{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,11]],"date-time":"2026-07-11T15:31:05Z","timestamp":1783783865039,"version":"3.55.0"},"reference-count":42,"publisher":"MDPI AG","issue":"2","license":[{"start":{"date-parts":[[2022,1,11]],"date-time":"2022-01-11T00:00:00Z","timestamp":1641859200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Sensors"],"abstract":"<jats:p>The Internet of Things (IoT) connects billions of sensors to share and collect data at any time and place. The Advanced Metering Infrastructure (AMI) is one of the most important IoT applications. IoT supports AMI to collect data from smart sensors, analyse and measure abnormalities in the energy consumption pattern of sensors. However, two-way communication in distributed sensors is sensitive and tends towards security and privacy issues. Before deploying distributed sensors, data confidentiality and privacy and message authentication for sensor devices and control messages are the major security requirements. Several authentications and encryption protocols have been developed to provide confidentiality and integrity. However, many sensors in distributed systems, resource constraint smart sensors, and adaptability of IoT communication protocols in sensors necessitate designing an efficient and lightweight security authentication scheme. This paper proposes a Payload Encryption-based Optimisation Scheme for lightweight authentication (PEOS) on distributed sensors. The PEOS integrates and optimises important features of Datagram Transport Layer Security (DTLS) in Constrained Application Protocol (CoAP) architecture instead of implementing the DTLS in a separate channel. The proposed work designs a payload encryption scheme and an Optimised Advanced Encryption Standard (OP-AES). The PEOS modifies the DTLS handshaking and retransmission processes in PEOS using payload encryption and NACK messages, respectively. It also removes the duplicate features of the protocol version and sequence number without impacting the performance of CoAP. Moreover, the PEOS attempts to improve the CoAP over distributed sensors in the aspect of optimised AES operations, such as parallel execution of S-boxes in SubBytes and delayed Mixcolumns. The efficiency of PEOS authentication is evaluated on Conitki OS using the Cooja simulator for lightweight security and authentication. The proposed scheme attains better throughput while minimising the message size overhead by 9% and 23% than the existing payload-based mutual authentication PbMA and basic DTLS\/CoAP scheme in random network topologies with less than 50 nodes.<\/jats:p>","DOI":"10.3390\/s22020534","type":"journal-article","created":{"date-parts":[[2022,1,11]],"date-time":"2022-01-11T20:33:04Z","timestamp":1641933184000},"page":"534","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":15,"title":["Lightweight Payload Encryption-Based Authentication Scheme for Advanced Metering Infrastructure Sensor Networks"],"prefix":"10.3390","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-0257-2267","authenticated-orcid":false,"given":"Nasr","family":"Abosata","sequence":"first","affiliation":[{"name":"School of Aerospace, Transport and Manufacturing, Cranfield University, Cranfield MK43 0AL, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3293-904X","authenticated-orcid":false,"given":"Saba","family":"Al-Rubaye","sequence":"additional","affiliation":[{"name":"School of Aerospace, Transport and Manufacturing, Cranfield University, Cranfield MK43 0AL, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4490-8358","authenticated-orcid":false,"given":"Gokhan","family":"Inalhan","sequence":"additional","affiliation":[{"name":"School of Aerospace, Transport and Manufacturing, Cranfield University, Cranfield MK43 0AL, UK"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1968","published-online":{"date-parts":[[2022,1,11]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"163","DOI":"10.1016\/j.comnet.2018.08.001","article-title":"Sensing, communication and security planes: A new challenge for a smart city system design","volume":"144","author":"Habibzadeh","year":"2018","journal-title":"Comput. Netw."},{"key":"ref_2","doi-asserted-by":"crossref","unstructured":"Ghasempour, A. (2019). Internet of things in smart grid: Architecture, applications, services, key technologies, and challenges. Inventions, 4.","DOI":"10.3390\/inventions4010022"},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Cleveland, F.M. (2008, January 20\u201324). Cyber security issues for Advanced Metering Infrasttructure (AMI). Proceedings of the 2008 IEEE Power and Energy Society General Meeting-Conversion and Delivery of Electrical Energy in the 21st Century, Pittsburgh, PA, USA.","DOI":"10.1109\/PES.2008.4596535"},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Chowdhury, N. (2020). A Survey of Cryptography-Based Authentication for Smart Grid Communication. Computer Security, Springer. Lecture Notes in Computer Science.","DOI":"10.1007\/978-3-030-64330-0_4"},{"key":"ref_5","doi-asserted-by":"crossref","first-page":"177447","DOI":"10.1109\/ACCESS.2020.3026923","article-title":"A Survey of Denial-of-Service Attacks and Solutions in the Smart Grid","volume":"8","author":"Huseinovic","year":"2020","journal-title":"IEEE Access"},{"key":"ref_6","doi-asserted-by":"crossref","first-page":"107094","DOI":"10.1016\/j.comnet.2019.107094","article-title":"Cyber-security on smart grid: Threats and potential solutions","volume":"169","author":"Gunduz","year":"2020","journal-title":"Comput. Netw."},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"283","DOI":"10.1016\/j.comnet.2018.11.025","article-title":"Current research on Internet of Things (IoT) security: A survey","volume":"148","author":"Noor","year":"2019","journal-title":"Comput. Netw."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Arvind, S., and Narayanan, V.A. (2019, January 15\u201316). An Overview of Security in CoAP: Attack and Analysis. Proceedings of the 2019 5th International Conference on Advanced Computing & Communication Systems (ICACCS), Coimbatore, India.","DOI":"10.1109\/ICACCS.2019.8728533"},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Surendran, S., Nassef, A., and Beheshti, B.D. (2018, January 4). A survey of cryptographic algorithms for IoT devices. Proceedings of the 2018 IEEE Long Island Systems, Applications and Technology Conference (LISAT), Farmingdale, NY, USA.","DOI":"10.1109\/LISAT.2018.8378034"},{"key":"ref_10","doi-asserted-by":"crossref","first-page":"2886","DOI":"10.1109\/COMST.2019.2899354","article-title":"Smart grid metering networks: A survey on security, privacy and open research issues","volume":"21","author":"Kumar","year":"2019","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_11","doi-asserted-by":"crossref","unstructured":"Abosata, N., Al-Rubaye, S., Inalhan, G., and Emmanouilidis, C. (2021). Internet of Things for System Integrity: A Comprehensive Survey on Security, Attacks and Countermeasures for Industrial Applications. Sensors, 21.","DOI":"10.3390\/s21113654"},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"108","DOI":"10.1016\/j.ins.2020.12.038","article-title":"A secure and privacy-preserving protocol for holding double auctions in smart grid","volume":"557","author":"Sarenche","year":"2021","journal-title":"Inf. Sci."},{"key":"ref_13","doi-asserted-by":"crossref","first-page":"396","DOI":"10.1109\/TSG.2016.2553647","article-title":"A lightweight lattice-based homomorphic privacy-preserving data aggregation scheme for smart grid","volume":"9","author":"Abdallah","year":"2018","journal-title":"IEEE Trans. Smart Grid"},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"102053","DOI":"10.1016\/j.sysarc.2021.102053","article-title":"LAKAF: Lightweight authentication and key agreement framework for smart grid network","volume":"116","author":"Khan","year":"2021","journal-title":"J. Syst. Archit."},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"7996","DOI":"10.1109\/TIE.2018.2807383","article-title":"An Anonymous ECC-Based Self-Certified Key Distribution Scheme for the Smart Grid","volume":"65","author":"Nikooghadam","year":"2018","journal-title":"IEEE Trans. Ind. Electron."},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"249","DOI":"10.1007\/s40860-020-00113-2","article-title":"Cryptanalysis and improvement of a three-factor user authentication scheme for smart grid environment","volume":"6","author":"Grover","year":"2020","journal-title":"J. Reliab. Intell. Environ."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Braeken, A., Kumar, P., and Martin, A. (2018). Efficient and provably secure key agreement for modern smart sensoring communications. Energies, 11.","DOI":"10.3390\/en11102662"},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"106121","DOI":"10.1016\/j.ijepes.2020.106121","article-title":"PALK: Password-based anonymous lightweight key agreement framework for smart grid","volume":"121","author":"Khan","year":"2020","journal-title":"Int. J. Electr. Power Energy Syst."},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"106529","DOI":"10.1016\/j.ijepes.2020.106529","article-title":"Correcting PALK: Password-based anonymous lightweight key agreement framework for smart grid","volume":"125","author":"Chaudhry","year":"2021","journal-title":"Int. J. Electr. Power Energy Syst."},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"143","DOI":"10.1016\/j.ins.2020.07.025","article-title":"Certificateless two-party authenticated key agreement scheme for smart grid","volume":"543","author":"Deng","year":"2021","journal-title":"Inf. Sci."},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"101235","DOI":"10.1109\/ACCESS.2020.2996093","article-title":"Securing Demand Response Management: A Certificate-Based Access Control in Smart Grid Edge Computing Infrastructure","volume":"8","author":"Chaudhry","year":"2020","journal-title":"IEEE Access"},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"3935","DOI":"10.1109\/JIOT.2020.2968631","article-title":"LiPSG: Lightweight Privacy-Preserving Q-Learning-Based Energy Management for the IoT-Enabled Smart Grid","volume":"7","author":"Wang","year":"2020","journal-title":"IEEE Internet Things J."},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Capossele, A., Cervo, V., De Cicco, G., and Petrioli, C. (2015, January 8\u201312). Security as a CoAP resource: An optimized DTLS implementation for the IoT. Proceedings of the 2015 IEEE International Conference on Communications (ICC), London, UK.","DOI":"10.1109\/ICC.2015.7248379"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Alghamdi, T.A., Lasebae, A., and Aiash, M. (2013, January 12\u201314). Security Analysis of the Constrained Application Protocol in the Internet of Things. Proceedings of the Second International Conference on Future Generation Communication Technology, London, UK.","DOI":"10.1109\/FGCT.2013.6767217"},{"key":"ref_25","doi-asserted-by":"crossref","unstructured":"Maleh, Y., Ezzati, A., and Belaissaoui, M. (2016, January 26\u201329). An enhanced DTLS protocol for Internet of Things applications. Proceedings of the 2016 International Conference on Wireless Networks and Mobile Communications (WINCOM), Fez, Morocco.","DOI":"10.1109\/WINCOM.2016.7777209"},{"key":"ref_26","doi-asserted-by":"crossref","first-page":"42","DOI":"10.1049\/iet-wss.2018.5077","article-title":"Forward error correction in real-time internet of things CoAP-based wireless sensor networks","volume":"9","author":"Herrero","year":"2018","journal-title":"IET Wirel. Sens. Syst."},{"key":"ref_27","doi-asserted-by":"crossref","unstructured":"Park, J., and Kang, N. (2014, January 22\u201324). Lightweight secure communication for CoAP-enabled internet of things using delegated DTLS handshake. Proceedings of the International Conference on Information and Communication Technology Convergence, Busan, Korea.","DOI":"10.1109\/ICTC.2014.6983078"},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"Hummen, R., Ziegeldorf, J.H., Shafagh, H., Raza, S., and Wehrle, K. (2013, January 19). Towards viable certificate-based authentication for the internet of things. Proceedings of the 2nd ACM Workshop on Hot Topics on Wireless Network Security and Privacy-HotWiSec\u201913, Budapest, Hungary.","DOI":"10.1145\/2463183.2463193"},{"key":"ref_29","unstructured":"Hummen, R., Shafagh, H., Raza, S., Voigt, T., and Wehrle, K. (July, January 30). Delegation-based Authentication and Authorization for the IP-based Internet of Things. Proceedings of the 11th IEEE International Conference on Sensing, Communication, and Networking, Singapore."},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"3963","DOI":"10.1007\/s11227-017-2169-5","article-title":"Enhanced DTLS with CoAP-based authentication scheme for the internet of things in healthcare application","volume":"76","author":"Kumar","year":"2020","journal-title":"J. Supercomput."},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"1028","DOI":"10.1016\/j.future.2017.08.035","article-title":"A payload-based mutual authentication scheme for Internet of Things","volume":"92","author":"Jan","year":"2019","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_32","doi-asserted-by":"crossref","first-page":"1920","DOI":"10.1109\/TASE.2018.2855640","article-title":"A Group-Oriented DTLS Handshake for Secure IoT Applications","volume":"15","author":"Park","year":"2018","journal-title":"IEEE Trans. Autom. Sci. Eng."},{"key":"ref_33","doi-asserted-by":"crossref","unstructured":"Usman, M., Ahmed, I., Imran, M., Khan, S., and Ali, U. (2017). SIT: A Lightweight Encryption Algorithm for Secure Internet of Things. Int. J. Adv. Comput. Sci. Appl., 8.","DOI":"10.14569\/IJACSA.2017.080151"},{"key":"ref_34","doi-asserted-by":"crossref","unstructured":"Ren, W., and Miao, Z. (2010, January 15\u201316). A Hybrid Encryption Algorithm Based on DES and RSA in Bluetooth Communication. Proceedings of the 2010 Second International Conference on Modeling, Simulation and Visualization Methods, Sanya, China.","DOI":"10.1109\/WMSVM.2010.48"},{"key":"ref_35","doi-asserted-by":"crossref","first-page":"38860","DOI":"10.1109\/ACCESS.2018.2852329","article-title":"M-SSE: An Effective Searchable Symmetric Encryption with Enhanced Security for Mobile Sensors","volume":"6","author":"Gao","year":"2018","journal-title":"IEEE Access"},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"573","DOI":"10.17654\/EC016030573","article-title":"Block symmetric cryptographic algorithm based on principles of variable block length and many-valued logic","volume":"16","author":"Zhdanov","year":"2016","journal-title":"Far East J. Electron. Commun."},{"key":"ref_37","doi-asserted-by":"crossref","first-page":"012039","DOI":"10.1088\/1742-6596\/1019\/1\/012039","article-title":"Super-Encryption Cryptography with IDEA and WAKE Algorithm","volume":"1019","author":"Abdullah","year":"2018","journal-title":"J. Phys. Conf. Ser."},{"key":"ref_38","doi-asserted-by":"crossref","first-page":"12042","DOI":"10.1088\/1757-899X\/300\/1\/012042","article-title":"Hybrid Cryptosystem Using Tiny Encryption Algorithm and LUC Algorithm","volume":"300","author":"Rachmawati","year":"2018","journal-title":"IOP Conf. Ser. Mater. Sci. Eng."},{"key":"ref_39","doi-asserted-by":"crossref","first-page":"12037","DOI":"10.1088\/1742-6596\/1007\/1\/012037","article-title":"SMS Security System on Mobile Sensors Using Tiny Encryption Al-gorithm","volume":"1007","author":"Novelan","year":"2018","journal-title":"J. Phys. Conf. Ser."},{"key":"ref_40","doi-asserted-by":"crossref","unstructured":"Rajesh, S., Paul, V., Menon, V.G., and Khosravi, M.R. (2019). A secure and efficient lightweight symmetric encryption scheme for transfer of text files between embedded Smart sensors. Symmetry, 11.","DOI":"10.3390\/sym11020293"},{"key":"ref_41","unstructured":"Al-Zubaidie, M., Zhang, Z., and Zhang, J. (2019). Efficient and secure ECDSA algorithm and its applications: A survey. arXiv."},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"15610","DOI":"10.3390\/s140815610","article-title":"Analytical model of large data transactions in coap networks","volume":"14","author":"Ludovici","year":"2014","journal-title":"Sensors"}],"container-title":["Sensors"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1424-8220\/22\/2\/534\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,13]],"date-time":"2025-10-13T14:14:52Z","timestamp":1760364892000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1424-8220\/22\/2\/534"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,1,11]]},"references-count":42,"journal-issue":{"issue":"2","published-online":{"date-parts":[[2022,1]]}},"alternative-id":["s22020534"],"URL":"https:\/\/doi.org\/10.3390\/s22020534","relation":{},"ISSN":["1424-8220"],"issn-type":[{"value":"1424-8220","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,1,11]]}}}