SEA: A Secure and Efficient Authentication and Authorization Architecture for IoT-Based Healthcare Using Smart Gateways

被引:157
|
作者
Moosavi, Sanaz Rahimi [1 ]
Tuan Nguyen Gia [1 ]
Rahmani, Amir-Mohammad [1 ,2 ]
Nigussie, Ethiopia [1 ]
Virtanen, Seppo [1 ]
Isoaho, Jouni [1 ]
Tenhunen, Hannu [1 ,2 ]
机构
[1] Univ Turku, Dept Informat Technol, Turku, Finland
[2] Royal Inst Technol, Dept Elect Syst, Stockholm, Sweden
来源
6TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT-2015), THE 5TH INTERNATIONAL CONFERENCE ON SUSTAINABLE ENERGY INFORMATION TECHNOLOGY (SEIT-2015) | 2015年 / 52卷
关键词
Internet of Things; Healthcare; Smart Home/Hospital; Smart Gateway; Security; Authentication; Authorization;
D O I
10.1016/j.procs.2015.05.013
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In this paper, a secure and efficient authentication and authorization architecture for IoT-based healthcare is developed. Security and privacy of patients' medical data are crucial for the acceptance and ubiquitous use of IoT in healthcare. Secure authentication and authorization of a remote healthcare professional is the main focus of this work. Due to resource constraints of medical sensors, it is infeasible to utilize conventional cryptography in IoT-based healthcare. In addition, gateways in existing IoTs focus only on trivial tasks without alleviating the authentication and authorization challenges. In the presented architecture, authentication and authorization of a remote end-user is done by distributed smart e-health gateways to unburden the medical sensors from performing these tasks. The proposed architecture relies on the certificate-based DTLS handshake protocol as it is the main IP security solution for IoT. The proposed authentication and authorization architecture is tested by developing a prototype IoT-based healthcare system. The prototype is built of a Pandaboard, a TI SmartRFO6 board and WiSMotes. The CC2538 module integrated into the TI board acts as a smart gateway and the WisMotes act as medical sensor nodes. The proposed architecture is more secure than a state-of-the-art centralized delegation-based architecture because it uses a more secure key management scheme between sensor nodes and the smart gateway. Furthermore, the impact of DoS attacks is reduced due to the distributed nature of the architecture. Our performance evaluation results show that compared to the delegation-based architecture, the proposed architecture reduces communication overhead by 26% and communication latency from the smart gateway to the end-user by 16%. (C) 2015 The Authors. Published by Elsevier B.V. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:452 / 459
页数:8
相关论文
共 50 条
  • [1] A Secure Aggregate Authentication Scheme With Efficient Revocation for IoT-Based Primary Healthcare Service
    Pan, Senshan
    Zhang, Yunxiang
    Wang, Saifei
    IEEE SYSTEMS JOURNAL, 2023, 17 (04): : 6480 - 6491
  • [2] A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
    Oh, JiHyeon
    Yu, SungJin
    Lee, JoonYoung
    Son, SeungHwan
    Kim, MyeongHyun
    Park, YoungHo
    SENSORS, 2021, 21 (04) : 1 - 24
  • [3] An efficient user authentication model for IOT-based healthcare environment
    Elngar A.A.
    International Journal of Information and Computer Security, 2019, 11 (4-5): : 431 - 446
  • [4] EPPDA: An Efficient and Privacy-Preserving Data Aggregation Scheme with Authentication and Authorization for IoT-Based Healthcare Applications
    Almalki, Faris A.
    Soufiene, Ben Othman
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2021, 2021
  • [5] EPPDA: An Efficient and Privacy-Preserving Data Aggregation Scheme with Authentication and Authorization for IoT-Based Healthcare Applications
    Almalki, Faris A.
    Soufiene, Ben Othman
    Soufiene, Ben Othman (ben_oth_soufiene@yahoo.fr), 1600, Hindawi Limited (2021):
  • [6] Agent-based blockchain model for robust authentication and authorization in IoT-based healthcare systems
    Hind Idrissi
    Paolo Palmieri
    The Journal of Supercomputing, 2024, 80 : 6622 - 6660
  • [7] Agent-based blockchain model for robust authentication and authorization in IoT-based healthcare systems
    Idrissi, Hind
    Palmieri, Paolo
    JOURNAL OF SUPERCOMPUTING, 2024, 80 (05): : 6622 - 6660
  • [8] SeMLAS: An Efficient Secure Multi-Level Authentication Scheme for IoT-Based Smart Home Systems
    Mbarek, Bacem
    Buhnova, Barbora
    Pitner, Tomas
    2019 15TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2019, : 1373 - 1378
  • [9] A Secure IoT-Based Mutual Authentication for Healthcare Applications in Wireless Sensor Networks Using ECC
    Singh, Deepti
    Kumar, Bijendra
    Singh, Samayveer
    Chand, Satish
    INTERNATIONAL JOURNAL OF HEALTHCARE INFORMATION SYSTEMS AND INFORMATICS, 2021, 16 (02) : 21 - 48
  • [10] Using a privacy-enhanced authentication process to secure IoT-based smart grid infrastructures
    Samad Rostampour
    Nasour Bagheri
    Behnam Ghavami
    Ygal Bendavid
    Saru Kumari
    Honorio Martin
    Carmen Camara
    The Journal of Supercomputing, 2024, 80 : 1668 - 1693