Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

BMW at Petuelring 130, 80809 Munich in Germany.

Agenda

Security design  (Stefan) (Stefan) AUTOSAR () (brainstorming ?, ) report on CDD (Sachin - TBC
  • 1 External services e.g. VISS, REST/Web sockets (Gunnar: depends on OEM requirements) (Gunnar can lead the discussion)
  • 2 External services e.g. SOME/IP (Gunnar) (45mn)
  • design - 17:30

    Time

    Day 1

    09.00

    Agenda Review and introduction

    Welcome, logistics (e.g. IT) and agenda review


    Security design

    09:30

    (owner) (duration)
    09:30-10:00

    Access control and permissions in Android (Stefan) (30mn)

    • Build connection VSS to Android permissions model
    • How to verify permissions
    10:00-10:30

    External service approach (Alexander - TBC) (30mn)

    • = which authentication methods exist ?
    • Adaptive
    • Autosar Identity and Access management has a general philosophy, defined names and concepts.  It is a basis for discussion because it describes a model  around interaction between entities (not details or protocols).
    • /TODO/ Alexander sync with Giovanni Vergine on Adaptive Autosar IAM prior to the F2F WIP
    10:30-10:45Break
    10:45-11:30

    VSS Layers (Gunnar) (45mn)

    • concept could be used to put signals into access control groups
    • how to map the concept to Android permissions (how it will be done on the Android side)

    11:30-12:00

    Users vs. permissions - presentation of the zone concept in Android 10 (Piotr) (30mn)

    • Different users could have different permissions?  Or is this only controlled based on application identity? (TBD)
      • For example audio zones...  Some users should not be able to control the audio.
      • But can this simply be built into the application rather ?
      • Stefan: this is similar to what was introduced in Android 10
      • presentation of the zone concept in Android 10 (Piotr) (30mn)
      Use cases and general requirements (TBD)
      E.g. How fine grained must the permissions model be?
      •  is this only controlled based on the  application identity ?
    • report on CDD (Sachin - TBC)

    Security design backlog

    • Vectors of attack
      • as a recap following the discussion on solutions
      • brainstorming on which attacks are targeted with the solutions discussed ?
      • follow the attack tree modeling method ?
      • (topic likely for a later stage / F2F
      • )

    12.30

    Lunch, at BMW office


    13.30

    Technical proposals - further refinement (owner, duration)
    13:30-14:15

    Android internal service (Some signal-connecting library using VSS standard) (Stefan) (45mn)

    • VSS to standard Vehicle HAL - detailed
    • design  can be done right away.
      • Focus on:  "Easiest way" to expose data to Android applications
    14:15-15:00External services - SOME/IP (Gunnar) (45mn)
    15:00-15:15Break
    15:15-16:00

    External services - VISS, REST/Web sockets (Gunnar - TBC) (45mn)

    • relevance of topic depends on OEM requirements
    • Gunnar can lead the discussion but needs inputs on whether REST/Web sockets are in scope)
    • /TODO/ Sachin, Alex, others provide inputs prior to the F2F

    16:00-16:45

    Compatibility Android and non-Android systems - common solutions (TBD) (

    brainstorming: preparation call with Giovanni, Piotr and Alex)

    45mn)

    • brainstorming needed prior to the F2F
    • /TODO/ Alexander sync with Giovanni Vergine and Piotr Krawczyk on FARACON project prior to the F2F WIP
    • Tool chains:   VSS (or Franca) to Android IDLs translation ?


    Backlog topics >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>


    • Decision point:  Which design to use (develop), or at least prioritize
      • ....Decide how the application layer should be fusing the connection - direct socket connection or bound through android service
    end of Day 1

    Backlog topics

    • how to use SOME/IP to communication with Adaptive AUTOSAR and/or Classic AUTOSAR ?
    • how to use Adaptive AUTOSAR Identity & Access Management (IAM) ?
    • Once we know direction, what parts are missing and need to be developed?
    • signal-to-service specification in AR 19-11

    17:30

    end of Day 1


    Time

    Day 2

    08.30

    Start

    08:30-9:00Agenda bashing


    Audio HAL

    • presentation of the work done by the HV project on the standard interfaces for the audio platform (Gunnar)
    • review of the list of prioritarized topics (TBD)
    • work on highest priority topics
      • source management, networked audio devices (TBD)
      • controlling audio effects / audio data transfer (TBD)
      • multi-source management (TBD)

    12.00

    Lunch

    13.00-13:30

    Agenda bashing

    13.30-16:00

    Vehicle HAL topics likely

    16:00

    End of Day 2


    Backlog topics

    Planned Attendees

    Name

    Attending

    VHALAUDIO

    Arrival day; flight no and time

    Departure day; flight no and time

    Hotel

    Notes

    Car Parking?



    117




    F2FYESYES




    F2FYES





    F2FYES





    F2F
    YES




    F2FYES





    F2FYES





    F2F or telco (TBC)
    YES




    F2F or telco (TBC)YES





    telcoYES





    F2FYESYES




    Stephen Lawrence +domain expert (TBC)

    telcoYES





    F2F
    YES




    telcoYESYES




    F2FYESYESMonday 3 FebruaryThursday 6 February

    no

    Transportation

    • From Munich Airport:
      • Ticket to bay:  M-5 (11.50€ for a single)
      • Take the S-Bahn S1 from the Airport (direction citi center).
      • Change to the U-Bahn U3 in Moosach (direction Fürstenrid West).
      • Exit the U-Bahn on Petuelring or Olympiazenter.
    • From Munich central railway station:
      • Ticket to bay:  M (3.30€ for a single)
      • Take the U-Bahn U2 from the Munich central railway station (direction Feldmoching)
      • Change to the U-Bahn U3 in Scheidplatz (direction Moosach).
      • Exit the U-Bahn on Petuelring or Olympiazenter.
    • By Car:

    ...

    Edit the table below to indicate your status with respect to the proposed dates for the F2F, entering one of the following:

    Symbol

    Meaning


    [empty] Not yet determined

    YES

    this day works fine for me

    no

    This day definitely does not work for me

    ??

    This day could work, but I would prefer not to

    If you would use case exactly as shown ("YES", "no") that would help for visually scanning the table.

    There are a lot of people to try to schedule to suitable dates, so please be as generous as possible in specifying "YES" or "??"

    Availability planning

    Name

    Jan

    Jan

    Jan

    Jan

    Jan

    +

    Jan

    Jan

    Jan

    Jan

    Jan

    +

    FebFebFebFebFeb

    Notes

    please indicate F2F or telco

    (and write AUDIO if you are interested
    primarily in Audio HAL meeting)


    20

    21

    22

    23

    24

    +

    27

    28

    29

    30

    31

    +

    34567


    Total YES












    +






     

    Total no












    +






     

    ??????????
    YESYESYESYESno

    +

    ??YESYESYESYES

    F2F, VHAL & Audio







    YESYES


    +


    YESYES

    F2F, VHAL (will add another colleague for audio)

    YESYESYESYES??
    ??YESYESYESYES

    +

    YESYESYESYESYES

    F2F

    Johan

    ??YESYESYES??
    ??YESYESYES??

    +

    ??YESYESYES??

     Partly via Telco, VHAL

    Pete










    +







    Sachin










    +


    YESYES

    F2F, VHAL (AUDIO)

    YESYESYESYESYES
    YESYESYESYESYES

    +

    YESYESYESYESYES

    F2F, VHAL (exact person not decided)

    Pontus










    +







    GuruYESYESYESYESYES
    YESYESYESYESYES

    +

    YESYESYESYES

    F2F

    Gerald










    +







    NONONONONO
    NONONONONO

    +

    NONONONONO

    F2F. Audio/vehicle. Can't travel.




    ????





    +

    YESYESYESYESYES

    Telco (need to check travel but would prefer to

    get domain expert from within company)

    ??YESYESYES??
    ??YESYESYES??

    +

    ??YESYESYES??

    F2F

    Unknown User (niskandar) +1
    (MOBIS Frankfurt office)

    (+1 is registering)

    YESYESYESYESYES
    YESYESYESYESYES

    +

    YESYESYESYESYES

    F2F, AUDIO

    NONONONONO
    NONONONONO

    +

    NONONONONO

    Will not be able to travel those days












    +


    YESYES

    F2F/Telco, AUDIO












    +



    YES

    AUDIO













    +



















    +







    Rooms available at BMW







    YESYES


    +


    YES

    YES

    One room in february with video conference

    Agenda backlog

    ...

    Draft agenda planning here.

    ...