Abstract
Health-care service in remote environment opens for several security challenges. These may affect confidentiality, integrity, and availability of resource. Securing service is a big concern for this kind of application. Encoding is required before uploading data to remote web server. Identity management is another primary aspect to validate any service. One-time identity verification during login has no importance, because valid session may be hijacked by impostors. Compared to other techniques, identity management based on human computer interaction is simple and less costly in remote environment. Service verification also needs to be considered to control access rights along with end user verification. A secured remote service (SecReS) framework is proposed here to ensure availability of health-care resource to valid end users. This service is capable to reduce time complexity, bandwidth cost, and to increase accuracy and attack resistance capacity. Theoretical analysis shows its efficiency.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Similar content being viewed by others
References
Aleman, J.L.F., Senor, I.C., Lozoya, P.A., Toval, A.: Security and privacy in electronic health records: A systematic literature review. J. Biomed. Inf. 46(3) 541–562 (2013)
Bhattasali, T., Chaki, R., Chaki, N.: Study of security issues in pervasive environment of next generation internet of things. In: Proceedings of Computer Information Systems and Industrial Management (CISIM). Lecture Notes in Computer Science (LNCS), vol. 8104, pp. 206–217. Springer, New York (2013)
Belsis, P., Pantziou, G.: A k-anonymity privacy-preserving approach in wireless medical monitoring environments. Pers. Ubiquit. Comput. 18(1), 11–74 (2014)
Bhattasali, T., Saeed, K.: Two factor remote authentication in healthcare. In: Proceedings of IEEE International Conference on Advances in Computing, Communications and Informatics, pp. 380–381 (2014)
Barkhuus, L.: The mismeasurement of privacy: using contextual integrity to reconsider privacy in HCI. In: Proceedings of the SIGCHI Conference on Human Factors in Computing Systems, pp. 367–376 (2012)
Castro, L.A., Favela, J., Quintana, E., Perez, M.: Behavioral data gathering for assessing functional status and health in older adults using mobile phones. Pers. Ubiquitous Comput. 19(2), 379–391 (2015)
Bhattasali, T., Saeed, K., Chaki, N., Chaki, R.: A survey of security and privacy issues for biometrics based remote authentication in cloud. In: Proceedings of Computer Information Systems and Industrial Management (CISIM). Lecture Notes in Computer Science (LNCS), vol. 8838, pp. 112–121. Springer, New York (2014)
Boneh, D., Crescenzo, G., Ostrovsky, R., Persiano,G.: Public key encryption with keyword search. In: Proceedings of International Conference Theory and Applications of Cryptographic Techniques (EUROCRYPT). Lecture Notes in Computer Science (LNCS), vol. 3027, pp. 506–522, Springer, New York (2004)
Curtmola, R., Garay, J. A, Kamara, S., Ostrovsky, R.: Searchable symmetric encryption: improved definitions and efficient constructions. In: Proceedings of ACM Conference Computer and Communication Security (CCS), pp. 79–88 (2006)
Wang, C., Cao, N., Li, J., Ren, K., Lou, W. : Secure ranked keyword search over encrypted cloud data. In: Proceedings of IEEE International Conference Distributed Computing Systems (ICDCS), pp. 253–262 (2010)
Swaminathan, A., Mao, Y., Su, G.M., Gou, H., Varna, A.L., He, S., Wu, M., Oard, D.W. : Confidentiality-preserving rank-ordered search. In: Proceedings of Workshop of Storage Security and Survivability, pp. 7–12 (2007)
Martinez, S., Miret, J.M., Tomas, R., Valls, M.: Security analysis of order preserving symmetric cryptography. Appl. Math. Inf. Sci. 7(4), 1285–1295 (2013)
Cao, N., Wang, C., Li, M., Ren, K., Lou, W.: Privacy-preserving multi-keyword ranked search over encrypted cloud data. IEEE Trans. Parallel Distrib. Syst. 25(1), 222–233 (2014)
Ming, L., Yu, S., Cao, N., Lou, W.: Authorized private keyword search over encrypted data in cloud computing. In: Proceedings of IEEE International conference on distributed computing systems, pp. 383–392 (2011)
Wang, C., Cao, N., Ren, K., Lou, W.: Enabling secure and efficient ranked keyword search over outsourced cloud data. IEEE Trans. Parallel Distrib. Syst. 23(8), 1467–1479 (2012)
Ming, L., Yu, S., Cao, N., Lou, W.: Toward privacy-assured and searchable cloud data storage services. IEEE Trans. Netw. 27(4), 56–62 (2013)
Yu, J., Lu, P., Zhu, Y., Xue, G., Li, M.: Toward secure multi keyword top-k retrieval over encrypted cloud data. IEEE Trans. Dependable Secure Comput. 10(4), 239–250 (2013)
Sun, W., Wang, B., Cao, N., Li, M., Lou, W., Hou, Y.T., Li, H.: Privacy-preserving multi-keyword text search in the cloud supporting similarity-based ranking. In: Proceedings of ACM Symposium on Information, Computer and Communications Security, pp. 71–82 (2013)
Baek, J., Naini, R.S., Susilo, W.: Public key encryption with keyword search revisited. Proceedings of Computational Science and Its Applications (ICCSA). Lecture Notes in Computer Science, vol. 5072, pp. 1249–1259. Springer, Berlin/Heidelberg (2008)
Zhao, Y., Chen, X., Ma, H., Tang, Q., Zhu, H.: A new trapdoor indistinguishable public key encryption with keyword search. J. Wirel. Mobile Netw. Ubiquitous Comput. Dependable Appl. 3(1/2), 72–81 (2012)
Karnan, M., Akila, M., Krishnaraj, N.: Biometric personal authentication using keystroke dynamics: a review. Elsevier J. Appl. Soft Comput. 11(2), 1515–1573 (2011)
Li, C.T., Hwang, M.S.: An efficient biometrics based remote user authentication scheme using smart cards. J. Netw. Comput. Appl. 33(1), 1–5 (2010)
Giot, R., Abed, M.El., Hemery, B., Rosenberger, C.: Unconstrained keystroke dynamics authentication with shared secret. Elsevier Comput. Secur. 30(6–7), 427–445 (2011)
Upmanyu, M., Namboodiri,A. M., Srinathan, K., Jawahar,C.V. :Blind authentication: a secure crypto-biometric verification protocol. IEEE Trans. Inf. Forensics Secur. 5(2), 255–218 (2010)
Yeh, H.L., Chen, T.H., Hu, K.J., Shih, W.K.: Robust elliptic curve cryptography-based three factor user authentication providing privacy of biometric data. IET Inf. Secur. 7(3), 247–252 (2013)
Fan, C.I., Lin, Y.H.: Provably secure remote truly three-factor authentication scheme with privacy protection on biometrics. IEEE Trans. Inf. Forensics Secur. 4(4), 933–945 (2009)
Huang, X., Xiang, Y., Chonka, A., Zhou, J., Deng, R.H.: A generic framework for three-factor authentication: preserving security and privacy in distributed systems. IEEE Trans. Parallel Distrib. Syst. 22(8), 1390–1397 (2011)
Sun, W., Wang,B., Cao, N., Li, M., Lou, W., Hou, Y.T., Li, H, : Protecting your right: attribute-based keyword search with fine grained owner-enforced search authorization in the cloud. In: Proceedings of IEEE INFOCOM, pp. 226–234 (2014)
HL7 Version 3 Standard: Role-based Access Control Healthcare Permission Catalog, Re-lease 2, V3, RBAC. Accessed online at: http://www.hl7.org/implement /standards/ product_brief.cfm? prod-uct_id = 72
Sun, W., Wang, B., Cao, N., Li, M., Lou, W., Hou, Y.T., Li, H.: Verifiable privacy-preserving multi-keyword text search in the cloud supporting similarity-based ranking. IEEE Trans. Parallel Distrib. Syst. (TPDS) 25(11), 3025–3035 (2014)
HIPAA Security Guidance, Department of Health and Human Services, USA (2006). Accessed online at: http://www.hhs.gov/ocr/privacy/hipaa/administrative/securityrule/remoteuse.pdf
HL7 Version 3 Standard: Privacy, Access and Security Services (PASS)—Access Control. Release 1, PASS. Accessed online at: http://www.hl7.org/ implement/standards/ product_brief.cfm? prod-uct_id = 73
Bhattasali, T., Saeed, K., Chaki, N., Chaki, R.: Bio-authentication for layered remote health monitor framework. J. Med. Inf. Technol. 23(2014), 131–140 (2014)
Mayrhofer, R., Schmidtke,H.R., Sigg, S.: Security and trust in context-aware applications. Pers. Ubiquitous Comput. 18(1), 115–111 (2014)
Bhattasali, T., Chaki, R. Chaki, N. : Secure and trusted cloud of thing. In: Proceedings of IEEE India Conference, pp. 1–6 (2013)
Mahmoud, A., Niu, N.: Source code indexing for automated tracing. In: Proceedings of International Workshop on Traceability in Emerging Forms of Software Engineering, pp. 3–9 (2011)
Hu, H., Xu, J., Ren, C., Choi, B. : Processing private queries over untrusted data cloud through privacy homomorphism. In: Proceedings of IEEE International Conference Data Engineering (ICDE), pp. 601–612 (2011)
Habib, K., Torjusen, A., Leister, W.: A novel authentication framework based on bio-metric and radio fingerprinting for the IoT in eHealth. In: Proceedings of International Conference on Smart Systems, Devices and Technologies (SMART), pp. 32–37 (2014)
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2016 Springer India
About this chapter
Cite this chapter
Bhattasali, T., Chaki, R., Chaki, N., Saeed, K. (2016). Securing Service in Remote Healthcare. In: Chaki, R., Cortesi, A., Saeed, K., Chaki, N. (eds) Advanced Computing and Systems for Security. Advances in Intelligent Systems and Computing, vol 395. Springer, New Delhi. https://doi.org/10.1007/978-81-322-2650-5_5
Download citation
DOI: https://doi.org/10.1007/978-81-322-2650-5_5
Published:
Publisher Name: Springer, New Delhi
Print ISBN: 978-81-322-2648-2
Online ISBN: 978-81-322-2650-5
eBook Packages: EngineeringEngineering (R0)