top of page

MoRTH Proposes Phased Automotive Cybersecurity Rules Till 2029

  • Writer: Rolling Right Services
    Rolling Right Services
  • Jun 27
  • 3 min read

India’s Ministry of Road Transport and Highways (MoRTH) has proposed a phased implementation of mandatory automotive cybersecurity and software update regulations under AIS-189, marking a significant step towards improving the security of connected and software-driven vehicles. The draft notification introduces two new provisions under the Central Motor Vehicles Rules: Rule 125-T for Cyber Security Management Systems (CSMS) and Rule 125-U for Software Update Management Systems (SUMS).


The proposal covers vehicles equipped with electronic control units (ECUs), which manage functions such as engine performance, braking, battery systems and advanced driver assistance features. It aims to ensure that manufacturers identify cybersecurity risks, protect vehicles from cyber threats and maintain secure software update processes throughout a vehicle’s lifecycle.


The rollout has been planned in phases. New Level 3 and above automated vehicles would need to comply from October 1, 2026, followed by existing models from April 1, 2027. New OTA (Over-the-Air) enabled vehicles with OTA-capable ECUs, excluding infotainment systems and tracking devices, are proposed to comply from April 1, 2028, while existing models would follow from October 1, 2028. By October 1, 2029, all OTA-enabled vehicles and vehicles capable of receiving software updates are proposed to come under the framework.


The draft aligns India’s regulatory approach with internationally recognised automotive cybersecurity practices, including the principles of UN Regulations R155 and R156. These standards require manufacturers to establish systems for managing cybersecurity risks and controlling software updates.


For consumers, the proposed rules are expected to improve vehicle security, software reliability and protection against cyber threats. For manufacturers and suppliers, the regulations will require stronger cybersecurity governance, secure software development and enhanced compliance processes. MoRTH has invited stakeholder comments before the regulations are finalised, meaning the proposed requirements may be revised following the consultation process.



MoRTH 2029ರವರೆಗೆ ಹಂತ ಹಂತವಾಗಿ ವಾಹನ ಸೈಬರ್ ಭದ್ರತಾ ನಿಯಮಗಳನ್ನು ಜಾರಿಗೆ ತರಲು ಪ್ರಸ್ತಾಪ


ಭಾರತದ ರಸ್ತೆ ಸಾರಿಗೆ ಮತ್ತು ಹೆದ್ದಾರಿ ಸಚಿವಾಲಯ (MoRTH) ವಾಹನಗಳ ಸೈಬರ್ ಭದ್ರತೆ ಹಾಗೂ ಸಾಫ್ಟ್‌ವೇರ್ ಅಪ್‌ಡೇಟ್‌ಗಳಿಗೆ ಸಂಬಂಧಿಸಿದ ಕಡ್ಡಾಯ ನಿಯಮಗಳನ್ನು AIS-189 ಅಡಿಯಲ್ಲಿ ಹಂತ ಹಂತವಾಗಿ ಜಾರಿಗೊಳಿಸಲು ಪ್ರಸ್ತಾವಿಸಿದೆ. ಸಂಪರ್ಕಿತ (Connected) ಹಾಗೂ ಸಾಫ್ಟ್‌ವೇರ್ ಆಧಾರಿತ ವಾಹನಗಳ ಭದ್ರತೆಯನ್ನು ಮತ್ತಷ್ಟು ಬಲಪಡಿಸುವ ಉದ್ದೇಶದಿಂದ ಈ ಕರಡು ಅಧಿಸೂಚನೆಯನ್ನು ಪ್ರಕಟಿಸಲಾಗಿದೆ. ಇದರಡಿ ಕೇಂದ್ರ ಮೋಟಾರು ವಾಹನ ನಿಯಮಗಳಲ್ಲಿ ಎರಡು ಹೊಸ ನಿಯಮಗಳನ್ನು ಸೇರಿಸಲು ಪ್ರಸ್ತಾಪಿಸಲಾಗಿದೆ—ರೂಲ್ 125-T, ಇದು ಸೈಬರ್ ಸೆಕ್ಯುರಿಟಿ ಮ್ಯಾನೇಜ್‌ಮೆಂಟ್ ಸಿಸ್ಟಮ್ (CSMS) ಗೆ ಸಂಬಂಧಿಸಿದ್ದು, ಹಾಗೂ ರೂಲ್ 125-U, ಇದು ಸಾಫ್ಟ್‌ವೇರ್ ಅಪ್‌ಡೇಟ್ ಮ್ಯಾನೇಜ್‌ಮೆಂಟ್ ಸಿಸ್ಟಮ್ (SUMS) ಗೆ ಸಂಬಂಧಿಸಿದೆ.


ಈ ಪ್ರಸ್ತಾವನೆ ಎಲೆಕ್ಟ್ರಾನಿಕ್ ಕಂಟ್ರೋಲ್ ಯೂನಿಟ್‌ಗಳು (ECUs) ಹೊಂದಿರುವ ವಾಹನಗಳಿಗೆ ಅನ್ವಯವಾಗುತ್ತದೆ. ಇವು ಎಂಜಿನ್ ಕಾರ್ಯಕ್ಷಮತೆ, ಬ್ರೇಕಿಂಗ್ ವ್ಯವಸ್ಥೆ, ಬ್ಯಾಟರಿ ನಿರ್ವಹಣೆ ಹಾಗೂ ಅಡ್ವಾನ್ಸ್‌ಡ್ ಡ್ರೈವರ್ ಅಸಿಸ್ಟೆನ್ಸ್ ಸಿಸ್ಟಮ್ (ADAS) ಸೇರಿದಂತೆ ಹಲವು ಪ್ರಮುಖ ಕಾರ್ಯಗಳನ್ನು ನಿಯಂತ್ರಿಸುತ್ತವೆ. ವಾಹನ ತಯಾರಕರು ಸೈಬರ್ ಅಪಾಯಗಳನ್ನು ಗುರುತಿಸಿ, ವಾಹನಗಳನ್ನು ಸೈಬರ್ ದಾಳಿಗಳಿಂದ ರಕ್ಷಿಸಿ ಹಾಗೂ ವಾಹನದ ಸಂಪೂರ್ಣ ಜೀವನಚಕ್ರದಲ್ಲಿ ಸುರಕ್ಷಿತ ಸಾಫ್ಟ್‌ವೇರ್ ಅಪ್‌ಡೇಟ್ ವ್ಯವಸ್ಥೆಯನ್ನು ನಿರ್ವಹಿಸುವುದು ಇದರ ಪ್ರಮುಖ ಉದ್ದೇಶವಾಗಿದೆ.


ಈ ನಿಯಮಗಳನ್ನು ಹಂತ ಹಂತವಾಗಿ ಜಾರಿಗೊಳಿಸಲು ಯೋಜಿಸಲಾಗಿದೆ. ಲೆವೆಲ್-3 ಮತ್ತು ಅದಕ್ಕಿಂತ ಮೇಲಿನ ಸ್ವಯಂಚಾಲಿತ (Automated) ಹೊಸ ವಾಹನಗಳು 2026ರ ಅಕ್ಟೋಬರ್ 1ರಿಂದ, ಈಗಾಗಲೇ ಉತ್ಪಾದನೆಯಲ್ಲಿರುವ ಮಾದರಿಗಳು 2027ರ ಏಪ್ರಿಲ್ 1ರಿಂದ ನಿಯಮ ಪಾಲಿಸಬೇಕು. OTA (Over-the-Air) ಸೌಲಭ್ಯ ಹೊಂದಿರುವ ಹೊಸ ವಾಹನಗಳು, ಇನ್ಫೋಟೈನ್‌ಮೆಂಟ್ ವ್ಯವಸ್ಥೆ ಮತ್ತು ಟ್ರ್ಯಾಕಿಂಗ್ ಸಾಧನಗಳನ್ನು ಹೊರತುಪಡಿಸಿ, 2028ರ ಏಪ್ರಿಲ್ 1ರಿಂದ, ಈಗಿರುವ ಮಾದರಿಗಳು 2028ರ ಅಕ್ಟೋಬರ್ 1ರಿಂದ ನಿಯಮಗಳಿಗೆ ಒಳಪಡಲಿವೆ. 2029ರ ಅಕ್ಟೋಬರ್ 1ರೊಳಗೆ, ಎಲ್ಲಾ OTA ಸೌಲಭ್ಯ ಹೊಂದಿರುವ ಹಾಗೂ ಸಾಫ್ಟ್‌ವೇರ್ ಅಪ್‌ಡೇಟ್ ಮಾಡಬಹುದಾದ ವಾಹನಗಳು ಈ ನಿಯಮಗಳ ವ್ಯಾಪ್ತಿಗೆ ಬರಲಿವೆ.


ಈ ಕರಡು ನಿಯಮಗಳು ಭಾರತದ ವಾಹನ ಸೈಬರ್ ಭದ್ರತಾ ವ್ಯವಸ್ಥೆಯನ್ನು UN Regulation R155 ಮತ್ತು R156 ಸೇರಿದಂತೆ ಅಂತರರಾಷ್ಟ್ರೀಯ ಮಾನದಂಡಗಳಿಗೆ ಹೊಂದಾಣಿಕೆ ಮಾಡಲಿವೆ. ಈ ಮಾನದಂಡಗಳ ಪ್ರಕಾರ ವಾಹನ ತಯಾರಕರು ಸೈಬರ್ ಭದ್ರತಾ ಅಪಾಯಗಳನ್ನು ನಿರ್ವಹಿಸುವ ಹಾಗೂ ಸುರಕ್ಷಿತ ಸಾಫ್ಟ್‌ವೇರ್ ಅಪ್‌ಡೇಟ್‌ಗಳನ್ನು ನಿಯಂತ್ರಿಸುವ ವ್ಯವಸ್ಥೆಯನ್ನು ಕಡ್ಡಾಯವಾಗಿ ಹೊಂದಿರಬೇಕು.


ಗ್ರಾಹಕರಿಗೆ ಈ ನಿಯಮಗಳು ವಾಹನಗಳ ಸೈಬರ್ ಭದ್ರತೆ, ಸಾಫ್ಟ್‌ವೇರ್ ವಿಶ್ವಾಸಾರ್ಹತೆ ಹಾಗೂ ಸೈಬರ್ ದಾಳಿಗಳ ವಿರುದ್ಧ ಉತ್ತಮ ರಕ್ಷಣೆಯನ್ನು ಒದಗಿಸುವ ನಿರೀಕ್ಷೆಯಿದೆ. ವಾಹನ ತಯಾರಕರು ಮತ್ತು ಪೂರೈಕೆದಾರರಿಗೆ ಸೈಬರ್ ಭದ್ರತಾ ಆಡಳಿತ, ಸುರಕ್ಷಿತ ಸಾಫ್ಟ್‌ವೇರ್ ಅಭಿವೃದ್ಧಿ ಹಾಗೂ ನಿಯಮಾನುಸರಣೆ ಪ್ರಕ್ರಿಯೆಗಳನ್ನು ಇನ್ನಷ್ಟು ಬಲಪಡಿಸುವ ಅಗತ್ಯ ಉಂಟಾಗಲಿದೆ. ಅಂತಿಮ ನಿಯಮಗಳನ್ನು ಪ್ರಕಟಿಸುವ ಮೊದಲು MoRTH ಸಾರ್ವಜನಿಕರು ಹಾಗೂ ಸಂಬಂಧಿತ ವಲಯಗಳ ಅಭಿಪ್ರಾಯಗಳನ್ನು ಆಹ್ವಾನಿಸಿದ್ದು, ಆ ಸಲಹೆಗಳ ಆಧಾರದ ಮೇಲೆ ಕರಡು ನಿಯಮಗಳಲ್ಲಿ ಬದಲಾವಣೆಗಳಾಗುವ ಸಾಧ್ಯತೆಯಿದೆ.


Join us on the WhatsApp Community for automotive updates.

Comments


Come visit us!

AND DRIVE AWAY WITH A TRUST!

NH66, Outdoor Grand Bay, Kallapu, Mangalore, Karnataka 575017

8970000598
8970000796
8970000976

  • Grey Facebook Icon
  • Instagram

© 2021 by Rolling Right Services.

bottom of page