Mission-Aware Attestation Envelopes for Time-Critical Autonomous Action: A Hardware-in-the-Loop V2I Study
Organizations: International Hellenic University, Greece · Clone Systems, Cyprus · University of Macedonia, Greece
Abstract
An autonomous system that asks for a privileged physical action is usually gated on integrity evidence: a platform proves what it is running, and the request is granted or refused on that basis. Such a gate is normally treated as a predicate, yet the evidence behind it has an age, the decision that consumes it has a latency, and the physical system that waits for it has a deadline. We formulate mission-aware attestation as a runtime assurance contract that holds only when integrity is valid, the evidence is fresh enough, and the decision completes inside a budget derived from the current physical state. The contract yields four operational outcomes where a binary gate yields two, separating a refusal caused by tampering from one caused by stale evidence and from one caused by a late decision. We evaluate it on a hardware-in-the-loop vehicle-to-infrastructure platform: a driving simulator supplies the physical state and the authorisation deadline, while a microcontroller on-board unit and a TPM-backed roadside unit running Linux integrity measurement supply the assurance evidence. A security-blind model admits the whole operating space and a hardware-informed one three quarters of it, and every point it refuses fails the freshness margin rather than the response margin. Moving the attestation interval across the range the verifier permits costs about as much as a fivefold scaling of the latency distribution, and the interval is directly configurable, which makes it the immediately actionable deployment parameter. If the freshness bound does not exceed the authorisation budget, every late decision is also stale and lateness becomes unobservable, so the attestation interval and the freshness bound cannot be chosen from security requirements alone.
Figures & tables
| Symbol | Meaning |
|---|---|
| , , , | requester, decision point, evidence source, plant |
| , | time the request is issued, time the decision is taken |
| time the integrity evidence used by that decision was generated | |
| plant state at the request: distance to actuation, speed | |
| attestation interval | |
| verifier liveness threshold: longest tolerated gap between quotes |
| Outcome | Violated | Example condition |
|---|---|---|
| PERMIT | nothing | normal operation |
| DENY-INTEGRITY | rogue on-board unit; modified decision-point host | |
| DENY-STALE | periodic re-attestation, request late in the interval | |
| DENY-LATE | contention exhausting the budget |
| Configuration | mean | median | p95 | max obs. | |
|---|---|---|---|---|---|
| End-to-end, no contention | 50 | 422.8 | 419.8 | 559.2 | 624.2 |
| Attestation component | 50 | 33.3 | 20.0 | 93.9 | 147.3 |
| quantity | loaded min | exceeds | verdict | |
|---|---|---|---|---|
| End-to-end | 438.67 ms | 31 / 50 | supported | |
| Attestation component | 14.40 ms | 0 1 / 50 | no evidence |
| configuration | slope | 50 km/h | 80 km/h | 110 km/h |
|---|---|---|---|---|
| , s | 0.56 s | 7.8 m | 12.4 m | 17.1 m |
| , s | 1.56 s | 21.7 m | 34.6 m | 47.6 m |
| , s | 2.56 s | 35.5 m | 56.9 m | 78.2 m |
| , s | 10.56 s | 146.7 m | 234.6 m | 322.6 m |
| interval | feasible | gap | infeas. | note |
|---|---|---|---|---|
| 0.5 s | 54 / 60 | 10.0% | 6 | below the configured period |
| 1.0 s | 52 / 60 | 13.3% | 8 | below the configured period |
| 2.0 s | 46 / 60 | 23.3% | 14 | configured period |
| 5.0 s | 35 / 60 | 41.7% | 25 | between the two |
| 10.0 s | 24 / 60 | 60.0% | 36 | maximum the verifier tolerates |
| infeasible | |||
|---|---|---|---|
| factor | feasible | age-only | age latency |
| 1.00 | 46 / 60 | 9 | 5 |
| 1.27 | 44 / 60 | 9 | 7 |
| 1.50 | 43 / 60 | 9 | 8 |
| 2.00 | 41 / 60 | 9 | 10 |
| 3.00 | 35 / 60 | 9 | 16 |
| Scenario | Binary gate | Contract | Source |
|---|---|---|---|
| Genuine requester, clean host | permit | PERMIT | executed |
| Rogue on-board unit | deny | DENY-INTEGRITY | executed |
| Modified decision-point host | deny | DENY-INTEGRITY | executed |
| Valid but aged evidence | permit | DENY-STALE | Table 6 |