当前位置: X-MOL 学术Int. J. Commun. Syst. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
A secure and efficient remote patient‐monitoring authentication protocol for cloud‐IoT
International Journal of Communication Systems ( IF 1.7 ) Pub Date : 2020-04-15 , DOI: 10.1002/dac.4423
Bander A. Alzahrani 1 , Azeem Irshad 2 , Khalid Alsubhi 1 , Aiiad Albeshri 1
Affiliation  

The ongoing Cloud‐IoT (Internet of Things)–based technological advancements have revolutionized the ways in which remote patients could be monitored and provided with health care facilities. The real‐time monitoring of patient's health leads to dispensing the right medical treatment at the right time. The health professionals need to access patients' sensitive data for such monitoring, and if treated with negligence, it could also be used for malevolent objectives by the adversary. Hence, the Cloud‐IoT–based technology gains could only be conferred to the patients and health professionals, if the latter authenticate one another properly. Many authentication protocols are proposed for remote patient health care monitoring, but with limitations. Lately, Sharma and Kalra (DOI: 10.1007/s40998‐018‐0146‐5) present a remote patient‐monitoring authentication scheme based on body sensors. However, we discover that the scheme still bears many drawbacks including stolen smart card attack, session key compromise, and user impersonation attacks. In view of those limitations, we have designed an efficient authentication protocol for remote patient health monitoring that counters all the above‐mentioned drawbacks. Moreover, we prove the security features of our protocol using BAN logic‐based formal security analysis and validate the results in ProVerif automated security tool.

中文翻译:

适用于云IoT的安全高效的远程患者监护认证协议

持续的基于Cloud-IoT(物联网)的技术进步彻底改变了远程患者可以被监控并提供医疗保健设施的方式。实时监测患者的健康状况,可以在正确的时间进行正确的医疗。卫生专业人员需要访问患者的敏感数据以进行此类监视,如果疏忽大意,则对手也可能将其用于恶意目标。因此,基于云基于物联网的技术收益只能授予患者和医疗专业人员,前提是后者必须经过彼此的正确验证。提出了许多认证协议用于远程患者医疗保健监控,但有局限性。最近,Sharma和Kalra(DOI:10。1007 / s40998‐018‐0146‐5)提出了一种基于人体传感器的远程患者监护认证方案。但是,我们发现该方案仍然存在许多缺点,包括被盗的智能卡攻击,会话密钥泄露和用户模拟攻击。考虑到这些局限性,我们设计了一种有效的身份验证协议,用于远程患者健康监测,以克服上述所有缺点。此外,我们使用基于BAN逻辑的形式安全分析来证明协议的安全功能,并在ProVerif自动化安全工具中验证结果。我们针对远程患者健康监控设计了一种有效的身份验证协议,以解决上述所有缺点。此外,我们使用基于BAN逻辑的形式安全分析来证明协议的安全功能,并在ProVerif自动化安全工具中验证结果。我们针对远程患者健康监控设计了一种有效的身份验证协议,以解决上述所有缺点。此外,我们使用基于BAN逻辑的形式安全分析来证明协议的安全功能,并在ProVerif自动化安全工具中验证结果。
更新日期:2020-04-15
down
wechat
bug