Yan Xiaopeng, Li Weiheng, Li Ping, Wang Jiantao, Hao Xinhong, Gong Peng
National Key Laboratory of Mechatronic Engineering and Control, Beijing Institute of Technology, School of Mechatronical Engineering, Beijing, China.
J Med Syst. 2013 Oct;37(5):9972. doi: 10.1007/s10916-013-9972-1. Epub 2013 Aug 31.
The telecare medicine information system (TMIS) allows patients and doctors to access medical services or medical information at remote sites. Therefore, it could bring us very big convenient. To safeguard patients' privacy, authentication schemes for the TMIS attracted wide attention. Recently, Tan proposed an efficient biometrics-based authentication scheme for the TMIS and claimed their scheme could withstand various attacks. However, in this paper, we point out that Tan's scheme is vulnerable to the Denial-of-Service attack. To enhance security, we also propose an improved scheme based on Tan's work. Security and performance analysis shows our scheme not only could overcome weakness in Tan's scheme but also has better performance.
远程护理医学信息系统(TMIS)允许患者和医生在远程站点获取医疗服务或医疗信息。因此,它能给我们带来极大的便利。为保护患者隐私,TMIS的认证方案受到广泛关注。最近,谭提出了一种针对TMIS的基于生物特征的高效认证方案,并声称他们的方案能够抵御各种攻击。然而,在本文中,我们指出谭的方案容易受到拒绝服务攻击。为提高安全性,我们还基于谭的工作提出了一种改进方案。安全性和性能分析表明,我们的方案不仅能克服谭的方案中的弱点,而且具有更好的性能。