Park YoHan, Park YoungHo
School of Electronics Engineering, Kyungpook National University, Daegu, South Korea.
J Med Syst. 2017 Apr;41(4):48. doi: 10.1007/s10916-017-0692-9. Epub 2017 Feb 15.
The technology of IoT combined with medical systems is expected to support advanced medical services. However, unsolved security problems, such as misuse of medical devices, illegal access to the medical server and so on, make IoT-based medical systems not be applied widely. In addition, users have a high burden of computation to access Things for the explosive growth of IoT devices. Because medical information is critical and important, but users have a restricted computing power, IoT-based medical systems are required to provide secure and efficient authentication for users. In this paper, we propose a selective group authentication scheme using Shamir's threshold technique. The property of selectivity gives the right of choice to users to form a group which consists of things users select and access. And users can get an access authority for those Things at a time. Thus, our scheme provides an efficient user authentication for multiple Things and conditional access authority for safe IoT-based medical information system. To the best of our knowledge, our proposed scheme is the first in which selectivity is combined with group authentication in IoT environments.
物联网技术与医疗系统相结合有望支持先进的医疗服务。然而,诸如医疗设备滥用、非法访问医疗服务器等未解决的安全问题,使得基于物联网的医疗系统无法得到广泛应用。此外,由于物联网设备的爆炸式增长,用户访问物联网设备时计算负担很重。因为医疗信息至关重要,但用户计算能力有限,所以基于物联网的医疗系统需要为用户提供安全高效的认证。在本文中,我们提出了一种使用 Shamir 阈值技术的选择性组认证方案。选择性属性赋予用户选择组建由其选择和访问的物联网设备组成的组的权利。并且用户可以一次获得对这些物联网设备的访问权限。因此,我们的方案为多个物联网设备提供了高效的用户认证,并为基于物联网的安全医疗信息系统提供了条件访问权限。据我们所知,我们提出的方案是首个在物联网环境中将选择性与组认证相结合的方案。