Haz Posted April 14 Report Share Posted April 14 (edited) SSM 53638 - 2023-2025 Various Vehicles - Trusted Real-Time Operation Network (TRON) Module Authentication DTCs After Module Replacement - Workshop Manual Update After replacement of any TRON module, the gateway module (GWM) and the TRON capable modules can set diagnostic trouble codes (DTCs) U211A, U211B, U211C, U3034, U3035, U3036, U35D9, U35DA and/or U35DB if the secret authentication security keys are not aligned between the modules, a loss of communication is occurring between modules and/or a module is not responding. This may be a result of missing the new module secret authentication security key obtained when running the Ford Diagnosis and Repair System (FDRS) "Trusted Real-Time Operation Network (TRON) Module Authentication" procedure after replacement. When replacing a TRON capable module, run the FDRS "Trusted Real-Time Operation Network (TRON) Module Authentication" procedure to distribute a new set of secret authentication security keys to all TRON-capable modules. Using the specific VIN, refer to Workshop Manual (WSM), Section 418-00 and 418-01 for updated DTCs, applicable TRON module listings and pinpoint tests. From the 2024-2025 Nautilus Workshop Manual... Placing your device cursor over underlined acronyms may yield popup full-words descriptions of the acronyms. Trusted Real-Time Operation Network (TRON) - System Operation and Component Description System Operation Overview Trusted Real-Time Operation Network (TRON) is a cyber security protocol applied to certain modules connected to the vehicle communication networks. This protocol provides a digital message authentication for data being communicated between modules on the networks, to make sure the data received by a module is the data sent by the sending module and has not been interrupted or tampered with by an outside source. System Diagram Trusted Real-Time Operation Network (TRON) Trusted Real-Time Operation Network (TRON) secret data authentication security keys are applied to modules with motion control, safety critical and security critical functions. Not all modules on the vehicle will have data authentication security keys applied. The secret authentication security keys provide a digital data handshake between the sending module and the receiving module to confirm the data received has been sent by the expected source. The initial secret authentication security key distribution takes place at the end of the production line, prior to the vehicle release to the dealer. The key update mechanism includes a key management client and key management server modules. The key management client is the GWM and the key management server modules are the modules participating in the TRON function. The GWM generates the keys and distributes them to itself and the server modules, one module at a time sequentially. The keys are processed by the receiving modules and stored in their memory and a backup of the distributed keys is stored in the TCU . After the vehicle's TRON has been successfully configured, the production line end of line tool sends a copy to the Ford backend data systems for storage. If a TRON-capable module is replaced, the module secret authentication security key must be applied to the new module so it functions on the network when installed. When replacing a TRON capable module, run the FDRS Trusted Real-Time Operation Network (TRON) Module Authentication Diagnosis and Repair procedure to distribute a new set of secret authentication security keys to all TRON-capable modules. The GWM and the TRON capable modules can set Diagnostic Trouble Codes (DTCs) if the keys are misaligned between modules, there are communication issues on the vehicle network or a module is not responding. Component Description Gateway Module The GWM acts as the key management client for the Trusted Real-Time Operation Network (TRON) system for creating, monitoring and distributing the secret keys to the participating modules. Telematic Control Unit Module The TCU stores a backup of all Trusted Real-Time Operation Network (TRON) distributed keys. Edited 10 hours ago by Haz 1 1 Quote Link to comment Share on other sites More sharing options...
Haz Posted 10 hours ago Author Report Share Posted 10 hours ago Ford has re-issued its earlier SSM 53638 message as SSM 53759, presumably to keep the topic front-of-mind for Professional Technicians at dealerships and OASIS-subscribing independent repair facilities... SSM 53759 2023-2025 Various Vehicles - Trusted Real-Time Operation Network (TRON) Module Authentication DTCs After Module Replacement - Workshop Manual Update After replacement of any TRON module, the gateway module (GWM) and the TRON capable modules can set diagnostic trouble codes (DTCs) U211A, U211B, U211C, U3034, U3035, U3036, U35D9, U35DA and/or U35DB if the secret authentication security keys are not aligned between the modules, a loss of communication is occurring between modules and/or a module is not responding. This may be a result of missing the new module secret authentication security key obtained when running the Ford Diagnosis and Repair System (FDRS) "Trusted Real-Time Operation Network (TRON) Module Authentication" procedure after replacement. When replacing a TRON capable module, run the FDRS "Trusted Real-Time Operation Network (TRON) Module Authentication" procedure in the GWM tool box, not in the toolbox of the module with the DTC's, to distribute a new set of secret authentication security keys to all TRON-capable modules. Using the specific vehicle identification number (VIN), refer to Workshop Manual (WSM), Section 418-00 and 418-01 for updated DTCs, applicable TRON module listings and pinpoint tests. This creates a convenient opportunity to supplement this discussion with the previously released TRON-related Diagnostic Trouble Code (DTC) chart and Symptom chart from the 2024-2025 Nautilus Workshop Manuals... Placing your device cursor over underlined Module acronyms may yield full-words descriptions of the acronyms. Trusted Real-Time Operation Network (TRON) Diagnostic Trouble Code (DTC) Chart Diagnostics in this manual assume a certain skill level and knowledge of Ford-specific diagnostic practices. Module DTC Description Action ABS U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F ABS U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J ABS U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B ABS U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G ABS U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G ABS U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I BCM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F BCM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J BCM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B BCM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G BCM U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G BCM U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I DCME U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F DCME U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J DCME U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B DCME U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G DCME U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G DCME U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I DCMF U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F DCMF U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J DCMF U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B DCMF U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G DCMF U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G DCMF U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I DCMG U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F DCMG U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J DCMG U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B DCMG U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G DCMG U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G DCMG U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I DCMH U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F DCMH U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J DCMH U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B DCMH U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G DCMH U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G DCMH U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I DDM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F DDM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J DDM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B DDM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G DDM U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G DDM U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I GWM U211A:46 Trusted Real-Time Operational Network (TRON) Configuration: Calibration/Parameter Memory Failure GO to Pinpoint Test K GWM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F GWM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J GWM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B GWM U211B:44 Control Module Message Authentication: Data Memory Failure GO to Pinpoint Test A GWM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G GWM U211C:04 Gateway Module Message Authentication: System Internal Failure GO to Pinpoint Test H GWM U211C:05 Gateway Module Message Authentication: System Programming Failure GO to Pinpoint Test F GWM U211C:54 Gateway Module Message Authentication: Missing Calibration GO to Pinpoint Test D GWM U211C:61 Gateway Module Message Authentication: Signal Calculation Failure GO to Pinpoint Test E GWM U211C:81 Gateway Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test C GWM U211C:85 Gateway Module Message Authentication: Signal Above Allowable Range GO to Pinpoint Test N HCM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F HCM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J HCM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B HCM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G HCM U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G HCM U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I IPMA U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F IPMA U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J IPMA U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B IPMA U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G IPMA U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G IPMA U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I PCM U3034:00 Communication Authentication Key/Certificate Missing/Invalid: No Sub Type Information GO to Pinpoint Test G PCM U3035:00 Communication Authentication Signal Invalid Data: No Sub Type Information GO to Pinpoint Test J PCM U3036:00 Communication Authentication Signal Performance: No Sub Type Information GO to Pinpoint Test I PCM U35D9:00 Communication Authentication Attempts Exceeded Limit: No Sub Type Information GO to Pinpoint Test G PCM U35DA:00 Communication Authentication Key Programming Failure: No Sub Type Information GO to Pinpoint Test F PCM U35DB:00 Communication Authentication Key Supervision Software Failure: No Sub Type Information GO to Pinpoint Test B PDM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F PDM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J PDM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B PDM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G PDM U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G PDM U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I PSCM U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F PSCM U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J PSCM U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B PSCM U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G PSCM U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G PSCM U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I RFA U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F RFA U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J RFA U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B RFA U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G RFA U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G RFA U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I SOBDMC U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F SOBDMC U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J SOBDMC U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B SOBDMC U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G SOBDMC U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G SOBDMC U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I TCU U211A:46 Trusted Real-Time Operational Network (TRON) Configuration: Calibration/Parameter Memory Failure GO to Pinpoint Test K TCU U211B:05 Control Module Message Authentication: System Programming Failure GO to Pinpoint Test F TCU U211B:08 Control Module Message Authentication: Bus Signal / Message Failure GO to Pinpoint Test J TCU U211B:43 Control Module Message Authentication: Special Memory Failure GO to Pinpoint Test B TCU U211B:51 Control Module Message Authentication: Not Programmed GO to Pinpoint Test G TCU U211B:81 Control Module Message Authentication: Invalid Serial Data Received GO to Pinpoint Test G TCU U211B:87 Control Module Message Authentication: Missing Message GO to Pinpoint Test I Symptom Chart Diagnostics in this manual assume a certain skill level and knowledge of Ford-specific diagnostic practices. Condition Actions The TRON Diagnosis And Repair Procedure Displays The GGMT Calibration Is Not Programmed GO to Pinpoint Test L The TRON Diagnosis And Repair Procedure Displays Procedure Unsuccessful Unrecoverable Key Update GO to Pinpoint Test M The TRON Diagnosis And Repair Procedure Displays Group Key Slot Counter (GKSC) Value Over Limit For Node GO to Pinpoint Test N The TRON Diagnosis And Repair Procedure Can't Connect with Ford Backend Data Source GO to Pinpoint Test O 1 Quote Link to comment Share on other sites More sharing options...
Bunky Posted 9 hours ago Report Share Posted 9 hours ago Interesting security aspects of vehicle. 1 Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.