FogTrust: A Lightweight Mutual Authentication and Key Agreement Protocol for Fog–IoT-Based E-Healthcare Environments
DOI:
https://doi.org/10.19139/soic-2310-5070-4129Keywords:
mutual authentication, access control, ecc, key agreement, puf, iot, fog computing, biometricsAbstract
Internet of Things (IoT) is nowadays an important component of the E-healthcare systems, enabling real-time patient status tracking in addition to highly effective medical services. Nonetheless, this integration of IoT technologies represent important security and performance challenges. We develop FogTrust, an optimized authentication and cryptographic key agreement protocol for fog–based E-Healthcare environments, founded on Elliptic Curve algorithms, biometric validation and Physical Unclonable Functions (PUFs). Our scheme ensures users, fog nodes and IoT devices anonymity and untraceability while withstanding several security attacks. Additionally, FogTrust provides a fine-grained access control phase where only authorized users are allowed to access confidential medical data. Additionally, we employ EdDSA to enhance signature efficiency and performance compared to traditional ECC-based signature schemes. FogTrust's formal security analysis is realized through the AVISPA Tool and the Scyther Tool that both demonstrate its robustness against various attacks. Along with its strong security features, FogTrust achieves high performance than alternative solutions, making it applicable in IoT devices known for there limited resources feature.Downloads
Published
2026-09-24
How to Cite
FARISS, M., & TOUMANARI, A. (2026). FogTrust: A Lightweight Mutual Authentication and Key Agreement Protocol for Fog–IoT-Based E-Healthcare Environments. Statistics, Optimization & Information Computing. https://doi.org/10.19139/soic-2310-5070-4129
License
Copyright (c) 2026 Meriam FARISS, Ahmed TOUMANARI

This work is licensed under a Creative Commons Attribution 4.0 International License.
Authors who publish with this journal agree to the following terms:
- Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution License that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
- Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
- Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).