首页> 美国卫生研究院文献>other >A secure heterogeneous mobile authentication and key agreement scheme for e-healthcare cloud systems
【2h】

A secure heterogeneous mobile authentication and key agreement scheme for e-healthcare cloud systems

机译:电子医疗云系统的安全异构移动身份验证和密钥协商方案

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Heterogeneous mobile authentication is a crucial technique to securely retrieve the resource of e-healthcare cloud servers which are commonly implemented in a public key Infrastructure (PKI). Conventionally, a mobile data user can utilize a self-chosen password along with a portable device to request the access privilege of clouds. However, to validate the membership of users, a cloud server usually has to make use of a password table, which not only increases the burden of management, but also raises the possibility of information leakage. In this paper, we propose a secure heterogeneous mobile authentication and key agreement scheme for e-healthcare cloud systems. In our system structure, an e-healthcare cloud server of traditional PKIs does not have to store a password table. A legitimate data user only possesses a security token hardware and keeps an offline updatable password without using any private key. Our scheme is classified into the category of dynamic ID authentication techniques, since a data user is able to preserve his/her anonymity during authentication processes. We formally prove that the proposed mechanism fulfills the essential authenticated key exchange (AKE) security and owns lower computational costs. To further ensure the practical application security, an automatic security validation tool called AVISPA is also adopted to analyze possible attacks and pitfalls of our designed protocol.
机译:异构移动身份验证是安全检索通常在公钥基础结构(PKI)中实现的电子医疗云服务器资源的一项关键技术。常规地,移动数据用户可以使用自行选择的密码以及便携式设备来请求云的访问特权。但是,为了验证用户的成员资格,云服务器通常必须使用密码表,这不仅增加了管理负担,而且增加了信息泄漏的可能性。在本文中,我们提出了一种用于电子医疗云系统的安全的异构移动身份验证和密钥协商方案。在我们的系统结构中,传统PKI的电子医疗云服务器不必存储密码表。合法数据用户仅拥有安全令牌硬件,并保留脱机可更新密码,而无需使用任何私钥。我们的方案归为动态ID身份验证技术类别,因为数据用户能够在身份验证过程中保留其匿名性。我们正式证明了所提出的机制可以满足基本的认证密钥交换(AKE)安全性,并具有较低的计算成本。为了进一步确保实际应用程序的安全性,还使用了称为AVISPA的自动安全性验证工具来分析我们设计的协议的可能攻击和陷阱。

著录项

  • 期刊名称 other
  • 作者

    Han-Yu Lin;

  • 作者单位
  • 年(卷),期 -1(13),12
  • 年度 -1
  • 页码 e0208397
  • 总页数 15
  • 原文格式 PDF
  • 正文语种
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号