Skip to main content
Article
Secure smart health with privacy-aware aggregate authentication and access control in Internet of Things
Journal of Network and Computer Applications
  • Yinghui ZHANG
  • Robert H. DENG, Singapore Management University
  • Gang HAN
  • Dong ZHENG
Publication Type
Journal Article
Version
acceptedVersion
Publication Date
12-2018
Abstract

With the rapid technological advancements in the Internet of Things (IoT), wireless communication and cloud computing, smart health is expected to enable comprehensive and qualified healthcare services. It is important to ensure security and efficiency in smart health. However, existing smart health systems still have challenging issues, such as aggregate authentication, fine-grained access control and privacy protection. In this paper, we address these issues by introducing SSH, a Secure Smart Health system with privacy-aware aggregate authentication and access control in IoT. In SSH, privacy-aware aggregate authentication is enabled by an anonymous certificateless aggregate signature scheme, in which users' identity information is protected based on symmetric encryption mechanisms. In addition, privacy-aware access control is based on anonymous attribute-based encryption technologies. Our formal security proofs indicate that SSH achieves batch authentication and non-repudiation under the Computational Diffie-Hellman assumption. Extensive experimental results and performance comparisons show that SSH is practical in terms of computation cost and communication overheads.

Keywords
  • Smart health,
  • Security,
  • Privacy,
  • Aggregate authentication,
  • Access control
Identifier
10.1016/j.jnca.2018.09.005
Publisher
Elsevier
Copyright Owner and License
Authors
Creative Commons License
Creative Commons Attribution-NonCommercial-No Derivative Works 4.0 International
Additional URL
https://doi.org/10.1016/j.jnca.2018.09.005
Citation Information
Yinghui ZHANG, Robert H. DENG, Gang HAN and Dong ZHENG. "Secure smart health with privacy-aware aggregate authentication and access control in Internet of Things" Journal of Network and Computer Applications Vol. 123 (2018) p. 89 - 100 ISSN: 1084-8045
Available at: http://works.bepress.com/robert-deng/320/