A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange

In wake of covid19, many countries are shifting their paper-based health record management from manual processes to digital ones. The major benefit of digital health record is that data can be easily shared. As health data is sensitive, more security is to be provided to gain the trust of stakeholde...

Full description

Bibliographic Details
Main Authors: B Mohinder Singh, Jaisankar Natarajan
Format: Article
Language:English
Published: Elsevier 2023-07-01
Series:Journal of King Saud University: Computer and Information Sciences
Subjects:
Online Access:http://www.sciencedirect.com/science/article/pii/S1319157823001830
_version_ 1797749216685064192
author B Mohinder Singh
Jaisankar Natarajan
author_facet B Mohinder Singh
Jaisankar Natarajan
author_sort B Mohinder Singh
collection DOAJ
description In wake of covid19, many countries are shifting their paper-based health record management from manual processes to digital ones. The major benefit of digital health record is that data can be easily shared. As health data is sensitive, more security is to be provided to gain the trust of stakeholders. In this paper, a novel secure authentication protocol is planned for digitalizing personal health record that will be used by the user. While transacting data, a key is used to secure it. Many protocols used elliptic curve cryptography. In this proposed protocol, at an initial stage, an asymmetric and quantum-resistant crypto-algorithm, Kyber is used. In further stages, symmetric crypto-algorithm, Advanced Encryption Standard in Galois/Counter mode (AES-GCM) is used to secure transferred data. For every session, a new key is generated for secure transactions. The more interesting fact in this protocol is that transactions are secured without exchanging actual key and also minimized the key exchange. This protocol not only verified the authenticity of user but also checked rightful citizenship of user. This protocol is analyzed for various security traits using ProVerif tool and provided better results relating to security provisioning, cost of storage, and computation as opposed to related protocols.
first_indexed 2024-03-12T16:16:03Z
format Article
id doaj.art-fe7a083a13ac415b94d20ba4aafbb766
institution Directory Open Access Journal
issn 1319-1578
language English
last_indexed 2024-03-12T16:16:03Z
publishDate 2023-07-01
publisher Elsevier
record_format Article
series Journal of King Saud University: Computer and Information Sciences
spelling doaj.art-fe7a083a13ac415b94d20ba4aafbb7662023-08-09T04:32:06ZengElsevierJournal of King Saud University: Computer and Information Sciences1319-15782023-07-01357101629A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchangeB Mohinder Singh0Jaisankar Natarajan1School of Computer Science and Engineering, Vellore Institute of Technology, Vellore 632014, Tamilnadu, IndiaCorresponding author.; School of Computer Science and Engineering, Vellore Institute of Technology, Vellore 632014, Tamilnadu, IndiaIn wake of covid19, many countries are shifting their paper-based health record management from manual processes to digital ones. The major benefit of digital health record is that data can be easily shared. As health data is sensitive, more security is to be provided to gain the trust of stakeholders. In this paper, a novel secure authentication protocol is planned for digitalizing personal health record that will be used by the user. While transacting data, a key is used to secure it. Many protocols used elliptic curve cryptography. In this proposed protocol, at an initial stage, an asymmetric and quantum-resistant crypto-algorithm, Kyber is used. In further stages, symmetric crypto-algorithm, Advanced Encryption Standard in Galois/Counter mode (AES-GCM) is used to secure transferred data. For every session, a new key is generated for secure transactions. The more interesting fact in this protocol is that transactions are secured without exchanging actual key and also minimized the key exchange. This protocol not only verified the authenticity of user but also checked rightful citizenship of user. This protocol is analyzed for various security traits using ProVerif tool and provided better results relating to security provisioning, cost of storage, and computation as opposed to related protocols.http://www.sciencedirect.com/science/article/pii/S1319157823001830Authentication protocoleHealth recordsPost-quantum crypto algorithmSymmetric crypto-algorithmAsymmetric crypto-algorithmMinimized key exchange
spellingShingle B Mohinder Singh
Jaisankar Natarajan
A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
Journal of King Saud University: Computer and Information Sciences
Authentication protocol
eHealth records
Post-quantum crypto algorithm
Symmetric crypto-algorithm
Asymmetric crypto-algorithm
Minimized key exchange
title A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
title_full A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
title_fullStr A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
title_full_unstemmed A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
title_short A novel secure authentication protocol for eHealth records in cloud with a new key generation method and minimized key exchange
title_sort novel secure authentication protocol for ehealth records in cloud with a new key generation method and minimized key exchange
topic Authentication protocol
eHealth records
Post-quantum crypto algorithm
Symmetric crypto-algorithm
Asymmetric crypto-algorithm
Minimized key exchange
url http://www.sciencedirect.com/science/article/pii/S1319157823001830
work_keys_str_mv AT bmohindersingh anovelsecureauthenticationprotocolforehealthrecordsincloudwithanewkeygenerationmethodandminimizedkeyexchange
AT jaisankarnatarajan anovelsecureauthenticationprotocolforehealthrecordsincloudwithanewkeygenerationmethodandminimizedkeyexchange
AT bmohindersingh novelsecureauthenticationprotocolforehealthrecordsincloudwithanewkeygenerationmethodandminimizedkeyexchange
AT jaisankarnatarajan novelsecureauthenticationprotocolforehealthrecordsincloudwithanewkeygenerationmethodandminimizedkeyexchange