Lightweight Multi-party Authentication and Key Agreement Protocol in IoT-based E-Healthcare Service

被引:17
作者
Sahu, Amiya Kumar [1 ]
Sharma, Suraj [1 ]
Puthal, Deepak [2 ,3 ]
机构
[1] Int Inst Informat Technol Bhubaneswar, Bhubaneswar 751003, Odisha, India
[2] Newcastle Univ, Newcastle Upon Tyne, Tyne & Wear, England
[3] Urban Sci Bldg,Sci Sq, Newcastle Upon Tyne NE4 5TG, Tyne & Wear, England
关键词
Internet of Things; authentication; healthcare; lightweight; key establishment; security protocol; lattice-based cryptography; identity-based encryption; ESTABLISHMENT; NETWORKS; INTERNET; SCHEME; ROBUST;
D O I
10.1145/3398039
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Internet of Things (IoT) is playing a promising role in e-healthcare applications in the recent decades; nevertheless, security is one of the crucial challenges in the current field of study. Many healthcare devices (for instance, a sensor-augmented insulin pump and heart-rate sensor) collect a user's real-time data (such as glucose level and heart rate) and send them to the cloud for proper analysis and diagnosis of the user. However, the real-time user's data are vulnerable to various authentication attacks while sending through an insecure channel. Besides that, the attacks may further open scope for many other subsequent attacks. Existing security mechanisms concentrate on two-party mutual authentication. However, an IoT-enabled healthcare application involves multiple parties such as a patient, e-healthcare test-equipment, doctors, and cloud servers that requires multi-party authentication for secure communication. Moreover, the design and implementation of a lightweight security mechanism that fits into the resource constraint IoT-enabled healthcare devices are challenging. Therefore, this article proposes a lightweight, multi-party authentication and key-establishment protocol in IoT-based e-healthcare service access network to counter the attacks in resource constraint devices. The proposed multi-party protocol has used a lattice-based cryptographic construct such as Identity-Based Encryption (IBE) to acquire security, privacy, and efficiency. The study provided all-round analysis of the scheme, such as security, power consumption, and practical usage, in the following ways. The proposed scheme is tested by a formal security tool, Scyther, to testify the security properties of the protocol. In addition, security analysis for various attacks and comparison with other existing works are provided to show the robust security characteristics. Further, an experimental evaluation of the proposed scheme using IBE cryptographic construct is provided to validate the practical usage. The power consumption of the scheme is also computed and compared with existing works to evaluate its efficiency.
引用
收藏
页数:20
相关论文
共 34 条
[21]   Lattice-Modeled Information Flow Control of Big Sensing Data Streams for Smart Health Application [J].
Puthal, Deepak .
IEEE INTERNET OF THINGS JOURNAL, 2019, 6 (02) :1312-1320
[22]  
Sahu Amiya Kumar, 2017, 2017 8th International Conference on Information Technology (ICIT), P220, DOI 10.1109/ICIT.2017.21
[23]  
Shamir A., 1984, P WORKSH THEOR APPL, P47, DOI [10.1007/3-540-39568-7_5, DOI 10.1007/3-540-39568-7_5]
[24]  
Sharma S, 2018, 2018 FIFTH INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED AND GRID COMPUTING (IEEE PDGC), P621, DOI 10.1109/PDGC.2018.8745799
[25]  
Sui AF, 2005, IEEE WCNC, P2088
[26]   TTP Based High-Efficient Multi-Key Exchange Protocol [J].
Tsai, Kun-Lin ;
Huang, Yi-Li ;
Leu, Fang-Yie ;
You, Ilsun .
IEEE ACCESS, 2016, 4 :6261-6271
[27]   PAAL: A Framework Based on Authentication, Aggregation, and Local Differential Privacy for Internet of Multimedia Things [J].
Usman, Muhammad ;
Jan, Mian Ahmad ;
Puthal, Deepak .
IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (04) :2501-2508
[28]   Design of secure key management and user authentication scheme for fog computing services [J].
Wazid, Mohammad ;
Das, Ashok Kumar ;
Kumar, Neeraj ;
Vasilakos, Athanasios V. .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 91 (475-492) :475-492
[29]   A Lightweight Multi-receiver Encryption Scheme with Mutual Authentication [J].
Win, Ei Khaing ;
Yoshihisa, Tomoki ;
Ishi, Yoshimasa ;
Kawakami, Tomoya ;
Teranishi, Yuuichi ;
Shimojo, Shinji .
2017 IEEE 41ST ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), VOL 2, 2017, :491-497
[30]   A lightweight and robust two-factor authentication scheme for personalized healthcare systems using wireless medical sensor networks [J].
Wu, Fan ;
Li, Xiong ;
Sangaiah, Arun Kumar ;
Xu, Lili ;
Kumari, Saru ;
Wu, Liuxi ;
Shen, Jian .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 82 :727-737