A Secure Authentication Protocol for Multi-Sever-Based E-Healthcare Using a Fuzzy Commitment Scheme

被引:46
|
作者
Barman, Subhas [1 ]
Shum, Hubert P. H. [2 ]
Chattopadhyay, Samiran [3 ]
Samanta, Debasis [4 ]
机构
[1] Jalpaiguri Govt Engn Coll, Jalpaiguri, India
[2] Northumbria Univ, Fac Engn & Environm, Newcastle Upon Tyne NE1 8ST, Tyne & Wear, England
[3] Jadavpur Univ, Dept Informat Technol, Kolkata 700098, India
[4] IIT Kharagpur, Dept Comp Sci & Engn, Kharagpur 721302, W Bengal, India
基金
英国工程与自然科学研究理事会;
关键词
Telecare medicine information system (THIS); fuzzy commitment scheme; BAN logic; real-or-random (ROR); AVISPA tool; KEY AGREEMENT PROTOCOL; USER AUTHENTICATION; PASSWORD AUTHENTICATION; INFORMATION; EFFICIENT; BIOMETRICS; DESIGN; EXCHANGE; PRIVACY; ATTACKS;
D O I
10.1109/ACCESS.2019.2893185
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Smart card-based remote authentication schemes are widely used in multi-medicalserver-based telecare medicine information systems (TMISs). Biometric is one of the most trustworthy authenticators and is presently being advocated to use in the remote authentication of THIS. However, most of the existing TMISs consider a single-server-environment-based authentication system. Therefore, patients need to register and log into every server separately for different services. Furthermore, these schemes do not employ error correction technique to remove the errors from biometric data. Also, biometrics are inherent and demand diversification to generate a revocable template from inherent biometric data. In this paper, we propose a mutual authentication and key agreement scheme for a multi-medical server environment to overcome the limitations of the existing schemes. In the proposed scheme, a cancelable transformation of the raw biometric data is used to provide the privacy and the diversification of biometric data. The errors of the biometric data are corrected with error-correction techniques under the fuzzy commitment mechanism. A formal security analysis using the widely accepted real-or-random model, the Burrows-Abadi-Needham logic, and the automated validation of Internet security protocols and applications tool concludes that the proposed scheme is safe against known attacks. We also compare the computation and communication costs of our scheme to evaluate the performance with the others.
引用
收藏
页码:12557 / 12574
页数:18
相关论文
共 50 条
  • [21] ECC-based lightweight authentication and access control scheme for IoT E-healthcare
    Hailong Yao
    Qiao Yan
    Xingbing Fu
    Zhibin Zhang
    Caihui Lan
    Soft Computing, 2022, 26 : 4441 - 4461
  • [22] An efficient mutual authentication and privacy prevention scheme for e-healthcare monitoring
    Mohit, Prerna
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 63
  • [23] LSP-eHS: A Lightweight and Secure Protocol for e-Healthcare System
    Algarni, Ali Delham
    Algarni, Fahad
    Jan, Saeed Ullah
    Innab, Nisreen
    IEEE ACCESS, 2024, 12 : 156849 - 156866
  • [24] Cryptanalysis and Biometric-Based Enhancement of a Remote User Authentication Scheme for E-Healthcare System
    Rifaqat Ali
    Arup Kumar Pal
    Arabian Journal for Science and Engineering, 2018, 43 : 7837 - 7852
  • [25] Cryptanalysis and Biometric-Based Enhancement of a Remote User Authentication Scheme for E-Healthcare System
    Ali, Rifaqat
    Pal, Arup Kumar
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2018, 43 (12) : 7837 - 7852
  • [26] A secure authentication scheme based on fuzzy extractor
    Zhang, Lihua
    Nie, Yaoping
    Computer Modelling and New Technologies, 2014, 18 (12): : 46 - 55
  • [27] Design of a Password Authentication and Key Agreement Scheme to Access e-Healthcare Services
    Kumari, Saru
    Renuka, Km
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 117 (01) : 27 - 45
  • [28] Design of a Password Authentication and Key Agreement Scheme to Access e-Healthcare Services
    Saru Kumari
    Km. Renuka
    Wireless Personal Communications, 2021, 117 : 27 - 45
  • [29] SPOT: Secure and Privacy-Preserving PrOximiTy Protocol for e-Healthcare Systems
    Masmoudi, Souha
    Kaaniche, Nesrine
    Laurent, Maryline
    IEEE ACCESS, 2022, 10 : 106400 - 106414
  • [30] A Secure Multi-factor Authentication Protocol for Healthcare Services Using Cloud-based SDN
    Midha, Sugandhi
    Verma, Sahil
    Kavita
    Mittal, Mohit
    Jhanjhi, Nz
    Masud, Mehedi
    AlZain, Mohammed A.
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 74 (02): : 3711 - 3726