Physical Address
304 North Cardinal St.
Dorchester Center, MA 02124
Physical Address
304 North Cardinal St.
Dorchester Center, MA 02124
The SAE J3138-2022 standard addresses a critical challenge in modern vehicle diagnostics: ensuring safe operation when an external device connected to the diagnostic link connector (DLC) may be compromised. This recommended practice provides a framework for allowing legitimate diagnostic and maintenance functions while blocking potentially harmful intrusive actions. 🛠️
The standard applies to passenger cars and light-, medium-, and heavy-duty trucks that provide a diagnostic connector conforming to SAE J1962 and J1979. Its primary goal is to improve security without significantly impacting the ability of franchised dealer or independent aftermarket external test tools to perform legitimate diagnosis and maintenance.
A central concept in J3138 is the vehicle safe state. The vehicle must determine a safe condition (e.g., parked, engine off, low speed) before allowing intrusive diagnostic services. Diagnostic services themselves are categorized based on risk:
| Service Type | Examples | Allowed Only in Safe State? |
|---|---|---|
| Non-Intrusive | Read DTCs, monitor live data | Yes, always permitted |
| Intrusive | ECU programming, actuator tests | Only when vehicle is in safe state |
This categorization ensures that even if an external tool is compromised, the vehicle is not put at risk.
Engineering Design Insight: When designing diagnostic systems, engineers should implement a clear model for determining the vehicle safe state based on parameters such as speed, ignition, and parking brake status. Services should be classified as intrusive or non-intrusive early in the design phase, and only non-intrusive services should be allowed when the vehicle is not in a safe state.
J3138 provides tailored recommendations for three network architectures: no gateway, partial function gateway, and full gateway or multiple gateways. The security policies must be enforced consistently across all connected networks.