U-prove based security framework for mobile device authentication in eHealth networks
Cybersecurity in the health care domain is one of the most important and critical issues of this era. In fact, it was reported in 2014 that on the black market medical records are worth 10 times more than credit card details [1]. Datasets experience a particularly high risk when shifted to a different domain for the documentation of therapeutic or diagnostic procedures. U-Prove is a token based security concept whereby a user may disclose safely and securely a limited amount of information for authentication and verification purposes. In this paper, a U-Prove based security mechanism is proposed for mobile device authentication and authorization in the eHealthcare environment. The complete architecture of the proposed security mechanism and its detailed methodology with process flow is presented. In addition, a generic security analysis is performed to show the strength of the proposed security mechanism.
