检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:赵艳 蒋烈辉[1] ZHAO Yan;JIANG Liehui(State Key Lab of Mathematical Engineering and Advanced Computing, Zhengzhou 450001, China;College of Physical and Electronic Information, Luoyang Normal University, Luoyang 471934, China)
机构地区:[1]数学工程与先进计算国家重点实验室,河南郑州450001 [2]洛阳师范学院物理与电子信息学院,河南洛阳471934
出 处:《信息工程大学学报》2019年第4期480-486,共7页Journal of Information Engineering University
基 金:国家自然科学基金资助项目(61802431)。
摘 要:电子医疗记录的普及和远程医疗信息系统(Telecare Medical Information Systems,TMIS)的推广使异地病人获得相同的医疗服务,改善病人的就医体验。为保证病人隐私信息通过TMIS在公开网络传输时得到保护,认证协议已成为TMIS不可或缺的一部分。分析最近提出的面向TMIS的双因素认证协议的安全性,指出其在智能卡丢失的情况下无法抵抗离线字典攻击,同时未实现真正的匿名性。为克服上述安全缺陷,提出安全性增强的匿名双因素认证协议。安全性和性能分析表明,所提协议以较小的计算开销为代价,为TMIS提供更高的安全性保证,因此更适合在TMIS中部署。The popularity of electronic medical records and the spread of telecare medical information systems(TMIS)have made it possible for off-site patients to have access to the same medical services,which greatly improves the patient's medical experience.To ensure that patient privacy information is protected as it is transmitted over the public network,the authentication protocol has become an integral part of TMIS.This paper analyzes the security of a recently proposed two-factor authentication protocol for TMIS,and points out that it cannot resist offline dictionary attacks in the case of smart card loss,and also does not achieve true anonymity.To overcome the above security flaws,a security-enhanced anonymous two-factor authentication protocol is proposed.Security and performance analysis show that the proposed protocol provides a higher security guarantee for TMIS,at the cost of smaller computational overhead.Thus,it is more suitable for deployment in TMIS.
关 键 词:远程医疗信息系统 双因素认证 混沌映射 安全性分析 匿名性
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.240