A Secure Three-Factor User Authentication and Key Agreement Protocol for TMIS With User Anonymity.

Telecare medical information system (TMIS) makes an efficient and convenient connection between patient(s)/user(s) and doctor(s) over the insecure internet. Therefore, data security, privacy and user authentication are enormously important for accessing important medical data over insecure communica...

Full description

Bibliographic Details
Published in:Journal of Medical Systems Vol. 39; no. 8; pp. 1 - 20
Main Authors: Amin, Ruhul, Biswas, G.
Format: review tables/charts Journal Article
Published: Springer Nature Aug2015
Online Access:View this record in EBSCOhost
fields @attributes:
  recordID: 1
pdfLink:
plink: https://search.ebscohost.com/login.aspx?direct=true&db=ccm&AN=115925518&site=ehost-live
header:
  @attributes:
    shortDbName: ccm
    uiTerm: 115925518
    longDbName: CINAHL Complete
    uiTag: AN
  controlInfo:
    bkinfo:
    dissinfo:
    jinfo:
      jid:
        01485598
        4N0
      jtl: Journal of Medical Systems
      issn: 01485598
      maglogo: N
    pubinfo:
      dt: Aug2015
      vid: 39
      iid: 8
      pid: 237
      pub: Springer Nature
      place: New York, New York
    artinfo:
      ui:
        115925518
        115925518
        115925518
        10.1007/s10916-015-0258-7
        115925518
      ppf: 1
      ppct: 19
      formats:
        fmt:
          @attributes:
            type: P
      tig:
        atl: A Secure Three-Factor User Authentication and Key Agreement Protocol for TMIS With User Anonymity.
      aug:
        au:
          Amin, Ruhul
          Biswas, G.
        affil: Department of Computer Science & Engineering, Indian School of Mines, Dhanbad 826004 India
      sug:
        subj:
          Telemedicine
          Health Information Systems
          Data Security Methods
          Electronic Data Interchange
          Privacy and Confidentiality
          Remote Access to Information
          Smart Cards
          Patient Identification
          Identity Theft
          Electronic Health Records
      ab: Telecare medical information system (TMIS) makes an efficient and convenient connection between patient(s)/user(s) and doctor(s) over the insecure internet. Therefore, data security, privacy and user authentication are enormously important for accessing important medical data over insecure communication. Recently, many user authentication protocols for TMIS have been proposed in the literature and it has been observed that most of the protocols cannot achieve complete security requirements. In this paper, we have scrutinized two (Mishra et al., Xu et al.) remote user authentication protocols using smart card and explained that both the protocols are suffering against several security weaknesses. We have then presented three-factor user authentication and key agreement protocol usable for TMIS, which fix the security pitfalls of the above mentioned schemes. The informal cryptanalysis makes certain that the proposed protocol provides well security protection on the relevant security attacks. Furthermore, the simulator AVISPA tool confirms that the protocol is secure against active and passive attacks including replay and man-in-the-middle attacks. The security functionalities and performance comparison analysis confirm that our protocol not only provide strong protection on security attacks, but it also achieves better complexities along with efficient login and password change phase as well as session key verification property.
      pubtype: Academic Journal
      doctype:
        review
        tables/charts
        Journal Article
      ougenre: Article
    language: English
    refInfo:
    holdings:
      @attributes:
        islocal: N