Cargando…

Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange

A secure and distributed framework for the management of patients’ information in emergency and hospitalization services is proposed here in order to seek improvements in efficiency and security in this important area. In particular, confidentiality protection, mutual authentication, and automatic i...

Descripción completa

Detalles Bibliográficos
Autores principales: Rivero-García, Alexandra, Santos-González, Iván, Hernández-Goya, Candelaria, Caballero-Gil, Pino, Yung, Moti
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2017
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5421693/
https://www.ncbi.nlm.nih.gov/pubmed/28362328
http://dx.doi.org/10.3390/s17040733
_version_ 1783234624895320064
author Rivero-García, Alexandra
Santos-González, Iván
Hernández-Goya, Candelaria
Caballero-Gil, Pino
Yung, Moti
author_facet Rivero-García, Alexandra
Santos-González, Iván
Hernández-Goya, Candelaria
Caballero-Gil, Pino
Yung, Moti
author_sort Rivero-García, Alexandra
collection PubMed
description A secure and distributed framework for the management of patients’ information in emergency and hospitalization services is proposed here in order to seek improvements in efficiency and security in this important area. In particular, confidentiality protection, mutual authentication, and automatic identification of patients are provided. The proposed system is based on two types of devices: Near Field Communication (NFC) wristbands assigned to patients, and mobile devices assigned to medical staff. Two other main elements of the system are an intermediate server to manage the involved data, and a second server with a private key generator to define the information required to protect communications. An identity-based authentication and key exchange scheme is essential to provide confidential communication and mutual authentication between the medical staff and the private key generator through an intermediate server. The identification of patients is carried out through a keyed-hash message authentication code. Thanks to the combination of the aforementioned tools, a secure alternative mobile health (mHealth) scheme for managing patients’ data is defined for emergency and hospitalization services. Different parts of the proposed system have been implemented, including mobile application, intermediate server, private key generator and communication channels. Apart from that, several simulations have been performed, and, compared with the current system, significant improvements in efficiency have been observed.
format Online
Article
Text
id pubmed-5421693
institution National Center for Biotechnology Information
language English
publishDate 2017
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-54216932017-05-12 Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange Rivero-García, Alexandra Santos-González, Iván Hernández-Goya, Candelaria Caballero-Gil, Pino Yung, Moti Sensors (Basel) Article A secure and distributed framework for the management of patients’ information in emergency and hospitalization services is proposed here in order to seek improvements in efficiency and security in this important area. In particular, confidentiality protection, mutual authentication, and automatic identification of patients are provided. The proposed system is based on two types of devices: Near Field Communication (NFC) wristbands assigned to patients, and mobile devices assigned to medical staff. Two other main elements of the system are an intermediate server to manage the involved data, and a second server with a private key generator to define the information required to protect communications. An identity-based authentication and key exchange scheme is essential to provide confidential communication and mutual authentication between the medical staff and the private key generator through an intermediate server. The identification of patients is carried out through a keyed-hash message authentication code. Thanks to the combination of the aforementioned tools, a secure alternative mobile health (mHealth) scheme for managing patients’ data is defined for emergency and hospitalization services. Different parts of the proposed system have been implemented, including mobile application, intermediate server, private key generator and communication channels. Apart from that, several simulations have been performed, and, compared with the current system, significant improvements in efficiency have been observed. MDPI 2017-03-31 /pmc/articles/PMC5421693/ /pubmed/28362328 http://dx.doi.org/10.3390/s17040733 Text en © 2017 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Rivero-García, Alexandra
Santos-González, Iván
Hernández-Goya, Candelaria
Caballero-Gil, Pino
Yung, Moti
Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title_full Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title_fullStr Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title_full_unstemmed Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title_short Patients’ Data Management System Protected by Identity-Based Authentication and Key Exchange
title_sort patients’ data management system protected by identity-based authentication and key exchange
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5421693/
https://www.ncbi.nlm.nih.gov/pubmed/28362328
http://dx.doi.org/10.3390/s17040733
work_keys_str_mv AT riverogarciaalexandra patientsdatamanagementsystemprotectedbyidentitybasedauthenticationandkeyexchange
AT santosgonzalezivan patientsdatamanagementsystemprotectedbyidentitybasedauthenticationandkeyexchange
AT hernandezgoyacandelaria patientsdatamanagementsystemprotectedbyidentitybasedauthenticationandkeyexchange
AT caballerogilpino patientsdatamanagementsystemprotectedbyidentitybasedauthenticationandkeyexchange
AT yungmoti patientsdatamanagementsystemprotectedbyidentitybasedauthenticationandkeyexchange