{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,21]],"date-time":"2026-02-21T20:25:36Z","timestamp":1771705536235,"version":"3.50.1"},"reference-count":26,"publisher":"MDPI AG","issue":"3","license":[{"start":{"date-parts":[[2022,9,5]],"date-time":"2022-09-05T00:00:00Z","timestamp":1662336000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["JSAN"],"abstract":"<jats:p>The traditional Long-Range Wide-Area Network (LoRaWAN) uses an Advanced Encryption Standard (AES) 128 bit symmetric key to secure entities and data against several attacks. However, due to the existence of heterogeneous applications, designing a globally accepted and resilient LoRaWAN security model is challenging. Although several security models to maximize the security efficiency in LoRaWAN exist using the trusted key server to securely manage the keys, designing an optimum LoRaWAN security model is yet to be fully realized. Therefore, in this paper, we proposed two LoRaWAN security algorithms, A and B, for a trusted key management server (TKMS) to securely manage and distribute the keys amongst the entities. Algorithm B is an enhanced version of Algorithm A, which utilizes the security shortcomings of Algorithm A. We employed two formal analysis methods in the modelling, results analysis, and verification. The Scyther security verification tool was used for algorithm modelling and analysis against all possible attacks, while BAN logic was used to prove the logical correctness of the proposed algorithms. The results indicate that BAN logic feasibly proves the model logic correctness and the security claims employed in Scyther are reliable metrics for assessing the algorithms\u2019 security efficiency. The security claims proved that the security algorithm is more secure and reliable as no attacks were detected across all entities in the enhanced-Algorithm B, unlike in Algorithm A. Moreover, the application of hashing minimizes computation cost and time for authentication and message integrity as compared to symmetric and asymmetric encryption. However, the proposed algorithm is yet to be verified as completely lightweight.<\/jats:p>","DOI":"10.3390\/jsan11030052","type":"journal-article","created":{"date-parts":[[2022,9,6]],"date-time":"2022-09-06T22:33:01Z","timestamp":1662503581000},"page":"52","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["A Trusted Security Key Management Server in LoRaWAN: Modelling and Analysis"],"prefix":"10.3390","volume":"11","author":[{"given":"Koketso","family":"Ntshabele","sequence":"first","affiliation":[{"name":"Computer Science Department, North-West University, Mafikeng 2745, South Africa"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3915-4627","authenticated-orcid":false,"given":"Bassey","family":"Isong","sequence":"additional","affiliation":[{"name":"Computer Science Department, North-West University, Mafikeng 2745, South Africa"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Naison","family":"Gasela","sequence":"additional","affiliation":[{"name":"Computer Science Department, North-West University, Mafikeng 2745, South Africa"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6413-3924","authenticated-orcid":false,"given":"Adnan M.","family":"Abu-Mahfouz","sequence":"additional","affiliation":[{"name":"Council of Scientific and Industrial Research (CSIR), Pretoria 0001, South Africa"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2022,9,5]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","unstructured":"Choi, J., and Kim, Y. (2016, January 13\u201316). An Improved LEA Block Encryption Algorithm to Prevent Side-Channel Attack in the IoT System. Proceedings of the 2016 Asia-Pacific Signal and Information Processing Association Annual Summit and Conference (APSIPA), Jeju, Korea.","DOI":"10.1109\/APSIPA.2016.7820845"},{"key":"ref_2","doi-asserted-by":"crossref","unstructured":"Han, J., and Wang, J. (2018). An enhanced key management scheme for LoRaWAN. Cryptography, 2.","DOI":"10.3390\/cryptography2040034"},{"key":"ref_3","unstructured":"Hu, Z. (2021). Layered Network Protocols for Secure Communications in the Internet of Things, University of Oregon."},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"6590713","DOI":"10.1155\/2017\/6590713","article-title":"A dual key-based activation scheme for secure LoRaWAN","volume":"2017","author":"Kim","year":"2017","journal-title":"Wirel. Commun. Mob. Comput."},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Mahmood, Z., Ning, H., and Ghafoor, A. (2017). A polynomial subset-based efficient multi-party key management system for lightweight device networks. Sensors, 17.","DOI":"10.3390\/s17040670"},{"key":"ref_6","unstructured":"Na, S., Hwang, D., Shin, W., and Kim, K.-H. (2017, January 11\u201313). Scenario and Countermeasure for Replay Attack Using Join Request Messages in LoRaWAN. Proceedings of the 2017 International Conference on Information Networking (ICOIN), Da Nang, Vietnam."},{"key":"ref_7","doi-asserted-by":"crossref","unstructured":"Naoui, S., Elhdhili, M.E., and Saidane, L.A. (November, January 30). Trusted Third Party Based Key Management for Enhancing LoRaWAN security. Proceedings of the 2017 IEEE\/ACS 14th International Conference on Computer Systems and Applications (AICCSA), Hammamet, Tunisia.","DOI":"10.1109\/AICCSA.2017.73"},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Roselin, A.G., Nanda, P., and Nepal, S. (2017, January 1\u20134). Lightweight Authentication Protocol (LAUP) for 6LoWPAN Wireless Sensor Networks. Proceedings of the 2017 IEEE Trustcom\/BigDataSE\/ICESS, Sydney, Australia.","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.260"},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"1745","DOI":"10.1109\/JIOT.2019.2946919","article-title":"Experimental Investigation on Wireless Key Generation for Low-Power Wide-Area Networks","volume":"7","author":"Ruotsalainen","year":"2019","journal-title":"IEEE Internet Things J."},{"key":"ref_10","doi-asserted-by":"crossref","first-page":"6261","DOI":"10.1109\/ACCESS.2016.2613442","article-title":"TTP based high-efficient multi-key exchange protocol","volume":"4","author":"Tsai","year":"2016","journal-title":"IEEE Access"},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"45325","DOI":"10.1109\/ACCESS.2018.2852563","article-title":"AES-128 based secure low power communication for LoRaWAN IoT environments","volume":"6","author":"Tsai","year":"2018","journal-title":"IEEE Access"},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Yang, X., Karampatzakis, E., Doerr, C., and Kuipers, F. (2018, January 17\u201320). Security vulnerabilities in LoRaWAN. Proceedings of the 2018 IEEE\/ACM Third International Conference on Internet-of-Things Design and Implementation (IoTDI), Orlando, FL, USA.","DOI":"10.1109\/IoTDI.2018.00022"},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Qadir, A.M., and Varol, N. (2019, January 10\u201312). A Review Paper on Cryptography. Proceedings of the 2019 7th International Symposium on Digital Forensics and Security (ISDFS), Barcelos, Portugal.","DOI":"10.1109\/ISDFS.2019.8757514"},{"key":"ref_14","doi-asserted-by":"crossref","unstructured":"Hamza, A., and Kumar, B. (2020, January 4\u20135). A Review Paper on DES, AES, RSA Encryption Standards. Proceedings of the 2020 9th International Conference System Modeling and Advancement in Research Trends (SMART), Moradabad, India.","DOI":"10.1109\/SMART50582.2020.9336800"},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"1947","DOI":"10.1007\/s11277-020-07134-3","article-title":"Lightweight cryptography: A solution to secure IoT","volume":"112","author":"Dhanda","year":"2020","journal-title":"Wirel. Pers. Commun."},{"key":"ref_16","doi-asserted-by":"crossref","unstructured":"Zhang, Q. (2021, January 12\u201317). An Overview and Analysis of Hybrid Encryption: The Combination of Symmetric Encryption and Asymmetric Encryption. Proceedings of the 2021 2nd International Conference on Computing and Data Science (CDS), Stanford, CA, USA.","DOI":"10.1109\/CDS52072.2021.00111"},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"42","DOI":"10.1016\/j.ijinfomgt.2017.08.004","article-title":"Analyze encryption and public key infrastructure (PKI)","volume":"38","author":"Lozupone","year":"2018","journal-title":"Int. J. Inf. Manag."},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"012210","DOI":"10.1088\/1742-6596\/1314\/1\/012210","article-title":"A Comparative Analysis of the Application of Hashing Encryption Algorithms for MD5, SHA-1, and SHA-512","volume":"1314","author":"Long","year":"2019","journal-title":"J. Phys. Conf. Ser."},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Zhu, S., Zhu, C., and Wang, W. (2018). A new image encryption algorithm based on chaos and secure hash SHA-256. Entropy, 20.","DOI":"10.3390\/e20090716"},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"24993","DOI":"10.1007\/s11042-020-09111-1","article-title":"An image encryption scheme based on a hybrid model of DNA computing, chaotic systems and hash functions","volume":"79","author":"Zefreh","year":"2020","journal-title":"Multimed. Tools Appl."},{"key":"ref_21","doi-asserted-by":"crossref","unstructured":"Semal, B., Markantonakis, K., and Akram, R.N. (2018, January 23\u201327). A Certificateless Group Authenticated Key Agreement Protocol for Secure Communication in Untrusted UAV Networks. Proceedings of the 2018 IEEE\/AIAA 37th Digital Avionics Systems Conference (DASC), London, UK.","DOI":"10.1109\/DASC.2018.8569730"},{"key":"ref_22","unstructured":"Cremers, C. (2006). \u201cScyther\u201d Semantics and Verification of Security Protocols. [Ph.D. Thesis, University Press Eindhoven]."},{"key":"ref_23","doi-asserted-by":"crossref","first-page":"012002","DOI":"10.1088\/1757-899X\/453\/1\/012002","article-title":"Upgrading the S-NCI Key Establishment Protocol Scheme to be Secure and Applicable","volume":"453","author":"Budiyanto","year":"2018","journal-title":"IOP Conf. Ser. Mater. Sci. Eng."},{"key":"ref_24","first-page":"779","article-title":"A comparative analysis of tools for verification of security protocols","volume":"3","author":"Dalal","year":"2010","journal-title":"Int. J. Commun. Netw. Syst. Sci."},{"key":"ref_25","doi-asserted-by":"crossref","unstructured":"Naoui, S., Elhdhili, M.E., and Saidane, L.A. (2016, January 26\u201328). Enhancing the Security of the IoT LoraWAN Architecture. Proceedings of the 2016 International Conference on Performance Evaluation and Modeling in Wired and Wireless Networks (PEMWN), Toulouse, France.","DOI":"10.1109\/PEMWN.2016.7842904"},{"key":"ref_26","unstructured":"Lee, J., Hwang, D., Park, J., and Kim, K.-H. (2017, January 11\u201313). Risk Analysis and Countermeasure for Bit-Flipping Attack in LoRaWAN. Proceedings of the 2017 International conference on information networking (ICOIN), Da Nang, Vietnam."}],"container-title":["Journal of Sensor and Actuator Networks"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2224-2708\/11\/3\/52\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T00:23:48Z","timestamp":1760142228000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2224-2708\/11\/3\/52"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,9,5]]},"references-count":26,"journal-issue":{"issue":"3","published-online":{"date-parts":[[2022,9]]}},"alternative-id":["jsan11030052"],"URL":"https:\/\/doi.org\/10.3390\/jsan11030052","relation":{},"ISSN":["2224-2708"],"issn-type":[{"value":"2224-2708","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,9,5]]}}}