Electric Vehicles (EVs) are more and more charged at public Charge Points (CPs) using Plug-and-Charge (PnC) protocols such as the ISO 15118 standard which eliminates user interaction for authentication and authorization. Currently, this requires a rather complex Public Key Infrastructure (PKI) and enables driver tracking via the included unique identifiers. In this paper, we propose an approach for using Self-Sovereign Identities (SSIs) as trusted credentials for EV charging authentication and authorization which overcomes the privacy problems and the issues of a complex centralized PKI. Our implementation shows the feasibility of our approach with ISO 15118. The security and privacy of the proposed approach is shown in a formal analysis using the Tamarin prover.
翻译:电动汽车越来越多地在公共充电桩(CP)上使用即插即充(PnC)协议(如ISO 15118标准)进行充电,该协议消除了用户身份验证和授权过程中的交互需求。目前,这需要构建较为复杂的公钥基础设施(PKI),且通过包含的唯一标识符可实现驾驶员追踪。本文提出了一种将自主主权身份(SSI)作为电动汽车充电认证与授权可信凭证的方法,该方法克服了隐私问题及复杂中心化PKI的弊端。我们的实现验证了该方法与ISO 15118标准的兼容性。通过使用Tamarin证明器进行的正式分析,展示了所提方法的安全性与隐私保护能力。