Design of a Password Authentication and Key Agreement Scheme to Access e-Healthcare Services

被引:0
作者
Saru Kumari
Km. Renuka
机构
[1] Ch. Charan Singh University,Department of Mathematics
来源
Wireless Personal Communications | 2021年 / 117卷
关键词
Biometrics; Offline password guessing attack; Authentication; Telecare medical information system; Anonymity; Burrows–Abadi–Needham logic;
D O I
暂无
中图分类号
学科分类号
摘要
The telecare medical information system (TMIS) offers remote healthcare services to the patients at their doorstep. Including this serenity, it is compulsory to preserve privacy and to give guaranty to the patients for secured TMIS communication. Authentication protocols are usually exploited to ensure privacy and protect communication between patients and remote assistance. Currently, we observe the inaccuracy of an authentication protocol for TMIS. The scheme is recently proposed by Qiu et al. to realize healthcare services. We find that their protocol is vulnerable to offline password guessing, replay, and anonymity violation attacks. To avoid these weaknesses, we have developed an improved biometric-based protocol. Our proposed protocol is capable to prevent the said attacks. We validate the security of our proposed protocol using Burrows–Abadi–Needham logic. We compare the performance of the proposed protocol with the preceding protocols and conclude that the proposed protocol is more secure and efficient as compared to its former counterparts.
引用
收藏
页码:27 / 45
页数:18
相关论文
共 59 条
  • [1] Lamport L(1981)Password authentication with insecure communication Communications of the ACM 24 770-771
  • [2] Shimizu A(1990)A dynamic password authentication method by one-way function IEICE Transactions on Information and Systems J73-D-I 630-636
  • [3] Shimizu A(1998)A password authentication method for contents communication on the Internet IEICE Transactions on Communication E81-B 1666-1763
  • [4] Horioka T(2000)A new remote user authentication scheme using smart card IEEE Transactions on Consumer Electronics 46 28-30
  • [5] Inagaki H(1998)Internet integrated in the daily medical practice within an electronic patient record Computers in Biology and Medicine 28 567-579
  • [6] Hwang MS(2000)Managing medical and insurance information through a smart-card-based information system Journal of Medical Systems 24 213-234
  • [7] Li LH(2001)Electronic patient records and innovation in health care services International Journal of Medical Informatics 64 201-205
  • [8] Lovis C(2012)A secure authentication scheme for telecare medicine information systems Journal of Medical Systems 36 1529-1535
  • [9] Baud RH(2013)A secure and efficient authentication and key agreement scheme based on ECC for telecare medicine information systems Journal of Medical Systems 38 135-7463
  • [10] Scherrer RH(2014)Cryptanalysis and improvement of authentication and key agreement protocols for telecare medicine information systems Journal of Medical Systems 39 66-2255