that are fit for purpose. With the advent of “real driving emission” (RDE) regulations, which include market fuels for the particulate number testing procedure, the chemical composition and overall quality of the fuel cannot be neglected in order to yield a comparable emission test within the EU and worldwide.
Journal Article

Markov Chain-based Reliability Analysis for Automotive Fail-Operational Systems

2017-03-28
2017-01-0052
A main challenge when developing next generation architectures for automated driving ECUs is to guarantee reliable functionality. Today’s fail safe systems will not be able to handle electronic failures due to the missing “mechanical” fallback or the intervening driver. This means, fail operational based on redundancy is an essential part for improving the functional safety, especially in safety-related braking and steering systems. The 2-out-of-2 Diagnostic Fail Safe (2oo2DFS) system is a promising approach to realize redundancy with manageable costs. In this contribution, we evaluate the reliability of this concept for a symmetric and an asymmetric Electronic Power Steering (EPS) ECU. For this, we use a Markov chain model as a typical method for analyzing the reliability and Mean Time To Failure (MTTF) in majority redundancy approaches. As a basis, the failure rates of the used components and the microcontroller are considered.
Journal Article

Bridging the Gap between Open Loop Tests and Statistical Validation for Highly Automated Driving

2017-03-28
2017-01-1403
Highly automated driving (HAD) is under rapid development and will be available for customers within the next years. However the evidence that HAD is at least as safe as human driving has still not been produced. The challenge is to drive hundreds of millions of test kilometers without incidents to show that statistically HAD is significantly safer. One approach is to let a HAD function run in parallel with human drivers in customer cars to utilize a fraction of the billions of kilometers driven every year. To guarantee safety, the function under test (FUT) has access to sensors but its output is not executed, which results in an open loop problem. To overcome this shortcoming, the proposed method consists of four steps to close the loop for the FUT. First, sensor data from real driving scenarios is fused in a world model and enhanced by incorporating future time steps into original measurements.
Technical Paper

Cyber Security in the Automotive Domain – An Overview

2017-03-28
2017-01-1652
Driven by the growing internet and remote connectivity of automobiles, combined with the emerging trend to automated driving, the importance of security for automotive systems is massively increasing. Although cyber security is a common part of daily routines in the traditional IT domain, necessary security mechanisms are not yet widely applied in the vehicles. At first glance, this may not appear to be a problem as there are lots of solutions from other domains, which potentially could be re-used. But substantial differences compared to an automotive environment have to be taken into account, drastically reducing the possibilities for simple reuse. Our contribution is to address automotive electronics engineers who are confronted with security requirements. Therefore, it will firstly provide some basic knowledge about IT security and subsequently present a selection of automotive specific security use cases.
Technical Paper

Hardware/Software Co-Design of an Automotive Embedded Firewall

2017-03-28
2017-01-1659
The automotive industry experiences a major change as vehicles are gradually becoming a part of the Internet. Security concepts based on the closed-world assumption cannot be deployed anymore due to a constantly changing adversary model. Automotive Ethernet as future in-vehicle network and a new E/E Architecture have different security requirements than Ethernet known from traditional IT and legacy systems. In order to achieve a high level of security, a new multi-layer approach in the vehicle which responds to special automotive requirements has to be introduced. One essential layer of this holistic security concept is to restrict non-authorized access by the deployment of embedded firewalls. This paper addresses the introduction of automotive firewalls into the next-generation domain architecture with a focus on partitioning of its features in hardware and software.
Technical Paper

Over the Air Software Update Realization within Generic Modules with Microcontrollers Using External Serial FLASH

2017-03-28
2017-01-1613
Connecting mobile communication channels to vehicles’ networks is currently attracting engineers in a wide range. Herein the desire of vehicle manufacturers to remotely execute software updates over the air (SOTA) within electronic control units (ECU) is probably the field of highest attention at the moment. Today software updates are typically done at vehicle service stations and connection the vehicles electronic network via the onboard diagnosis (OBD) interface to a service computer. Herby the duration of the update is invisible to the user, as this happens during standard service appointments. With introduction of SOTA, these updates become very convenient to the customer and can lead to higher customer satisfaction levels. SOTA can be made transparent to the user however the method of implementation can affect the user experience.
Technical Paper

Hardware and Software Constraints for Automotive Firewall Systems?

2016-04-05
2016-01-0063
Introduction The introduction of Ethernet and Gigabit Ethernet [2] as the main invehicle network infrastructure is the technical foundation for different new functionalities such as piloted driving, minimizing the CO2- footprint and others. The high data rate of such systems influences also the used microcontrollers due the fact that a big amount of data has to be transferred, encrypted, etc. Figure 1 Motivation - Vehicles will become connected to uncontrolled networks The usage of Ethernet as the in-vehicle-network enables the possibility that future road vehicles are going to be connected with other vehicles and information systems to improve system functionality. These previously closed automotive systems will be opened up for external access (see Figure 1). This can be Car2X connectivity or connection to personal devices. Allowing vehicle systems to communicate with other systems that are not within their physical boundaries impose a previously non-existing security problem.
Technical Paper

Feasibility Study for a Secure and Seamless Integration of Over the Air Software Update Capability in an Advanced Board Net Architecture

2016-04-05
2016-01-0056
Vehicle manufacturers are challenged by rising costs for vehicle recalls. A major part of the costs are caused by software updates. This paper describes a feasibility study on how to implement software update over the air (SOTA) in light vehicles. The differences and special challenges in the automotive environment in comparison to the cellular industry will be explained. Three key requirements focus on the drivers’ acceptance and thus are crucial for the vehicle manufacturers: SOTA must be protected against malicious attacks. SOTA shall interfere as little as possible with the availability of a vehicle. Long update processes with long vehicle downtimes or even complete fails must be avoided. The functional safety of the vehicle during operation may not be limited in any way The study gives options how those objectives can be achieved. It considers the necessary security measures and describes the required adaptations of the board-net architectures both on software and hardware level.
Technical Paper

Improved ECU End of Line Testing using Multicore Microcontroller

2015-04-14
2015-01-0186
End of Line tests are brief set of tests intended to evaluate ECU's in order to ensure correct functioning of its intended functionality. As these tests are executed on the production line, available time to perform these tests is limited. On one hand, faster production demands require these tests and its framework to be designed in a time optimized manner. On the other hand, increase in ECU functionality translates to an increase in test's functional coverage, requiring more time. Therefore the time taken to execute the tests reaches a critical point in overall ECU production. Availability of multicore microcontrollers with increase in clock speed can increase the performance of end of line tests, but design challenges e.g. synchronization do not guarantee a linear performance increase. Therefore, design of test execution framework is absolutely critical to increase performance of test execution.
Technical Paper

Automotive ADAS Camera System Configuration Using Multi-Core Microcontroller

2015-03-10
2015-01-0023
It has become an important trend to implement safety-related requirements in the road vehicles. Recent studies have shown that accidents, which occurred when drivers are not focused due to fatigue or distractions, can be predicted in advance when using safety features. Advanced Driver Assistance Systems (ADAS) are used to prevent this kind of situation. Currently, many major tiers are using a DSP chip for ADAS applications. This paper suggests the migration from a DSP configuration to a Microcontroller configuration for ADAS application, for example, using a 32bit Multi-core Microcontroller. In this paper, the following topics will be discussed. Firstly, this paper proposes and describes the system block diagram for ADAS configuration followed by the requirements of the ADAS system. Secondly, the paper discusses the current solutions using a DSP. Thirdly, the paper presents a system that is migrated to a Multi-core microcontroller.
Technical Paper

Motor Control in Auxiliary Drive Systems How to Choose the Best Fitting Electronic Solution

2014-04-01
2014-01-0323
In modern vehicles, the number of small electrical drive systems is still increasing continuously for blowers, fans and pumps as well as for window lifts, sunroofs and doors. Requirements and operating conditions for such systems varies, hence there are many different solutions available for controlling such motors. In most applications, simple, low-cost DC motors are used. For higher requirements regarding operating time and in stop-start capable systems, the focus turns to highly efficient and durable brushless DC motors with electronic commutation. This paper compares various electronic control concepts from a semiconductor vendor point of view. These concepts include discrete control using relays or MOSFETs. Furthermore integrated motor drivers are discussed, including system-on-chip solutions for specific applications, e.g. specific ICs for window lift motors with LIN interface.
X