This paper describes an innovative two-way ranging protocol for position authentication and secure time transfer. In positioning mode, the system exploits the integration of multiple two-way ranging measurements, generated using satellites sparse in different directions. By intersecting the ellipsoids associated to all the two-way ranging measurements it is possible to derive a bounding area inside which the user is guaranteed to be located, hence limiting the positions that are compatible with a spoofing attack. In time transfer mode, a standard time transfer protocol such as NTP/NTS is used; in addition, a single two-way ranging measurement is compared with a geometrical bound on the Round Trip Time (RTT) to determine the acceptance of the computed time. This approach allows to constrain the maximum time error caused by an attacker. The proposed two-way ranging strategies are implemented in a Matlab simulator and the obtained simulation results are very promising. In positioning mode, the application availability is above 90%, false alarm and hazardous misdetection events are never observed. In time transfer mode, the availability is 100%, false alarm and hazardous misdetection events are never observed, allowing a secure time transfer with a maximum error of few milliseconds.

A Satellite-Based Two-Way Ranging Protocol for GNSS Positioning Authentication and Time Transfer

Laurenti, Nicola;Caparra, Gianluca
2023

Abstract

This paper describes an innovative two-way ranging protocol for position authentication and secure time transfer. In positioning mode, the system exploits the integration of multiple two-way ranging measurements, generated using satellites sparse in different directions. By intersecting the ellipsoids associated to all the two-way ranging measurements it is possible to derive a bounding area inside which the user is guaranteed to be located, hence limiting the positions that are compatible with a spoofing attack. In time transfer mode, a standard time transfer protocol such as NTP/NTS is used; in addition, a single two-way ranging measurement is compared with a geometrical bound on the Round Trip Time (RTT) to determine the acceptance of the computed time. This approach allows to constrain the maximum time error caused by an attacker. The proposed two-way ranging strategies are implemented in a Matlab simulator and the obtained simulation results are very promising. In positioning mode, the application availability is above 90%, false alarm and hazardous misdetection events are never observed. In time transfer mode, the availability is 100%, false alarm and hazardous misdetection events are never observed, allowing a secure time transfer with a maximum error of few milliseconds.
2023
Proceedings of the 36th International Technical Meeting of the Satellite Division of The Institute of Navigation (ION GNSS+ 2023)
978-0-936406-35-0
File in questo prodotto:
Non ci sono file associati a questo prodotto.
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11577/3507863
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? ND
social impact