DOI QR코드

DOI QR Code

Improved u-Healthcare Service Authentication Protocol based on RFID Technology

개선된 RFID 기술을 이용한 u-헬스케어 서비스 인증 프로토콜

  • Ahn, Hae-Soon (College of General Education, Daegu University) ;
  • Yoon, Eun-Jun (Dept. of Cyber Security, Kyungil University) ;
  • Bu, Ki-Dong (Dept. of Computer Engineering, Kyungil University)
  • 안해순 (대구대학교 기초교육원) ;
  • 윤은준 (경일대학교 사이버보안학과) ;
  • 부기동 (경일대학교 컴퓨터공학과)
  • Received : 2013.04.29
  • Published : 2013.10.25

Abstract

Recently, the RFID technology is combined with a u-healthcare services is an emerging trend in the field of medical services. u-healthcare service, as covering the field of personal health information beyond the level of simple health screening and treatment of life are closely related. Considering security, invasion of privacy, as well as life may be threatened even if your personal health information to be exposed or exploited illegally u-Healthcare services certification is essential. In 2012, Jeong proposed J-L patient authentication protocol that Initialization process, and patients using RFID technology separates the certification process. Jeong, such as the claim that the proposed protocol for reuse attacks, spoofing attacks, prevent information disclosure and traceability fire safety, but raises issues of security and operations efficiency. Therefore, in this paper, Jeong, such as the security of the proposed protocol and to prove the computational efficiency issues, and to enhance the safety and efficiency of RFID technology based on practical u-Healthcare services authentication protocol is proposed.

최근 RFID 기술은 u-헬스케어 서비스와 접목되어 의료서비스 분야에서 주목 받고 있는 추세이다. u-헬스케어 서비스는 개인 의료 정보를 다루는 분야로서 단순한 건강 검진 및 치료의 수준을 넘어 생명과도 밀접한 관계가 있다. 만약 개인 의료 정보가 불법적으로 노출되거나 악용될 경우 프라이버시 침해 뿐만아니라 생명까지도 위협받을 수 있으므로 보안성을 고려한 u-헬스케어 서비스 인증이 필수적으로 요구된다. 2012년에 Jeong 등은 RFID 기술을 이용하여 초기화 과정과 환자 인증 과정을 구분한 J-L 환자 인증 프로토콜을 제안하였다. Jeong등은 제안한 프로토콜에서 재사용 공격, 스푸핑 공격, 정보노출방지 및 불추적성에 대해 안전하다고 주장하였지만 보안성과 연산 효율성 문제를 발생시킨다. 따라서 본 논문에서는 Jeong 등이 제안한 프로토콜의 보안성과 연산 효율성 문제를 증명하고, 안전성과 효율성을 강화한 RFID 기술의 기반으로 하는 실용적인 u-헬스케어 서비스 인증 프로토콜을 제안한다.

Keywords

References

  1. Richard Lenz, Manfred Reichert, "IT Support for Healthcare Processes", LNCS 3649, pp. 354-363, 2005.
  2. J. M. Choi et al., "A System of Ubiquitous Health Monitoring in the Bedroom via a Bluetooth Network and Wireless LAN," in Pro. of the 26th Annual International Conference of the IEEE EMBS San Franciso, CA, USA, Sept. 1-5, 2004.
  3. J.E. Song et al., "Security Issues and Its Technology Trends in u-Healthcare", ETRI, Electronics and Telecommunications Trends, vol.22, no.1, 2007.
  4. M. S. Jang et al., "Design and Implementation of U-healthcare system with zigbee in service integration system", The Institute of Electronics Englineers of Korea, vol. 43, no. 11, pp. 16-24, 2006.
  5. S. I. Yoon et al., "The Implementation of Art Therapy Service asan Ubiquitous Health-care Service," TENCON 2004, 2004 IEEE Region 10 Conference Vol. C, pp. 200-203, Nov. 2004.
  6. H. S. Ahn et al., "A Practical Authentication System for Wireless Body Area Networks(WBAN)", The Journal of Korea Information and Communications Society, vol.37, no.4, pp.290-296, 2012.
  7. S.T. Ali et al., "Authentication of Lossy Data in Body-Sensor Networks for Healthcare Monitoring,"2012 9th Annual IEEE Communications Society Conference on Sensor, Mesh and Ad Hoc Communications and Networks(SECON), pp.470-478, 2012.
  8. Georgios Selimis et al, "A Lightweight Security Scheme for Wireless Body Area Networks: Design", Energy Evaluation and Proposed Microprocessor Design, Journal of Medical Systems, vol. 35(5), pp. 1289-1298, 2011.
  9. E. J. Yoon, K. Y. Yoo, "Patient Authentication System for Medical Information Security using RFID", The Journal of Korea Information and Communications Society, vol.35, no.6, pp.962-969, 2010.
  10. J. h. Park, S. Y. Kang, "A Research on Information Security Issue of RFID in U-Healthcare Environment", Journal of Security Engineering, vol.5, no.5, pp.359-370, 2008.
  11. Y. S. Jeong and S. H. Lee, "u-Healthcare Service Authentication Protocol based on RFID Technology", 디지털정책연구, vol. 10, no. 2, pp.153-159, 2012.
  12. Yu-Yi Chen, Jun-Chao Lu, Jinn-Ke Jan, "A Secure EHR System Based on Hybrid Clouds.", J Med Syst, 36:3375-3384, 2012. https://doi.org/10.1007/s10916-012-9830-6
  13. Tsung-Chih Hsiao et al., "An Authentication Scheme to Healthcare Security under Wireless Sensor Networks", J Med Syst (2012) DOI 10.1007/s10916-012-9839-x.
  14. Chien-Lung Hsu, Chung-Fu Lu, "A Security and Privacy Preserving E-Prescription System Based on Smart Cards", J Med Syst (2012) DOI 10.1007/s10916-012-9838-y.
  15. H. S. Ahn et al., "Improved Authentication Protocol for RFID/USN Environment", The Institute of Electronics Englineers of Korea, vol. 46, no. 1, pp. 1-10, 2009.