Skip to main content
Top
Published in: Journal of Medical Systems 5/2013

01-10-2013 | Original Paper

A Secure Biometrics-based Authentication Scheme for Telecare Medicine Information Systems

Authors: Xiaopeng Yan, Weiheng Li, Ping Li, Jiantao Wang, Xinhong Hao, Peng Gong

Published in: Journal of Medical Systems | Issue 5/2013

Login to get access

Abstract

The telecare medicine information system (TMIS) allows patients and doctors to access medical services or medical information at remote sites. Therefore, it could bring us very big convenient. To safeguard patients’ privacy, authentication schemes for the TMIS attracted wide attention. Recently, Tan proposed an efficient biometrics-based authentication scheme for the TMIS and claimed their scheme could withstand various attacks. However, in this paper, we point out that Tan’s scheme is vulnerable to the Denial-of-Service attack. To enhance security, we also propose an improved scheme based on Tan’s work. Security and performance analysis shows our scheme not only could overcome weakness in Tan’s scheme but also has better performance.
Literature
1.
go back to reference Lambrinoudakis, C., and Gritzalis, S., Managing medical and insura nce information through a smart-card-based information system. Journal of Medical Systems 24(4):213–234, 2000.CrossRef Lambrinoudakis, C., and Gritzalis, S., Managing medical and insura nce information through a smart-card-based information system. Journal of Medical Systems 24(4):213–234, 2000.CrossRef
2.
go back to reference Lamport, L., Password authentication with insecure communication. Commun ACM 24:28–30, 1981.CrossRef Lamport, L., Password authentication with insecure communication. Commun ACM 24:28–30, 1981.CrossRef
3.
go back to reference He, D., Chen, J., and Hu, J., Further improvement of Juang et al.'s password-authenticated key agreement scheme using smart cards. Kuwait Journal of Science & Engineering 38(2A):55–68, 2011.MathSciNet He, D., Chen, J., and Hu, J., Further improvement of Juang et al.'s password-authenticated key agreement scheme using smart cards. Kuwait Journal of Science & Engineering 38(2A):55–68, 2011.MathSciNet
4.
go back to reference He, D., Chen, J., and Chen, Y., A secure mutual authentication scheme for session initiation scheme using elliptic curve cryptography. Security and Communication Networks 5(12):1423–1429, 2012.CrossRef He, D., Chen, J., and Chen, Y., A secure mutual authentication scheme for session initiation scheme using elliptic curve cryptography. Security and Communication Networks 5(12):1423–1429, 2012.CrossRef
5.
go back to reference He, D., Chen, Y., and Chen, J., Cryptanalysis and improvement of an extended chaotic maps-based key agreement scheme. Nonlinear Dynamics 69(3):1149–1157, 2012.MathSciNetCrossRefMATH He, D., Chen, Y., and Chen, J., Cryptanalysis and improvement of an extended chaotic maps-based key agreement scheme. Nonlinear Dynamics 69(3):1149–1157, 2012.MathSciNetCrossRefMATH
6.
go back to reference He, D., Chen, J., and Hu, J., Improvement on a smart card based password authentication scheme. Journal of Internet Technology 13(3):405–410, 2012. He, D., Chen, J., and Hu, J., Improvement on a smart card based password authentication scheme. Journal of Internet Technology 13(3):405–410, 2012.
7.
go back to reference He, D., An efficient remote user authentication and key exchange scheme for mobile client–server environment from pairings. Ad Hoc Networks 10(6):1009–1016, 2012.CrossRef He, D., An efficient remote user authentication and key exchange scheme for mobile client–server environment from pairings. Ad Hoc Networks 10(6):1009–1016, 2012.CrossRef
8.
go back to reference He, D., Chen, J., and Hu, J., An ID-based client authentication with key agreement scheme for mobile client–server environment on ECC with provable security. Information Fusion 13(3):223–230, 2012.CrossRef He, D., Chen, J., and Hu, J., An ID-based client authentication with key agreement scheme for mobile client–server environment on ECC with provable security. Information Fusion 13(3):223–230, 2012.CrossRef
9.
go back to reference Wu, Z. Y., Lee, Y. C., Lai, F., Lee, H. C., and Chung, Y., A secure authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:1529–35, 2012.CrossRef Wu, Z. Y., Lee, Y. C., Lai, F., Lee, H. C., and Chung, Y., A secure authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:1529–35, 2012.CrossRef
10.
go back to reference He, D. B., Chen, J. H., and Zhang, R., A more secure authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:1989–1995, 2012.CrossRef He, D. B., Chen, J. H., and Zhang, R., A more secure authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:1989–1995, 2012.CrossRef
11.
go back to reference Wei, J., Hu, X., and Liu, W., An improved authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:3597–3604, 2012.CrossRef Wei, J., Hu, X., and Liu, W., An improved authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:3597–3604, 2012.CrossRef
12.
go back to reference Zhu, Z., An Efficient authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:3833–3838, 2012.CrossRef Zhu, Z., An Efficient authentication scheme for telecare medicine information systems. Journal of Medical Systems 36:3833–3838, 2012.CrossRef
14.
go back to reference Jiang, Q., Ma, J., Ma, Z., et al., A privacy enhanced authentication scheme for telecare medical information systems. Journal of medical systems, 2013. doi:10.1007/s10916-012-9897-0. Jiang, Q., Ma, J., Ma, Z., et al., A privacy enhanced authentication scheme for telecare medical information systems. Journal of medical systems, 2013. doi:10.​1007/​s10916-012-9897-0.
15.
go back to reference Lee, T., Chang, I., Lin, T., et al., A Secure and Efficient Password-Based User Authentication Scheme Using Smart Cards for the Integrated EPR Information System. Journal of medical systems, 2013. doi:10.1007/s10916-013-9941-8. Lee, T., Chang, I., Lin, T., et al., A Secure and Efficient Password-Based User Authentication Scheme Using Smart Cards for the Integrated EPR Information System. Journal of medical systems, 2013. doi:10.​1007/​s10916-013-9941-8.
16.
17.
go back to reference Kumari, S., Khan, M., and Kumar, R., Cryptanalysis and Improvement of ‘A Privacy Enhanced Scheme for Telecare Medical Information Systems. Journal of medical systems, 2012. doi:10.1007/s10916-013-9952-5. Kumari, S., Khan, M., and Kumar, R., Cryptanalysis and Improvement of ‘A Privacy Enhanced Scheme for Telecare Medical Information Systems. Journal of medical systems, 2012. doi:10.​1007/​s10916-013-9952-5.
18.
go back to reference Tan, Z., An efficient biometrics-based authentication scheme for telecare medicine information systems. Przeglad Elektrotechniczny 89(5):200–204, 2013. Tan, Z., An efficient biometrics-based authentication scheme for telecare medicine information systems. Przeglad Elektrotechniczny 89(5):200–204, 2013.
19.
go back to reference Li, C.-T., and Hwang, M.-S., An efficient biometrics-based remote user authentication scheme using smart cards. Journal of Network and Computer Applications 33:1–5, 2010.CrossRef Li, C.-T., and Hwang, M.-S., An efficient biometrics-based remote user authentication scheme using smart cards. Journal of Network and Computer Applications 33:1–5, 2010.CrossRef
20.
go back to reference Menezes, A. J., Vanstone, S. A., and Van Oorschot, P. C., Handbook of Applied Cryptography, CRC Press. Inc. Boca Raton, FL, USA, 1996.CrossRef Menezes, A. J., Vanstone, S. A., and Van Oorschot, P. C., Handbook of Applied Cryptography, CRC Press. Inc. Boca Raton, FL, USA, 1996.CrossRef
Metadata
Title
A Secure Biometrics-based Authentication Scheme for Telecare Medicine Information Systems
Authors
Xiaopeng Yan
Weiheng Li
Ping Li
Jiantao Wang
Xinhong Hao
Peng Gong
Publication date
01-10-2013
Publisher
Springer US
Published in
Journal of Medical Systems / Issue 5/2013
Print ISSN: 0148-5598
Electronic ISSN: 1573-689X
DOI
https://doi.org/10.1007/s10916-013-9972-1

Other articles of this Issue 5/2013

Journal of Medical Systems 5/2013 Go to the issue