Three-factor UCSSO scheme with fast authentication and privacy protection for telecare medicine information systems

Chien Lung Hsu, Tuan Vinh Le, Mei Chen Hsieh, Kuo Yu Tsai, Chung Fu Lu*, Tzu Wei Lin

*Corresponding author for this work

Research output: Contribution to journalJournal Article peer-review

32 Scopus citations

Abstract

Electronic healthcare (e-health) has gained more and more research attention in recent years, due to its flexibility and convenience. E-health is efficiently enabled by telecare medicine information system (TMIS). TMIS provides seamless transfer and timely sharing of medical information for specific healthcare services. Since communications in TMIS are carried out through unreliable channels, data security and user privacy concerns become prominent. With traditional single-server architecture, users must store massive credentials, which causes inefficient communication and significant overhead. Moreover, user credentials in previously proposed schemes are stored at server side, suffering potential risks. Our work proposes a three-factor user-controlled single sign-on (UCSSO) with fast authentication and privacy protection for TMIS. The contributions of this paper are as follows. Our work integrates three factors including password, smart card and biometrics in authentication procedure, for providing a high-security and privacy-preserved communication. We introduce single sign-on solution that allows users to log in to multiple servers using a single password. User-controlled mechanism is proposed to address insider attacks and the risk that registration center may be compromised. The proposed scheme is designed with fast authentication mechanism that helps to efficiently establishes new session key. Our work is proved secure using BAN logic, ROR model, and AVISPA toolset. The results of performance comparison show that our scheme provides more security properties and bears the least overhead, compared with competitive schemes.

Original languageEnglish
Pages (from-to)196553-196566
Number of pages14
JournalIEEE Access
Volume8
DOIs
StatePublished - 2020

Bibliographical note

Publisher Copyright:
© 2020 Institute of Electrical and Electronics Engineers Inc.. All rights reserved.

Keywords

  • Fast authentication
  • Privacy
  • TMIS
  • Three-factor
  • UCSSO

Fingerprint

Dive into the research topics of 'Three-factor UCSSO scheme with fast authentication and privacy protection for telecare medicine information systems'. Together they form a unique fingerprint.

Cite this