With the development of multimedia communication technology,connections between different medical units and between doctors and patients have been established through telemedicine.Telemedicine has become a brand-new medical model between medical experts and patients.At the same time,the emergence of telemedicine has also improved the efficiency of patients’ medical treatment,making it possible to seek medical treatment anytime,anywhere.However,the implementation of telemedicine requires the help of wireless body area networks.Wireless body area networks(WBANs),as a medium for realizing telemedicine,can collect and respond to patients’ data.The wireless body area network is a collection of various intelligent medical sensors in or around the patient.These sensors are portable and small intercommunication devices that can be worn or implanted in the human body to observe the symptoms of patients.However,due to the freely accessible data function on public channels,there may be some threats to the security and privacy of wireless body area networks.In addition,the digital content of telemedicine will also be transmitted and stored in various resource-limited environments such as the Internet of Things.However,the medical digital content on the open channel is also easy to be copied and distributed,which will threaten the rights and interests of digital content providers and legitimate users.Therefore,the security of patient medical information involved in telemedicine has become the focus of attention.In order to solve the security problems in wireless networks,a good method is to pass mutual authentication.Through the mutual authentication between the entities of the wireless body area network,and the keys are negotiated between them.Such an authentication and key agreement mechanism can effectively solve the security requirements of wireless body area networks on insecure communication channels.Therefore,designing a lightweight authentication scheme for wireless body area network is very necessary for telemedicine.This paper mainly studies the authentication scheme of lightweight telemedicine for wireless body area network.Fotouhi et al.proposed a lightweight medical Io T wireless body area network two-factor solution.Through analysis and research,we found that the main disadvantage of this scheme is that it occupies too much storage space for each entity during the registration and authentication phases.In order to overcome the security flaws of Fotouhi et al.’s scheme,this paper proposes an improved scheme.In our improved scheme,the data stored by each entity during the registration phase will be less than the scheme of Fotouhi et al.In addition,in the authentication phase of the improved scheme,we add some key information to the transmitted message to make the gateway node store as little data as possible.We also conducted a safety analysis on the improvement scheme.Yu et al.proposed a biometric-based digital rights management system authentication scheme.This article conducted a security analysis on it and found that the scheme of Yu et al.does not operate normally and is vulnerable to user tracking attacks and counterfeit license server attacks.In order to overcome the security flaws of Yu et al.’s scheme,this paper proposes an improved three-factor authentication scheme for digital rights management system for telemedicine,analyzes its security,and compares its computational cost with similar schemes. |