Lightweight authentication protocol for connected medical IoT through privacy-preserving access

被引:6
|
作者
Tanveer, Muhammad [1 ]
Chelloug, Samia Allaoua [2 ]
Alabdulhafith, Maali [2 ]
Abd El-Latif, Ahmed A. [3 ,4 ,5 ]
机构
[1] Univ Management & Technol, Dept Comp Sci, Lahore 54770, Pakistan
[2] Princess Nourah bint Abdulrahman Univ, Coll Comp & Informat Sci, Dept Informat Technol, POB 84428, Riyadh 11671, Saudi Arabia
[3] Prince Sultan Univ, Coll Comp & Informat Sci, EIAS Data Sci Lab, Riyadh 11586, Saudi Arabia
[4] Prince Sultan Univ, Ctr Excellence Quantum & Intelligent Comp, Riyadh 11586, Saudi Arabia
[5] Menoufia Univ, Fac Sci, Dept Math & Comp Sci, Menoufia 32511, Egypt
关键词
Smart healthcare system; Security; Privacy; Authentication; Encryption; SCHEME;
D O I
10.1016/j.eij.2024.100474
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the rapid progress of communication technology, the Internet of Things (IoT) has emerged as an essential element in our daily lives. Given that the IoT encompasses diverse devices that often have limited resources in terms of communication, computation, and storage. Consequently, the National Institute of Standards and Technology (NIST) has standardized several lightweight cryptographic algorithms for encryption and decryption, specifically designed to meet the needs of resource -constrained IoT devices. These cryptographic algorithms, known as authenticated encryption with associated data (AEAD), offer more than just confidentiality-they also guarantee information integrity and authentication. Unlike conventional encryption algorithms like AES, which solely provide confidentiality, AEAD algorithms encompass additional functionality to achieve authenticity. This eliminates the need for separate algorithms like message authentication codes to ensure authenticity. Therefore, by leveraging the characteristics of an AEAD protocol, it is possible to develop a lightweight authentication framework to mitigate the security risks inherent in public communication channels. Therefore, in this work, we designed the lightweight authentication protocol for the smart healthcare system (BLAP-SHS) using an AEAD mechanism. In order to do this, a session key must first be created for encrypted communication. This is done via a method called mutual authentication, which verifies the legitimacy of both the user and the server. The random -or -real methodology ensures the security of the derived session key, and the Scyther tool is used to assess BLAP-SHS' resistance to man -in -the -middle and replay attacks. Through using the technique of informal security analysis, the resilience of BLAP-SHS against denial of service, and password -guessing threats are evaluated. By juxtaposing BLAP-SHS with other prominent authentication techniques, the usefulness of BLAP-SHS is also assessed in terms of computing and communication costs. We illustrate that the BLAP-SHS requires a reduction in computation cost ranging from [70.11% to 95.21%] and a reduction in communication resources ranging from [3.85% to 9.09%], as evidenced by our comparative study.
引用
收藏
页数:12
相关论文
共 50 条
  • [21] A novel lightweight authentication and privacy-preserving protocol for vehicular ad hoc networks
    Shaji K. A. Theodore
    K. Rajiv Gandhi
    V. Palanisamy
    Complex & Intelligent Systems, 2023, 9 : 2981 - 2991
  • [22] An Efficient Privacy-preserving Authentication Protocol in VANETs
    Zhang, Jianhong
    Zhen, Weina
    Xu, Min
    2013 IEEE NINTH INTERNATIONAL CONFERENCE ON MOBILE AD-HOC AND SENSOR NETWORKS (MSN 2013), 2013, : 272 - 277
  • [23] A Secure, Privacy-Preserving, and Lightweight Authentication Scheme for VANETs
    Nandy, Tarak
    Idris, Mohd Yamani Idna
    Noor, Rafidah Md
    Wahab, Ainuddin Wahid Abdul
    Bhattacharyya, Sananda
    Kolandaisamy, Raenu
    Yahuza, Muktar
    IEEE SENSORS JOURNAL, 2021, 21 (18) : 20998 - 21011
  • [24] A lightweight conditional privacy-preserving authentication and access control scheme for pervasive computing environments
    Tan, Zuowen
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2012, 35 (06) : 1839 - 1846
  • [25] Privacy-Preserving Lightweight Authentication Protocol for Demand Response Management in Smart Grid Environment
    Yu, SungJin
    Park, KiSung
    Lee, JoonYoung
    Park, YoungHo
    Park, YoHan
    Lee, SangWoo
    Chung, BoHeung
    APPLIED SCIENCES-BASEL, 2020, 10 (05):
  • [26] A Lightweight and Privacy-Preserving Mutual Authentication and Key Agreement Protocol for Internet of Drones Environment
    Pu, Cong
    Wall, Andrew
    Choo, Kim-Kwang Raymond
    Ahmed, Imtiaz
    Lim, Sunho
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (12): : 9918 - 9933
  • [27] LiPI: Lightweight Privacy-Preserving Data Aggregation in IoT
    Goyal, Himanshu
    Kodali, Krishna
    Saha, Sudipta
    2023 IEEE 22ND INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, BIGDATASE, CSE, EUC, ISCI 2023, 2024, : 1661 - 1666
  • [28] Physically Secure Lightweight and Privacy-Preserving Message Authentication Protocol for VANET in Smart City
    Othman, Wajdy
    Miao Fuyou
    Xue, Kaiping
    Hawbani, Ammar
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2021, 70 (12) : 12902 - 12917
  • [29] Privacy-Preserving Authentication Scheme for Connected Autonomous Vehicles
    Karabulut-Kurt, Gunes
    Nari-Baykal, Kubra
    Ozdemir, Enver
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2024, 25 (06) : 4998 - 5010
  • [30] Light-Weight and Privacy-Preserving Authentication Protocol for Mobile Payments in the Context of IoT
    Chen, Yanan
    Xu, Weixiang
    Peng, Li
    Zhang, Hao
    IEEE ACCESS, 2019, 7 : 15210 - 15221