Design of an efficient and provably secure anonymity preserving three-factor user authentication and key agreement scheme for TMIS

被引:66
|
作者
Wazid, Mohammad [1 ]
Das, Ashok Kumar [1 ]
Kumari, Saru [2 ]
Li, Xiong [3 ]
Wu, Fan [4 ]
机构
[1] Int Inst Informat Technol, Ctr Secur Theory & Algorithm Res, Hyderabad 500032, Andhra Pradesh, India
[2] Chaudhary Charan Singh Univ, Dept Math, Meerut 250 005H, Uttar Pradesh, India
[3] Hunan Univ Sci & Technol, Sch Comp Sci & Engn, Xiangtan 411201, Peoples R China
[4] Huaqiao Univ, Xiamen Inst Technol, Dept Comp Sci & Engn, Xiamen 361021, Peoples R China
关键词
telecare medicine information systems; user authentication; user anonymity; smart card; provable security; AVISPA; PASSWORD AUTHENTICATION; MUTUAL AUTHENTICATION; PROTOCOL; IMPROVEMENT; BIOMETRICS; CRYPTANALYSIS; EXCHANGE; IDENTITY;
D O I
10.1002/sec.1452
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Several remote user authentication techniques for telecare medicine information system (TMIS) have been proposed in the literature. But most existing techniques have limitations such as vulnerable to various attacks, lack of functionalities, and inefficiency. Recently, Amin and Biswas proposed a three-factor authentication and key agreement technique for TMIS. But their scheme is inefficient and has several security drawbacks. The attacks such as privileged-insider, user impersonation, and strong reply attacks are possible on their scheme. It also has flaw in password update phase. In order to overcome drawbacks of their scheme, a new provably secure and efficient three-factor remote user authentication scheme for TMIS is proposed in this paper. The proposed scheme overcomes all drawbacks of their scheme and also provides additional features such as user unlinkability, user anonymity, efficient password, and biometric update. The rigorous informal and formal security analysis using random oracle models and the mostly acceptable Automated Validation of Internet Security Protocols and Applications tool is also performed. During the experimentation, it has been observed that the proposed scheme is secure against various known attacks that include replay and man-in-the-middle attacks. Furthermore, the analysis of computation and communication cost estimation of the proposed scheme depicts that our scheme is efficient as compared with other related exiting schemes. Copyright (c) 2016 John Wiley & Sons, Ltd.
引用
收藏
页码:1983 / 2001
页数:19
相关论文
共 50 条
  • [41] An efficient mutual authentication and key agreement scheme preserving strong anonymity of the mobile user in global mobility networks
    Gope, Prosanta
    Hwang, Tzonelih
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 62 : 1 - 8
  • [42] Design of a Secure Three-Factor Authentication Scheme for Smart Healthcare
    Renuka, Km
    Kumari, Saru
    Li, Xiong
    JOURNAL OF MEDICAL SYSTEMS, 2019, 43 (05)
  • [43] An independent three-factor mutual authentication and key agreement scheme with privacy preserving for multiserver environment and a survey
    Chuang, Yun-Hsin
    Lei, Chin-Laung
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2021, 34 (01)
  • [44] An efficient mutual authentication and key agreement protocol preserving user anonymity in mobile networks
    Xu, Jing
    Zhu, Wen-Tao
    Feng, Deng-Guo
    COMPUTER COMMUNICATIONS, 2011, 34 (03) : 319 - 325
  • [45] An Improved User Authentication and Key Agreement Scheme Providing User Anonymity
    Ya-Fen Chang and Pei-Yu Chang Department of Computer Science and Information Engineering
    Journal of Electronic Science and Technology, 2011, 9 (04) : 352 - 358
  • [46] Provably secure biometric-based user authentication and key agreement scheme in cloud computing
    Wazid, Mohammad
    Das, Ashok Kumar
    Kumari, Saru
    Li, Xiong
    Wu, Fan
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (17) : 4103 - 4119
  • [47] An efficient multi-gateway-based three-factor user authentication and key agreement scheme in hierarchical wireless sensor networks
    Das, Ashok Kumar
    Sutrala, Anil Kumar
    Kumari, Saru
    Odelu, Vanga
    Wazid, Mohammad
    Li, Xiong
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (13) : 2070 - 2092
  • [48] A privacy preserving biometric-based three-factor remote user authenticated key agreement scheme
    Chaturvedi, Ankita
    Mishra, Dheerendra
    Jangirala, Srinivas
    Mukhopadhyay, Sourav
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2017, 32 : 15 - 26
  • [49] An efficient authentication and key agreement scheme with user anonymity for roaming service in smart city
    Li, Xiong
    Sangaiah, Arun Kumar
    Kumari, Saru
    Wu, Fan
    Shen, Jian
    Khan, Muhammad Khurram
    PERSONAL AND UBIQUITOUS COMPUTING, 2017, 21 (05) : 791 - 805
  • [50] An efficient authentication and key agreement scheme with user anonymity for roaming service in smart city
    Xiong Li
    Arun Kumar Sangaiah
    Saru Kumari
    Fan Wu
    Jian Shen
    Muhammad Khurram Khan
    Personal and Ubiquitous Computing, 2017, 21 : 791 - 805