...
首页> 外文期刊>Journal of medical systems >Secure and Efficient Two-Factor User Authentication Scheme with User Anonymity for Network Based E-Health Care Applications
【24h】

Secure and Efficient Two-Factor User Authentication Scheme with User Anonymity for Network Based E-Health Care Applications

机译:基于网络的电子医疗保健应用程序的具有用户匿名性的安全高效的两要素用户身份验证方案

获取原文
获取原文并翻译 | 示例
           

摘要

Benefited from the development of network and communication technologies, E-health care systems and telemedicine have got the fast development. By using the E-health care systems, patient can enjoy the remote medical service provided by the medical server. Medical data are important privacy information for patient, so it is an important issue to ensure the secure of transmitted medical data through public network. Authentication scheme can thwart unauthorized users from accessing services via insecure network environments, so user authentication with privacy protection is an important mechanism for the security of E-health care systems. Recently, based on three factors (password, biometric and smart card), an user authentication scheme for E-health care systems was been proposed by Amin et al., and they claimed that their scheme can withstand most of common attacks. Unfortunate, we find that their scheme cannot achieve the untraceability feature of the patient. Besides, their scheme lacks a password check mechanism such that it is inefficient to find the unauthorized login by the mistake of input a wrong password. Due to the same reason, their scheme is vulnerable to Denial of Service (DoS) attack if the patient updates the password mistakenly by using a wrong password. In order improve the security level of authentication scheme for E-health care application, a robust user authentication scheme with privacy protection is proposed for E-health care systems. Then, security prove of our scheme are analysed. Security and performance analyses show that our scheme is more powerful and secure for E-health care systems when compared with other related schemes.
机译:得益于网络和通信技术的发展,电子医疗系统和远程医疗得到了快速的发展。通过使用电子医疗系统,患者可以享受由医疗服务器提供的远程医疗服务。医疗数据是患者的重要隐私信息,因此确保通过公共网络传输的医疗数据的安全是重要的问题。身份验证方案可以阻止未经授权的用户通过不安全的网络环境访问服务,因此具有隐私保护功能的用户身份验证是确保电子医疗系统安全的重要机制。最近,基于三个因素(密码,生物识别和智能卡),Amin等人提出了一种用于电子医疗系统的用户身份验证方案,他们声称其方案可以抵御大多数常见的攻击。不幸的是,我们发现他们的方案无法实现患者的不可追溯性。此外,他们的方案缺少密码检查机制,使得由于输入错误密码的错误而无法找到未经授权的登录。由于相同的原因,如果患者使用错误的密码错误地更新了密码,则他们的方案很容易遭受拒绝服务(DoS)攻击。为了提高电子医疗应用认证方案的安全性,提出了一种具有隐私保护功能的鲁棒用户认证方案。然后,对我们方案的安全性证明进行了分析。安全性和性能分析表明,与其他相关方案相比,我们的方案对于电子医疗系统更强大,更安全。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号