ANNEX I CRequirements for construction, testing, installation, and inspection

Appendix 11

COMMON SECURITY MECHANISMS

PART BSECOND-GENERATION TACHOGRAPH SYSTEM

8.CRYPTOGRAPHIC SYSTEMS AND ALGORITHMS

8.1.Cryptographic Systems

CSM_43Vehicle units and control cards shall use an AES-based symmetric cryptographic system to provide the following security services on the remote communication interface:

Notes:

Properly speaking, data is transmitted from a vehicle unit to a remote interrogator under the control of a control officer, using a remote communication facility that may be internal or external to the VU, see Appendix 14. However, the remote interrogator sends the received data to a control card for decryption and validation of authenticity. From a security point of view, the remote communication facility and the remote interrogator are fully transparent.

A workshop card offers the same security services for the DSRC interface as a control card does. This allows a workshop to validate the proper functioning of the remote communication interface of a VU, including security. Please refer to section 9.2.2 for more information.