Back to Search Start Over

Improvement of a Uniqueness-and-Anonymity-Preserving User Authentication Scheme for Connected Health Care.

Authors :
Xie, Qi
Liu, Wenhao
Wang, Shengbao
Han, Lidong
Hu, Bin
Wu, Ting
Source :
Journal of Medical Systems. Sep2014, Vol. 38 Issue 9, p1-10. 10p. 2 Charts.
Publication Year :
2014

Abstract

Patient's privacy-preserving, security and mutual authentication between patient and the medical server are the important mechanism in connected health care applications, such as telecare medical information systems and personally controlled health records systems. In 2013, Wen showed that Das et al.'s scheme is vulnerable to the replay attack, user impersonation attacks and off-line guessing attacks, and then proposed an improved scheme using biometrics, password and smart card to overcome these weaknesses. However, we show that Wen's scheme is still vulnerable to off-line password guessing attacks, does not provide user's anonymity and perfect forward secrecy. Further, we propose an improved scheme to fix these weaknesses, and use the applied pi calculus based formal verification tool ProVerif to prove the security and authentication. [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISSN :
01485598
Volume :
38
Issue :
9
Database :
Academic Search Index
Journal :
Journal of Medical Systems
Publication Type :
Academic Journal
Accession number :
97369430
Full Text :
https://doi.org/10.1007/s10916-014-0091-4