首页> 外文期刊>Computer networks >LAPCHS: A lightweight authentication protocol for cloud-based health-care systems
【24h】

LAPCHS: A lightweight authentication protocol for cloud-based health-care systems

机译:LAPCHS:基于云的医疗保健系统的轻量级认证协议

获取原文
获取原文并翻译 | 示例
           

摘要

The development of technology has accelerated things and solved many problems. Among various technologies, the integration of the Internet of Things (IoT) into human social life brings the promise of an easier and better life. The integration of IoT into the medical field, as well as the environments and patients associated with it, has provided a new context called the Telecare Medical Information Systems. It should be noted that the smart medicine, in addition to its significant benefits, carries many security threats, so privacy and especially anonymity is the largest concern in implementing a telecare medical information system.Due to the importance of privacy preservation and security in smart health-care systems, Fan et al. have recently proposed a lightweight authentication protocol (IEEE Netw. 33 (2) (2019)) using quadratic residue and pseudo random number generators, to be used in this platform. They believed that their scheme has enough security, privacy preservation, and also good resistance to various attacks including tag traceability attacks, replay attacks and also de-synchronization (DoS) attacks. The aim of the present study is to examine the security of the mentioned protocol. In fact, a heuristic attack was presented, in which an adversary could retrieve tag's and reader's current and previous identifier that contradicts anonymity and forward untraceability properties of this protocol. Reader and tag impersonation attacks were also applied against the protocol. Besides, a lightweight authentication protocol was proposed for cloud-based health-care systems called LAPCHS. Security analysis of our new protocol, through heuristic security analysis and also formal evaluations using Real-or-Random Model and simulations done on the AVISPA and the Scyther tools, confirms its security against different attacks.
机译:技术的发展已经加速了事物并解决了许多问题。在各种技术中,事物互联网(IOT)融入人类社交生活的整合带来了更容易和更好的生活的承诺。 IOT进入医疗领域的整合,以及与之相关的环境和患者,提供了一种称为远程护理医疗信息系统的新背景。应该指出的是,智能药物除了其显着效益外,还具有许多安全威胁,因此隐私,特别是匿名是实现远程护理医学信息系统的最大问题。遵循隐私保存和智能健康安全性的重要性-care systems,fan等人。最近提出了一种轻量级认证协议(IEEE Netw。33(2)(2019))使用二次残留物和伪随机数发生器,用于在该平台中使用。他们认为,他们的计划具有足够的安全性,隐私保存,以及对各种攻击的良好抵抗,包括标签可追溯性攻击,重放攻击以及去同步(DOS)攻击。本研究的目的是审查提到的方案的安全性。事实上,提出了一种启发式攻击,其中对手可以检索标签和读者的当前和先前的标识符,以与本协议的匿名和前瞻性的不可破坏性属性相矛盾。读者和标签模拟攻击也适用于协议。此外,提出了一种叫做Lapchs的基于云的保健系统的轻量级认证协议。我们的新协议安全分析,通过启发式安全分析以及使用实际或随机模型的正式评估和在Avispa和Syspther工具上完成的仿真,确认其对不同攻击的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号