Cargando…

An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem

The telecare medical information systems (TMISs) enable patients to conveniently enjoy telecare services at home. The protection of patient’s privacy is a key issue due to the openness of communication environment. Authentication as a typical approach is adopted to guarantee confidential and authori...

Descripción completa

Detalles Bibliográficos
Autores principales: Lu, Yanrong, Li, Lixiang, Peng, Haipeng, Yang, Yixian
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Springer US 2015
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC4328119/
https://www.ncbi.nlm.nih.gov/pubmed/25681101
http://dx.doi.org/10.1007/s10916-015-0221-7
_version_ 1782357188460675072
author Lu, Yanrong
Li, Lixiang
Peng, Haipeng
Yang, Yixian
author_facet Lu, Yanrong
Li, Lixiang
Peng, Haipeng
Yang, Yixian
author_sort Lu, Yanrong
collection PubMed
description The telecare medical information systems (TMISs) enable patients to conveniently enjoy telecare services at home. The protection of patient’s privacy is a key issue due to the openness of communication environment. Authentication as a typical approach is adopted to guarantee confidential and authorized interaction between the patient and remote server. In order to achieve the goals, numerous remote authentication schemes based on cryptography have been presented. Recently, Arshad et al.(J Med Syst 38(12): 2014) presented a secure and efficient three-factor authenticated key exchange scheme to remedy the weaknesses of Tan et al.’s scheme (J Med Syst 38(3): 2014). In this paper, we found that once a successful off-line password attack that results in an adversary could impersonate any user of the system in Arshad et al.’s scheme. In order to thwart these security attacks, an enhanced biometric and smart card based remote authentication scheme for TMISs is proposed. In addition, the BAN logic is applied to demonstrate the completeness of the enhanced scheme. Security and performance analyses show that our enhanced scheme satisfies more security properties and less computational cost compared with previously proposed schemes.
format Online
Article
Text
id pubmed-4328119
institution National Center for Biotechnology Information
language English
publishDate 2015
publisher Springer US
record_format MEDLINE/PubMed
spelling pubmed-43281192015-02-20 An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem Lu, Yanrong Li, Lixiang Peng, Haipeng Yang, Yixian J Med Syst Mobile Systems The telecare medical information systems (TMISs) enable patients to conveniently enjoy telecare services at home. The protection of patient’s privacy is a key issue due to the openness of communication environment. Authentication as a typical approach is adopted to guarantee confidential and authorized interaction between the patient and remote server. In order to achieve the goals, numerous remote authentication schemes based on cryptography have been presented. Recently, Arshad et al.(J Med Syst 38(12): 2014) presented a secure and efficient three-factor authenticated key exchange scheme to remedy the weaknesses of Tan et al.’s scheme (J Med Syst 38(3): 2014). In this paper, we found that once a successful off-line password attack that results in an adversary could impersonate any user of the system in Arshad et al.’s scheme. In order to thwart these security attacks, an enhanced biometric and smart card based remote authentication scheme for TMISs is proposed. In addition, the BAN logic is applied to demonstrate the completeness of the enhanced scheme. Security and performance analyses show that our enhanced scheme satisfies more security properties and less computational cost compared with previously proposed schemes. Springer US 2015-02-14 2015 /pmc/articles/PMC4328119/ /pubmed/25681101 http://dx.doi.org/10.1007/s10916-015-0221-7 Text en © The Author(s) 2015
spellingShingle Mobile Systems
Lu, Yanrong
Li, Lixiang
Peng, Haipeng
Yang, Yixian
An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title_full An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title_fullStr An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title_full_unstemmed An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title_short An Enhanced Biometric-Based Authentication Scheme for Telecare Medicine Information Systems Using Elliptic Curve Cryptosystem
title_sort enhanced biometric-based authentication scheme for telecare medicine information systems using elliptic curve cryptosystem
topic Mobile Systems
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC4328119/
https://www.ncbi.nlm.nih.gov/pubmed/25681101
http://dx.doi.org/10.1007/s10916-015-0221-7
work_keys_str_mv AT luyanrong anenhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT lilixiang anenhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT penghaipeng anenhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT yangyixian anenhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT luyanrong enhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT lilixiang enhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT penghaipeng enhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem
AT yangyixian enhancedbiometricbasedauthenticationschemefortelecaremedicineinformationsystemsusingellipticcurvecryptosystem