E-SAP: Efficient-Strong Authentication Protocol for Healthcare Applications Using Wireless Medical Sensor Networks

被引:155
作者
Kumar, Pardeep [2 ]
Lee, Sang-Gon [1 ]
Lee, Hoon-Jae [1 ]
机构
[1] Dongseo Univ, Div Comp & Informat Engn, Pusan 617716, South Korea
[2] Dongseo Univ, Grad Sch Design & IT, Dept Ubiquitous IT, Pusan 617716, South Korea
基金
新加坡国家研究基金会;
关键词
medical sensor network; secure healthcare; user authentication; mutual authentication; session key establishment; smart card; 2-FACTOR USER AUTHENTICATION; SECURITY; PRIVACY; DESIGN;
D O I
10.3390/s120201625
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
A wireless medical sensor network (WMSN) can sense humans' physiological signs without sacrificing patient comfort and transmit patient vital signs to health professionals' hand-held devices. The patient physiological data are highly sensitive and WMSNs are extremely vulnerable to many attacks. Therefore, it must be ensured that patients' medical signs are not exposed to unauthorized users. Consequently, strong user authentication is the main concern for the success and large scale deployment of WMSNs. In this regard, this paper presents an efficient, strong authentication protocol, named E-SAP, for healthcare application using WMSNs. The proposed E-SAP includes: (1) a two-factor (i.e., password and smartcard) professional authentication; (2) mutual authentication between the professional and the medical sensor; (3) symmetric encryption/decryption for providing message confidentiality; (4) establishment of a secure session key at the end of authentication; and (5) professionals can change their password. Further, the proposed protocol requires three message exchanges between the professional, medical sensor node and gateway node, and achieves efficiency (i.e., low computation and communication cost). Through the formal analysis, security analysis and performance analysis, we demonstrate that E-SAP is more secure against many practical attacks, and allows a tradeoff between the security and the performance cost for healthcare application using WMSNs.
引用
收藏
页码:1625 / 1647
页数:23
相关论文
共 54 条
  • [1] [Anonymous], STRONG USER AUTHENTI
  • [2] Banerjee S., 2006, P 1 ACM INT C INT IN
  • [3] SPINE: A domain-specific framework for rapid prototyping of WBSN applications
    Bellifemine, Fabio
    Fortino, Giancarlo
    Giannantonio, Roberta
    Gravina, Raffaele
    Guerrieri, Antonio
    Sgroi, Marco
    [J]. SOFTWARE-PRACTICE & EXPERIENCE, 2011, 41 (03) : 237 - 265
  • [4] Benenson Z., 2005, REAL WORLD WIRELESS, V14, P52
  • [5] A Secure Mobile Healthcare System using Trust-Based Multicast Scheme
    Boukerche, Azzedine
    Ren, Yonglin
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2009, 27 (04) : 387 - 399
  • [6] Braithwaite W.R.B., WHY 2 FACTOR AUTHENT
  • [7] Logic of authentication
    Burrows, Michael
    Abadi, Martin
    Needham, Roger
    [J]. Operating Systems Review (ACM), 1989, 23 (05): : 1 - 13
  • [8] Chen BR, 2008, LECT NOTES COMPUT SC, V5067, P79, DOI 10.1007/978-3-540-69170-9_6
  • [9] Lightweight and provably secure user authentication with anonymity for the global mobility network
    Chen, Chun
    He, Daojing
    Chan, Sammy
    Bu, Jiajun
    Gao, Yi
    Fan, Rong
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2011, 24 (03) : 347 - 362
  • [10] Chung Wan-Young, 2007, P 29 ANN INT C IEEE