A Privacy Enhanced Authentication Scheme for Telecare Medical Information Systems

A Privacy Enhanced Authentication Scheme for Telecare Medical Information Systems
复制标题

远程护理医疗信息系统的隐私增强认证方案

DOI:
10.1007/s10916-012-9897-0
复制
发表时间:
2013-02-01
影响因子:
5.3
通讯作者:
Li, Guangsong
Li, Guangsong
中科院分区:
医学3区
文献类型:
--
作者:
Jiang, Qi;Ma, Jianfeng;Li, Guangsong

文献摘要

被引文献

相似文献

远程医疗信息系统旨在建立远程医疗服务,使公众能够在偏远地点获得医疗服务或医疗信息。身份验证和密钥协商是确保TMIS数据完整性、机密性和可用性的关键。最近,Chen等人提出了自己的观点。提出了一种高效安全的动态身份认证方案,并声称该方案实现了用户匿名性。然而,我们观察到,Chen等人的S方案既不实现匿名性,也不具有不可追踪性,并且容易受到身份猜测攻击和跟踪攻击。为了保护用户隐私,我们提出了一种增强的认证方案,实现了用户的匿名性和不可追踪性。该方案是一种安全、高效、保护用户隐私的认证方案,适用于电信管理信息系统。
The telecare medical information system (TMIS) aims to establish telecare services and enable the public to access medical services or medical information at remote sites. Authentication and key agreement is essential to ensure data integrity, confidentiality, and availability for TMIS. Most recently, Chen et al. proposed an efficient and secure dynamic ID-based authentication scheme for TMIS, and claimed that their scheme achieves user anonymity. However, we observe that Chen et al.’s scheme achieves neither anonymity nor untraceability, and is subject to the identity guessing attack and tracking attack. In order to protect user privacy, we propose an enhanced authentication scheme which achieves user anonymity and untraceablity. It is a secure and efficient authentication scheme with user privacy preservation which is practical for TMIS.