Anonymous Three-Party Password-Authenticated Key Exchange Scheme for Telecare Medical Information Systems |
| |
Authors: | Qi Xie Bin Hu Na Dong Duncan S Wong |
| |
Institution: | 1. Hangzhou Key Laboratory of Cryptography and Network Security, Hangzhou Normal University, Hangzhou, China.; 2. Department of Computer Science, City University of Hong Kong, Kowloon, Hong Kong, China.; King Saud University, Kingdom of Saudi Arabia, Saudi Arabia, |
| |
Abstract: | Telecare Medical Information Systems (TMIS) provide an effective way to enhance the medical process between doctors, nurses and patients. For enhancing the security and privacy of TMIS, it is important while challenging to enhance the TMIS so that a patient and a doctor can perform mutual authentication and session key establishment using a third-party medical server while the privacy of the patient can be ensured. In this paper, we propose an anonymous three-party password-authenticated key exchange (3PAKE) protocol for TMIS. The protocol is based on the efficient elliptic curve cryptosystem. For security, we apply the pi calculus based formal verification tool ProVerif to show that our 3PAKE protocol for TMIS can provide anonymity for patient and doctor while at the same time achieves mutual authentication and session key security. The proposed scheme is secure and efficient, and can be used in TMIS. |
| |
Keywords: | |
|
|