Back to Search
Start Over
Improvement of a Uniqueness-and-Anonymity-Preserving User Authentication Scheme for Connected Health Care.
- Source :
-
Journal of Medical Systems . Sep2014, Vol. 38 Issue 9, p1-10. 10p. 2 Charts. - Publication Year :
- 2014
-
Abstract
- Patient's privacy-preserving, security and mutual authentication between patient and the medical server are the important mechanism in connected health care applications, such as telecare medical information systems and personally controlled health records systems. In 2013, Wen showed that Das et al.'s scheme is vulnerable to the replay attack, user impersonation attacks and off-line guessing attacks, and then proposed an improved scheme using biometrics, password and smart card to overcome these weaknesses. However, we show that Wen's scheme is still vulnerable to off-line password guessing attacks, does not provide user's anonymity and perfect forward secrecy. Further, we propose an improved scheme to fix these weaknesses, and use the applied pi calculus based formal verification tool ProVerif to prove the security and authentication. [ABSTRACT FROM AUTHOR]
Details
- Language :
- English
- ISSN :
- 01485598
- Volume :
- 38
- Issue :
- 9
- Database :
- Academic Search Index
- Journal :
- Journal of Medical Systems
- Publication Type :
- Academic Journal
- Accession number :
- 97369430
- Full Text :
- https://doi.org/10.1007/s10916-014-0091-4