An end-to-end authentication mechanism for Wireless Body Area Networks

Q2 Health Professions Smart Health Pub Date : 2023-09-01 DOI:10.1016/j.smhl.2023.100413
Mosarrat Jahan, Fatema Tuz Zohra, Md. Kamal Parvez, Upama Kabir, Abdul Mohaimen Al Radi, Shaily Kabir
{"title":"An end-to-end authentication mechanism for Wireless Body Area Networks","authors":"Mosarrat Jahan,&nbsp;Fatema Tuz Zohra,&nbsp;Md. Kamal Parvez,&nbsp;Upama Kabir,&nbsp;Abdul Mohaimen Al Radi,&nbsp;Shaily Kabir","doi":"10.1016/j.smhl.2023.100413","DOIUrl":null,"url":null,"abstract":"<div><p>Wireless Body Area Network (WBAN) ensures a high-quality healthcare service to patients by providing remote and relentless monitoring of their health conditions. Nevertheless, the patients’ health-related data are very sensitive and require security and privacy while transmitting through WBAN to maximize its benefit. User authentication is one of the primary mechanisms to protect critical data, which verifies the identities of entities involved in data transmission. Hence, in the case of health data, every entity engaged in the data transfer process over WBAN needs to be authenticated. In the literature, an end-to-end user authentication mechanism covering each communicating party must be included. Besides, most of the existing user authentication mechanisms are designed assuming that the patient’s mobile phone is trusted. However, a patient’s mobile phone can be stolen or compromised by various malware, therefore, can behave maliciously. To address these limitations, this paper proposes an end-to-end user authentication and session key agreement scheme between sensors and medical experts where the patient’s mobile phone is semi-trusted. We present a formal security analysis using BAN logic and an informal security analysis of the proposed scheme. Both studies reveal that the proposed methodology is robust against well-known security attacks. We analyze the performance of the proposed scheme by collecting real data in practical deployments and find that our scheme achieves comparable efficiency in computation, communication, and energy usage overheads concerning state-of-the-art methods. Besides, the NS-3 simulation exhibits that our proposed scheme also preserves a satisfactory network performance.</p></div>","PeriodicalId":37151,"journal":{"name":"Smart Health","volume":"29 ","pages":"Article 100413"},"PeriodicalIF":0.0000,"publicationDate":"2023-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Smart Health","FirstCategoryId":"1085","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2352648323000417","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"Health Professions","Score":null,"Total":0}
引用次数: 3

Abstract

Wireless Body Area Network (WBAN) ensures a high-quality healthcare service to patients by providing remote and relentless monitoring of their health conditions. Nevertheless, the patients’ health-related data are very sensitive and require security and privacy while transmitting through WBAN to maximize its benefit. User authentication is one of the primary mechanisms to protect critical data, which verifies the identities of entities involved in data transmission. Hence, in the case of health data, every entity engaged in the data transfer process over WBAN needs to be authenticated. In the literature, an end-to-end user authentication mechanism covering each communicating party must be included. Besides, most of the existing user authentication mechanisms are designed assuming that the patient’s mobile phone is trusted. However, a patient’s mobile phone can be stolen or compromised by various malware, therefore, can behave maliciously. To address these limitations, this paper proposes an end-to-end user authentication and session key agreement scheme between sensors and medical experts where the patient’s mobile phone is semi-trusted. We present a formal security analysis using BAN logic and an informal security analysis of the proposed scheme. Both studies reveal that the proposed methodology is robust against well-known security attacks. We analyze the performance of the proposed scheme by collecting real data in practical deployments and find that our scheme achieves comparable efficiency in computation, communication, and energy usage overheads concerning state-of-the-art methods. Besides, the NS-3 simulation exhibits that our proposed scheme also preserves a satisfactory network performance.

查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
无线体域网络的端到端认证机制
无线身体区域网络(WBAN)通过对患者的健康状况进行远程和无情的监测,确保为患者提供高质量的医疗服务。然而,患者的健康相关数据非常敏感,在通过WBAN传输时需要安全和隐私,以最大限度地提高其效益。用户身份验证是保护关键数据的主要机制之一,它验证参与数据传输的实体的身份。因此,在健康数据的情况下,通过WBAN参与数据传输过程的每个实体都需要经过身份验证。在文献中,必须包括覆盖每个通信方的端到端用户身份验证机制。此外,大多数现有的用户身份验证机制都是在假设患者的手机是可信的情况下设计的。然而,患者的手机可能会被各种恶意软件窃取或破坏,因此可能会有恶意行为。为了解决这些限制,本文提出了一种传感器和医学专家之间的端到端用户身份验证和会话密钥协商方案,其中患者的手机是半可信的。我们使用BAN逻辑进行了形式安全分析,并对所提出的方案进行了非正式安全分析。这两项研究都表明,所提出的方法对众所周知的安全攻击是稳健的。我们通过在实际部署中收集真实数据来分析所提出的方案的性能,发现我们的方案在计算、通信和能源使用开销方面达到了与最先进方法相当的效率。此外,NS-3仿真表明,我们提出的方案也保持了令人满意的网络性能。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
Smart Health
Smart Health Computer Science-Computer Science Applications
CiteScore
6.50
自引率
0.00%
发文量
81
期刊最新文献
Editorial Board Smart health practices: Strategies to improve healthcare efficiency through digital twin technology Human knowledge-based artificial intelligence methods for skin cancer management: Accuracy and interpretability study SAFE: Sound Analysis for Fall Event detection using machine learning Latent Space Representation of Adversarial AutoEncoder for Human Activity Recognition: Application to a low-cost commercial force plate and inertial measurement units
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1