Multi-factor user authentication scheme for IoT-based healthcare services

被引:56
|
作者
Dhillon P.K. [1 ]
Kalra S. [1 ]
机构
[1] Department of Computer Science and Engineering, Guru Nanak Dev University, Regional Campus, Jalandhar, 144001, Punjab
关键词
Authentication; Big data; Biometrics; Cloud; ECC; Healthcare; IoT;
D O I
10.1007/s40860-018-0062-5
中图分类号
学科分类号
摘要
Due to the tremendous rise of the cloud computing and the Internet of Things (IoT) paradigms, the possibility of remote monitoring of the patients in real time by a remote Medical Professional (MP) has become feasible and patients can enjoy healthcare services at home. To achieve this, the patient’s medical data will need to be stored on the Cloud server. However, patient’s medical data stored on server are highly sensitive and, hence, the Cloud-IoT network becomes open to many attacks. For that reason, it must ensure that patients’ medical data do not get exposed to malicious users. This makes strong user authentication a prerequisite for the successful global deployment of centralized healthcare systems. In this paper, we present an efficient, strong authentication protocol, for the MP to access patient data for healthcare applications based on Cloud-IoT network. The proposed protocol includes: (1) three-factor MP authentication (i.e. password, biometrics and smartcard); (2) mutual authentication between MP and the cloud server; (3) establishes a secure shared session key; and (4) maintains key freshness. Furthermore, the proposed protocol uses only two message exchanges between MP and cloud server, and attains efficiency (i.e. low computation and communication costs). Through the formal analysis using AVISPA web tool, security analysis and performance analysis, we conclude that the proposed protocol is more secure against potential attacks and obtains a trade-off between security and performance cost for healthcare application using Cloud-IoT networks. © 2018, Springer International Publishing AG, part of Springer Nature.
引用
收藏
页码:141 / 160
页数:19
相关论文
共 50 条
  • [1] A secure multi-factor ECC based authentication scheme for Cloud-IoT based healthcare services
    Dhillon, Parwinder Kaur
    Kalra, Sheetal
    JOURNAL OF AMBIENT INTELLIGENCE AND SMART ENVIRONMENTS, 2019, 11 (02) : 149 - 164
  • [2] Security Analysis of a User Authentication Scheme for IoT-Based Healthcare
    Wang, Shengbao
    Zhou, Xin
    Wen, Kang
    Weng, Bosen
    Zeng, Peng
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (07) : 6527 - 6530
  • [3] Lightweight and Anonymity-Preserving User Authentication Scheme for IoT-Based Healthcare
    Masud, Mehedi
    Gaba, Gurjot Singh
    Choudhary, Karanjeet
    Hossain, M. Shamim
    Alhamid, Mohammed F.
    Muhammad, Ghulam
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (04) : 2649 - 2656
  • [4] A Secure Multi-factor Remote User Authentication Scheme for Cloud-IoT Applications
    Lee, JoonYoung
    Kim, MyeongHyun
    Yu, SungJin
    Park, KiSung
    Park, YoungHo
    2019 28TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND NETWORKS (ICCCN), 2019,
  • [5] A lightweight multi-factor mobile user authentication scheme
    Sun, Jianguo
    Zhong, Qi
    Kou, Liang
    Wang, Wenshan
    Da, Qingan
    Lin, Yun
    IEEE INFOCOM 2018 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2018, : 831 - 836
  • [6] A Lightweight User Authentication Scheme for Cloud-IoT Based Healthcare Services
    Sharma, Geeta
    Kalra, Sheetal
    IRANIAN JOURNAL OF SCIENCE AND TECHNOLOGY-TRANSACTIONS OF ELECTRICAL ENGINEERING, 2019, 43 (Suppl 1) : 619 - 636
  • [7] A Lightweight User Authentication Scheme for Cloud-IoT Based Healthcare Services
    Geeta Sharma
    Sheetal Kalra
    Iranian Journal of Science and Technology, Transactions of Electrical Engineering, 2019, 43 : 619 - 636
  • [8] A proposal of multi-factor authentication scheme for secure iot environment
    Department of Industrial and Information Systems Engineering, Soongsil University, No. 369, Sangdo-Ro, Dongjak-Gu, Seoul
    156-743, Korea, Republic of
    ICIC Express Lett Part B Appl., 12 (3231-3236):
  • [9] ECC-Based Anonymous and Multi-factor Authentication Scheme for IoT Environment
    Dargaoui, Souhayla
    Azrour, Mourade
    El Allaoui, Ahmad
    Guezzaz, Azidine
    Alabdulatif, Abdulatif
    Ahmad, Sultan
    INTERNATIONAL JOURNAL OF ONLINE AND BIOMEDICAL ENGINEERING, 2025, 21 (01) : 56 - 75
  • [10] An efficient user authentication model for IOT-based healthcare environment
    Elngar A.A.
    International Journal of Information and Computer Security, 2019, 11 (4-5): : 431 - 446