E-SAP: Efficient-Strong Authentication Protocol for Healthcare Applications Using Wireless Medical Sensor Networks

被引:155
作者
Kumar, Pardeep [2 ]
Lee, Sang-Gon [1 ]
Lee, Hoon-Jae [1 ]
机构
[1] Dongseo Univ, Div Comp & Informat Engn, Pusan 617716, South Korea
[2] Dongseo Univ, Grad Sch Design & IT, Dept Ubiquitous IT, Pusan 617716, South Korea
基金
新加坡国家研究基金会;
关键词
medical sensor network; secure healthcare; user authentication; mutual authentication; session key establishment; smart card; 2-FACTOR USER AUTHENTICATION; SECURITY; PRIVACY; DESIGN;
D O I
10.3390/s120201625
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
A wireless medical sensor network (WMSN) can sense humans' physiological signs without sacrificing patient comfort and transmit patient vital signs to health professionals' hand-held devices. The patient physiological data are highly sensitive and WMSNs are extremely vulnerable to many attacks. Therefore, it must be ensured that patients' medical signs are not exposed to unauthorized users. Consequently, strong user authentication is the main concern for the success and large scale deployment of WMSNs. In this regard, this paper presents an efficient, strong authentication protocol, named E-SAP, for healthcare application using WMSNs. The proposed E-SAP includes: (1) a two-factor (i.e., password and smartcard) professional authentication; (2) mutual authentication between the professional and the medical sensor; (3) symmetric encryption/decryption for providing message confidentiality; (4) establishment of a secure session key at the end of authentication; and (5) professionals can change their password. Further, the proposed protocol requires three message exchanges between the professional, medical sensor node and gateway node, and achieves efficiency (i.e., low computation and communication cost). Through the formal analysis, security analysis and performance analysis, we demonstrate that E-SAP is more secure against many practical attacks, and allows a tradeoff between the security and the performance cost for healthcare application using WMSNs.
引用
收藏
页码:1625 / 1647
页数:23
相关论文
共 54 条
  • [51] Wood A., 2006, University of Virginia Computer Science Department Technical Report, V2, P17
  • [52] Security and privacy in RFID and applications in telemedicine
    Xiao, Y
    Shen, XM
    Sun, B
    Cai, L
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2006, 44 (04) : 64 - 72
  • [53] Xuan Hung Le, 2011, Journal of Networks, V6, P355, DOI 10.4304/jnw.6.3.355-364
  • [54] An ID-Based Authenticated Key Agreement Protocol for Wireless Sensor Networks
    Li-Ping Z.
    Yi W.
    [J]. Journal of Communications, 2010, 5 (08): : 620 - 626