Search NASA⌕ Search

SEARCH · Search NASA

Results for “Electric Vehicle Charging Infrastructure Security”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 19 records

The Design and Evaluation of Zero Trust Architecture for Electric Vehicle Charging Infrastructure: EVs @ Scale Series on EV Charging Station Cybersecurity

Implementing a zero trust architecture can significantly bolster the security of electric vehicle (EV) charging infrastructure. EV charging infrastructure includes numerous networked interfaces, each of which can present potential vulnerabilities. When these vulnerabilities are exploited, they can compromise the entire system, leading to severe operational and security risks. Zero trust is a security model that operates on the principle of "never trust, always verify," which helps manage the attack surface and limit the scope of any potential compromises. Fundamentally, this model ensures that no entity, whether inside or outside the network, is trusted by default. The design principles of zero trust include continuous verification, strict deny-by-default access controls, and micro-segmentation. Continuous verification ensures that every request is thoroughly checked, regardless of its origin. Strict access controls enforce the principle of least privilege, allowing users and devices only the minimum necessary access to perform their functions. Micro-segmentation involves dividing the network into smaller, isolated segments to prevent lateral movement in case of a breach. In the context of EV charging infrastructure, zero trust can be implemented through various strategies. For example, multi-factor authentication (MFA) can be required for engineers to access the management interfaces and control systems of charging stations. Real-time monitoring and analysis of network traffic can help detect and respond to anomalies. Systems that do not need to communicate with each other can be micro-segmented to enhance security. All communications should adhere to predefined policies to be permitted. Additionally, encrypting communications can protect sensitive information exchanged between chargers and management systems. This paper presents a zero trust architecture specifically designed for EV charging infrastructure. Implementing zero trust not only mitigates risks but also builds a resilient infrastructure capable of withstanding and quickly recovering from cyber threats. The architecture addresses six defined security objectives. A comprehensive test plan is developed to assess the architecture against these objectives, and the results of the evaluation are reported. This approach is essential for maintaining the reliability and integrity of EV charging services in an increasingly interconnected and vulnerable digital landscape. This is the first in a planned series of papers exploring the implementation of zero trust in EV charging infrastructure. Each paper will delve into different aspects and applications of zero trust, highlighting how various work processes and requirements can lead to distinct architectural designs. These architectures will be tailored to address specific security challenges and operational needs within the EV charging ecosystem, ensuring a robust and adaptable security framework.

33 ADVANCED PROPULSION SYSTEMS↗

Improving Resiliency for Electric Vehicle Charging

Electric vehicles are seeing growing adoption. However, challenges with range anxiety persists. While charging infrastructure is anticipated to expand, EV charger systems have not been as robust to challenges. This paper discusses potential outage conditions associated with EV charging and presents new technology in development to improve EV charging resilience.

Electric vehicle charging, electric vehicle chargi↗

Electric Vehicle Infrastructure Consequence Assessment

With consumers’ growing interest in electric vehicles, extreme fast charging stations are poised to provide high-power charging to rapidly recharge light-duty passenger vehicles. High-power charging requires high-level communication between vehicle and charger to govern the charging process. The coupling of power and communication increases the potential scale of cyberattacks. Using a full Western Electricity Coordinating Council planning model, load manipulation from high-power charging infrastructure is investigated. Two cases of load manipulation are studied: (i) a discrete, widespread system event and (ii) loads modulated near the Western Interconnect’s resonant frequency. In (i) some generation trips and in (ii) oscillations are observed on the California Oregon Intertie. Neither scenario results in significant adverse effects to the grid.

33 ADVANCED PROPULSION SYSTEMS↗

Motivation and Design of the OCPP Security Service

Pacific Northwest National Laboratory is conducting in-depth research aimed at exploring how zero trust security principles can be effectively applied to electric vehicle charging infrastructure. This investigation seeks to enhance the resilience and reliability of these systems against cyber threats, ensuring secure and uninterrupted access to charging services for electric vehicle users and electric supply. Zero trust is a security concept centered on the belief that system operators should not automatically trust users or systems based on their location, whether inside or outside the organization, but instead must verify everything trying to connect to their systems before granting access. A key aspect of the project is to demonstrate and validate zero trust approaches targeted to electric vehicle (EV) charging infrastructure. It has been observed that both open-source and commercial solutions often overlook the specific protocols employed in managing EV charging stations and proceeded with a general, protocol-agnostic approach. While these strategies effectively block non-authorized routes to the charging infrastructure, they do not tackle the situations where attackers may exploit legitimate access channels, such as the inattentive operator model posited by the Idaho National Laboratory. To address this gap, this paper proposes and discusses a new security service targeted to the Open Charge Point Protocol (OCPP), which is the de facto protocol for the management of charging stations and serves a critical role in the broader adoption of electric vehicles. The design and architecture of the proposed OCPP security service are discussed in detail, outlining how it aims to safeguard charging station management system (CSMS) functions. The service is particularly important in scenarios where the charging station operator (CSO), responsible for the maintenance and operation of charging stations, and the charging network provider (CNP), which manages the charging network's accessibility and billing, are separate entities. This distinction is crucial because CSOs and CNPs often have different priorities, objectives, and operational responsibilities, which may not always align perfectly. For instance, a CSO might prioritize uptime and customer satisfaction, while a CNP might focus on maximizing revenue and network utilization. Such misalignment can create security vulnerabilities, as each entity might implement different policies and standards, potentially leaving gaps in the overall security posture.

33 ADVANCED PROPULSION SYSTEMS↗

EV SALaD 2023 Demonstration: Best Practices and Mitigations for Protecting EVSE Infrastructure

The Electric Vehicle Secure Architecture Laboratory Demonstration (EV SALaD) program is a demonstration of cybersecurity best practices for high-power electric vehicle (EV) charging infrastructure led by Idaho National Laboratory (INL), in collaboration with other DOE National Laboratories participating in the EVs at Scale Consortium.a Sandia National Laboratories (SNL) and Pacific Northwest National Laboratory (PNNL) participated in the first 2-year (FY22-23) demonstration cycle for EV SALaD. This report documents the FY23 demonstration, the second in a series of demonstrations and collaborations in deploying and operating cybersecure EV charging infrastructure. It includes a summary of improvements from the FY22 demonstration, technical analysis of the FY23 demonstration, how the research demonstrates cyber-physical and cybersecurity best practices for high-power EV charging infrastructure, and related impacts to national and energy security. For EV SALaD, the FY22 demonstration focused on the detection, ranking, and prioritization of anomalous events for high-power EV charging. The FY23 demonstration additionally included the demonstration of cybersecurity best practices, which included protection and mitigation solutions to prevent, respond, and recover from anomalous events. During the demonstrations, the multi-lab EV SALaD team conducted a Test Effect Payload (TEP)b evaluation on extreme fast charger (XFC) hardware equipped with Cerberus, a detection and response solution, to demonstrate anomaly detection and mitigation cybersecurity best practices against cyber-enabled events.

33 ADVANCED PROPULSION SYSTEMS↗

Cybersecurity Platform and Certification Framework Development for Extreme Fast Charging (XFC)-Integrated Charging Ecosystem (Final Project Report)

This report summarizes a pioneering effort in Electric Vehicle charging infrastructure ecosystem cybersecurity requirements, assessment methodologies, functional verification, as well as embodiment of the key technologies in the form of hardware and software tools being made available to the public. EPRI led a team of experts, as well as a stakeholder coalition encompassing all key actors in the EV charging infrastructure ecosystem that includes eXtreme Fast Charging (XFC) equipment (defined as 200kW or above). EV charging infrastructure in the United States is a patchwork of networks that have continued to grow organically and have been designed to serve the charging needs of the EV owners, who are their customers. In doing so, each network provider, as well as their connected entities such as the cloud Electric Vehicle Service Providers or EVSPs, utility back office, utility AMI networks, payment networks, as well as Original Equipment Manufacturer (EV manufacturer) telematics networks, have designed systems that may work well individually, but no single entity is responsible for the entire ecosystem to be secure in terms of data exchange. Furthermore, there is no uniformity in how each actor has implemented the cybersecurity requirements since no system-wide cybersecurity requirements existed prior to this project. The final project report describes the technical approach guided by the EV charging infrastructure cybersecurity working group, convened specifically for this project. The technical approach included definition of requirements at the ecosystem level, treated as a ‘system of systems’, and then passed down to individual systems (EVSE, EV, cloud EVSP, utility, and the payment networks), followed by developing the cybersecurity risk and vulnerability assessment methods, that were later applied to real-world cyber-physical systems at EPRI, ANL, and NREL laboratories, to validate both the process and the results. Finally, in a spotlight over the most vulnerable equipment, which is the EV charge station (AC or DC), the team developed a multi-layer cybersecurity implementation in the embedded domain embodied by the open-source Secure Network Interface Card (SNIC) demonstrating the various ways in which the infrastructure can be secured protecting against the identified attack surfaces. Finally, the entire process of EV infrastructure cybersecurity assessment was encapsulated in the Electric Vehicle Charging Cybersecurity Management (EVC2M) online GUI-based tool, that is expected to be released to the public. The report presents the objectives, the technical approach, the key results, and recommendations for future work.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Emulation and Adversarial Analysis of EV Charging Networks

In the effort of decarbonization and evolution of the modern electrical grid, electric vehicles (EVs) play a key part to transform the grid. However, due to the rapid adoption of EVs and the demand of the charging infrastructure required to power said EVs, risk of a cyber-attack may impose serious consequences. There is a need to analyze and protect the charging ecosystem infrastructure from cyber threats before it reaches wide-scale deployment. In an effort to secure vehicle to grid (V2G) communications, standardization is necessary for continued reliable system operation. The protocol ISO 15118 outlines controls and practices that should be implemented for secure vehicle to grid (V2G) communications. The standard is gaining momentum for American markets as the demand for EV infrastructure grows. The adoption of ISO 15118 in American markets poses several challenges: the deployment of a public key infrastructure (PKI) as outlined within the standard, interoperability of charging different EVs with chargers from different manufactures using the PKI, and scaling the ecosystem to meet the demand while managing risks. This project was created to understand potential cyber and scaling challenges of PKI for EV infrastructure through utilizing a series of emulated components mapping to what exists in the EV ecosystem today, and the components of the PKI that are under development. The key nodes within the emulation that are under development are: electric vehicle (EV), electric vehicle supply equipment (EVSE), charge network operator (CNO), certificate authority (CA), and online certificate status protocol (OCSP) that must all interact using secure and trusted communications. With these emulated components and utilizing orchestration methods to rapidly deploy and scale the components, the ability to analyze risks of the ecosystem and address gaps before the PKI ecosystem is fully deployed to production should yield a more robust and mature production charging infrastructure. Our approach will use a modular architecture of virtual machines within an orchestration platform and will target scales of 100s, 1000s, and 10,000s of entities interacting. The core research questions trying to be answered with this scope of work are: what are the impacts of a rogue CA, what are the risks of certificate revocation list (CRL) management, what is the value of OCSP stapling, what components are vulnerable to DOS attacks, and what test effective payloads may impact the components.

charging ecosystem↗

CyberMESA: Evaluation Procedures and Metrics for Charging Infrastructure Cybersecurity

A report detailing the cybersecurity evaluation and assessment procedures for EV charging infrastructure. This report is authored by three national lab contributors. INL, PNNL, NRL. The grid integration of Electric Vehicle Charging Infrastructure (EVCI) is a large and complex system of systems (SoS) made up of components from many manufacturers and integrated by various companies responsible for their operation and maintenance. This complexity makes it challenging to implement security standards like IEC 62443 across the entire infrastructure. This document aims to aid in the vulnerability assessments of individual devices, such as Electric Vehicle Supply Equipment (EVSE), to support vendors in adopting and implementing security standards such as UL 2900, NIST SP 800-53 and Common Criteria (CC) (ISO/IEC 15408). This document serves as a guide to help evaluate the cybersecurity posture of EVCI assets. It aims to provide a consistent method for evaluating EVCI, enabling cybersecurity research teams to systematically test a wide range of electric vehicle (EV) assets. The target audiences include cybersecurity research teams, vendor development teams, automotive OEMs, and third-party evaluators.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Electric Vehicles at Scale (EVs@Scale) Laboratory Consortium

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Lab Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. This network will be critical to support tens of millions of light-, medium-, and heavy-duty EVs on American roads by 2030. The EVs@Scale Lab Consortium brings together national laboratories and key stakeholders to conduct infrastructure research and development (R&D) that advances innovations in, and sets unified standards for, high-power and wireless charging. The effort will also develop technologies to integrate vehicle charging with the power grid, and develop cybersecurity measures to protect drivers, vehicles, equipment, and the grid.

ADVANCED PROPULSION SYSTEMS,POWER TRANSMISSION AND↗

EVs@Scale Lab Consortium Semi-Annual Stakeholder Meeting

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Lab Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. This network will be critical to support tens of millions of light-, medium-, and heavy-duty EVs on American roads by 2030. The EVs@Scale Lab Consortium brings together national laboratories and key stakeholders to conduct infrastructure research and development (R&D) that advances innovations in, and sets unified standards for, high-power and wireless charging. The effort will also develop technologies to integrate vehicle charging with the power grid, and develop cybersecurity measures to protect drivers, vehicles, equipment, and the grid. The first hybrid EVs@Scale Lab Consortium Semiannual Stakeholder Meeting was held at ANL on September 27-28, 2023, to identify research, development, and deployment needs to accelerate technology development for electric vehicles at scale and explore opportunities for collaboration across government, academia, and industry.

advanced charging and grid interface technologies↗

2024 Electric Vehicles at Scale Semiannual Stakeholder Meeting

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Lab Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. This network will be critical to support tens of millions of light-, medium-, and heavy-duty EVs on American roads by 2030. The EVs@Scale Lab Consortium brings together national laboratories and key stakeholders to conduct infrastructure research and development (R&D) that advances innovations in, and sets unified standards for, high-power and wireless charging. The effort will also develop technologies to integrate vehicle charging with the power grid, and develop cybersecurity measures to protect drivers, vehicles, equipment, and the grid. The first hybrid EVs@Scale Lab Consortium Semiannual Stakeholder Meeting was held at ANL on September 27-28, 2023, to identify research, development, and deployment needs to accelerate technology development for electric vehicles at scale and explore opportunities for collaboration across government, academia, and industry.

advanced charging and grid interface technologies↗

EVs@Scale Deep Dive - SCM/VGI (Day 2: SCM/VGI Demonstration)

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Laboratory Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. Critical to this effort is an understanding of the potential grid impacts of EV charging and possible smart charge management (SCM) or vehicle-grid integration (VGI) capabilities that could mitigate these impacts. The EVs@Scale SCM/VGI Pillar is analyzing the impacts of EV charging and developing and demonstrating the capabilities of both SCM and VGI with many different vehicle use cases and grid scenarios. This Deep Dive Discussion from year 1 of the project encompasses the progress and future plans for the demonstration components of the FUSE (Flexible charging to Unify the grid and transportation Sectors for Evs at scale) project.

ADVANCED PROPULSION SYSTEMS,POWER TRANSMISSION AND↗

Electric Vehicles at Scale (EVs@Scale) Laboratory Consortium Deep-Dive Technical Meeting: May 18, 2023

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Laboratory Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. Critical to this effort is an understanding of the potential grid impacts of EV charging and possible smart charge management (SCM) or vehicle-grid integration (VGI) capabilities that could mitigate these impacts. The EVs@Scale SCM/VGI Pillar is analyzing the impacts of EV charging and developing and demonstrating the capabilities of both SCM and VGI with many different vehicle use cases and grid scenarios. This Deep Dive Discussion from year 2 of the project encompasses the progress and future plans for the analysis components of the FUSE (Flexible charging to Unify the grid and transportation Sectors for Evs at scale) project.

ADVANCED PROPULSION SYSTEMS,ENERGY PLANNING, POLIC↗

EVs@Scale Deep Dive - SCM/VGI (Day 1: SCM/VGI Analysis)

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Laboratory Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. Critical to this effort is an understanding of the potential grid impacts of EV charging and possible smart charge management (SCM) or vehicle-grid integration (VGI) capabilities that could mitigate these impacts. The EVs@Scale SCM/VGI Pillar is analyzing the impacts of EV charging and developing and demonstrating the capabilities of both SCM and VGI with many different vehicle use cases and grid scenarios. This Deep Dive Discussion from year 1 of the project encompasses the progress and future plans for the analysis components of the FUSE (Flexible charging to Unify the grid and transportation Sectors for Evs at scale) project.

ADVANCED PROPULSION SYSTEMS↗

Smart Charge Management and Vehicle Grid Integration Deep Dive

The U.S. Department of Energy (DOE) Electric Vehicles at Scale Laboratory Consortium (EVs@Scale Lab Consortium) is accelerating research to support the establishment of a secure and scalable national network of charging infrastructure. Critical to this effort is an understanding of the potential grid impacts of EV charging and possible smart charge management (SCM) or vehicle-grid integration (VGI) capabilities that could mitigate these impacts. The EVs@Scale SCM/VGI Pillar is analyzing the impacts of EV charging and developing and demonstrating the capabilities of both SCM and VGI with many different vehicle use cases and grid scenarios. This deep dive discussion of the project encompasses the progress and future plans for the analysis components of the FUSE (Flexible charging to Unify the grid and transportation Sectors for Evs at scale) project.

ADVANCED PROPULSION SYSTEMS↗

Inventory of Public Key Cryptography in US Electric Vehicle Charging

Electric vehicles (EVs) and charging infrastructure are networked systems, which employ high-level communications in support of charging and grid service decisions. Public key cryptography (PKC) underlies much of the security and privacy protections of the information exchange. We are entering a new epoch where quantum computing threats must be seriously considered. A sufficiently large quantum computer, so named Cryptographically Relevant Quantum Computer (QRQC), will be able to perform the mathematical operations to efficiently attack the underpinnings of traditional PKC, thus jeopardizing the digital foundations for trust, communications security, and data security. Estimates suggest a QRQC can break public key encryption and digital signatures in the manner of tens to hundreds of hours, compared to traditional computing that would demand more than 10 18 years in a brute force-style attack. A consensus belief of quantum theorists, quantum experimenters, and cryptographers suggest that the quantum threat will be likely realized in the next twenty years. To address the threat, post-quantum cryptography, which is cryptosystems that are designed to be secure against both traditional and quantum computing threats, must be adopted. Migration from traditional PKC to quantum-resilient cryptography is a global undertaking and likely represents the largest transition in computing history. The nascent state of EV public key infrastructure, combined with limited adoption of the vehicle secure charging features, presents an opportunity to establish a preference for quantum-resistant cryptography as a step on the migration path. Delays will stunt the efforts as rapidly accelerating EVs sales and huge infrastructure investments will create large growing bases of long-lived vehicles and infrastructure. Migration preparations can commence while NIST continues the process to standardize post-quantum cryptography (PQC), which are quantum-resilient algorithms designed to be secure against traditional and quantum computing threats. The first step in preparing EV charging is to identify the presence of traditional public key cryptography algorithms and applications. With this objective in mind, this report is intended to advise the vehicle manufacturers, charging station manufacturers, charging station operators, charge network providers and other EV charging stakeholders with information on traditional PKC application and the potential risks when PKC becomes insecure. This report, the first in a series of reports discussing the topics existing at the confluence of post-quantum cryptography adoption and EV charging, identifies traditional public key applications employed and identifies potential consequences of leaving EV charging infrastructure vulnerable to quantum computing. The focus remains squarely on the of EV charging and infrastructure with respect to PKC and is believed by the authors to complement the NIST SP 1800-38 Migration to Post-Quantum Cryptography. While the report is centered on infrastructure, there are implications to vehicles.

33 ADVANCED PROPULSION SYSTEMS↗

Physical Safety and Security at Electric Vehicle Charging Sites

This help sheet provides an overview of physical safety and security design elements for public EV charging stations and general best practices that can be considered for the safety and comfort of charging station customers.

ADVANCED PROPULSION SYSTEMS,ENERGY PLANNING, POLIC↗