Secure and Efficient Two-Factor User Authentication Scheme with User Anonymity for Network Based E-Health Care Applications

被引:0
作者
Xiong Li
Jianwei Niu
Marimuthu Karuppiah
Saru Kumari
Fan Wu
机构
[1] Beihang University,State Key Laboratory of Virtual Reality Technology and Systems, School of Computer Science and Engineering
[2] Hunan University of Science and Technology,School of Computer Science and Engineering
[3] VIT University,School of Computing Science and Engineering
[4] Ch. Charan Singh University,Department of Mathematics
[5] Xiamen Institute of Technology,Department of Computer Science and Engineering
来源
Journal of Medical Systems | 2016年 / 40卷
关键词
E-health care systems; Authentication; Dynamic identity; Privacy protection;
D O I
暂无
中图分类号
学科分类号
摘要
Benefited from the development of network and communication technologies, E-health care systems and telemedicine have got the fast development. By using the E-health care systems, patient can enjoy the remote medical service provided by the medical server. Medical data are important privacy information for patient, so it is an important issue to ensure the secure of transmitted medical data through public network. Authentication scheme can thwart unauthorized users from accessing services via insecure network environments, so user authentication with privacy protection is an important mechanism for the security of E-health care systems. Recently, based on three factors (password, biometric and smart card), an user authentication scheme for E-health care systems was been proposed by Amin et al., and they claimed that their scheme can withstand most of common attacks. Unfortunate, we find that their scheme cannot achieve the untraceability feature of the patient. Besides, their scheme lacks a password check mechanism such that it is inefficient to find the unauthorized login by the mistake of input a wrong password. Due to the same reason, their scheme is vulnerable to Denial of Service (DoS) attack if the patient updates the password mistakenly by using a wrong password. In order improve the security level of authentication scheme for E-health care application, a robust user authentication scheme with privacy protection is proposed for E-health care systems. Then, security prove of our scheme are analysed. Security and performance analyses show that our scheme is more powerful and secure for E-health care systems when compared with other related schemes.
引用
收藏
相关论文
共 108 条
  • [1] Xia Z(2016)A secure and dynamic multi-keyword ranked search scheme over encrypted cloud data IEEE Trans. Parallel Distrib. Syst. 27 340-352
  • [2] Wang X(2016)Enabling personalized search over encrypted outsourced data with efficiency improvement IEEE Trans. Parallel Distrib. Syst. 27 2546-2559
  • [3] Sun X(2015)Achieving effocient cloud search services: multi-keyword ranked search over encrypted cloud data supporting parallel computing IEICE Trans. Commun. 98 190-200
  • [4] Wang Q(2015)Mutual verifiable provable data auditing in public cloud storage J. Internet Technol. 16 317-323
  • [5] Fu Z(2009)An improved smart card based password authentication scheme with provable security Comput. Stand. Interfaces 31 723-728
  • [6] Ren K(2009)A more efficient and secure dynamic ID-based remote user authentication scheme Comput. Commun. 32 583-585
  • [7] Shu J(2010)Advanced smart card based password authentication protocol Comput. Stand. Interfaces 32 321-325
  • [8] Sun X(2011)Cryptanalysis and security enhancement of a ‘more efficient & secure dynamic ID-based remote user authentication scheme’ Comput. Commun. 34 305-309
  • [9] Huang F(2014)Robust smart-card-based remote user password authentication scheme Int. J. Commun. Syst. 27 377-389
  • [10] Fu Z(2014)Cryptanalysis and improvement of ‘a robust smart-card-based remote user password authentication scheme’ Int. J. Commun. Syst. 27 3939-3955