Telecoms, Datacoms, Wireless, IoT


End-to-end LoRa security solution

27 February 2019 Telecoms, Datacoms, Wireless, IoT

As the LoRa (Long Range) technology ecosystem accelerates, security remains an area for improvement in the market, due to vulnerabilities that leave the network and application server keys accessible in the memory of modules and microcontrollers (MCUs) paired with a LoRaWAN stack. If keys are accessed in a LoRaWAN device, a hacker can impersonate it and authorise fraudulent transactions, which can result in a scalable attack with substantial losses in service revenue, recovery costs and brand equity.

Microchip Technology, in partnership with The Things Industries, has developed the industry’s first end-to-end security solution that adds secure, trusted and managed authentication to LoRaWAN devices at a global scale. The solution brings hardware-based security to the LoRa ecosystem, combining the MCU- and radio-agnostic ATECC608A-MAHTN-T CryptoAuthentication device with The Things Industries’ managed join servers and Microchip’s secure provisioning service.

The joint solution simplifies provisioning LoRaWAN devices and addresses the inherent logistical challenges that come with managing LoRaWAN authentication keys from inception and throughout the life of a device.

Traditionally, network and application server keys are unprotected in the edge node, and unmonitored, as LoRaWAN devices pass through various supply chain steps and are installed in the field. The Common Criteria Joint Interpretation Library (JIL) ‘high’-rated ATECC608A comes pre-configured with secure key storage, keeping a device’s LoRaWAN secret keys isolated from the system so that sensitive keys are never exposed throughout the supply chain, nor when the device is deployed.

Microchip’s secure manufacturing facilities safely provision keys, eliminating the risk of exposure during manufacturing. Combined with The Things Industries’ agnostic secure join server service to the LoRaWAN network and application server providers, the solution decreases the risk of device identity corruption by establishing a trusted authentication when a device connects to a network.

Similar to how a prepaid data plan works for a mobile device, each purchase of an ATECC608A-MAHTN-T device comes with one year of managed LoRaWAN join server service through The Things Industries. Once a device identifies itself to join a LoRaWAN network, the network contacts the join server to verify that the identity comes from a trusted device and not a fraudulent one. The temporary session keys are then sent securely to the network server and application server of choice.

The Things Industries’ join server supports any LoRaWAN network, from commercially operated networks to private networks built on open-source components. After the one-year period, the company provides the option to extend the service.

Microchip and The Things Industries have also partnered to make the onboarding process of LoRaWAN devices seamless and secure. LoRaWAN device identities are claimed by the join server with minimal intervention, relieving developers from needing expertise in security. Customers can not only choose any LoRaWAN network but can also migrate to any other LoRaWAN join server by rekeying the device. This means there is not a vendor lock-in and customers have full control over where and how the device keys are stored.

The ATECC608A is agnostic and can be paired with any MCU and LoRa radio. Developers can deploy secure LoRaWAN devices by combining the ATECC608A with the SAM L21 MCU, supported by the Arm Mbed OS LoRaWAN stack, or the recently-announced SAM R34 system-in-package with Microchip’s LoRaWAN stack.

For rapid prototyping, designers can use the CryptoAuthoXPRO socket board and The Things Industries’ provisioned parts in samples with the SAM L21 Xplained Pro (atsamd21-xpro) or SAM R34 Xplained Pro (DM320111).

For more information contact Shane Padayachee, Avnet South Africa, +27 11 319 8600, [email protected], www.avnet.co.za





Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Mobile satellite connectivity available in SA
Telecoms, Datacoms, Wireless, IoT
Space42 has commercially launched its next generation mobile satellite service, Thuraya 4 NGS, available in South Africa as of February 2026.

Read more...
Next-gen Wi Fi 6E connectivity for embedded systems
iCorp Technologies Telecoms, Datacoms, Wireless, IoT
Espressif Systems has expanded its connectivity portfolio with the introduction of the ESP32-E22, the company’s first Wi-Fi 6E connectivity co-processor.

Read more...
Quectel redefines connectivity with RG660Qx 5G Series
iCorp Technologies Telecoms, Datacoms, Wireless, IoT
Purpose-built to meet the demands of next-generation IoT and wireless broadband, these modules leverage the cutting-edge Qualcomm X85 and X82 5G Modem-RF systems to deliver enterprise-grade performance.

Read more...
Contactless IO-Link couplers
IOT Electronics Telecoms, Datacoms, Wireless, IoT
The IO-Link couplers from Phoenix Contact are industrial contactless couplers designed to transmit power and IO-Link data across a small air gap without physical connectors.

Read more...
Quectel’s RG255C-NA and RM255C-GL accelerate 5G RedCap adoption
iCorp Technologies Editor's Choice Telecoms, Datacoms, Wireless, IoT
Quectel’s RG255C-NA and RM255C-GL modules represent a strategic move into this fast-growing segment, delivering Sub-6 GHz 5G connectivity optimised for mid-tier IoT applications.

Read more...
SDRs – Which RF architecture should you choose?
RFiber Solutions Editor's Choice Telecoms, Datacoms, Wireless, IoT
There are several common methods of implementing SDR architectures. This paper discusses which is best when meeting a specific need.

Read more...
Multi-band GNSS patch antenna
RF Design Telecoms, Datacoms, Wireless, IoT
The Taoglas AHP2356A is a compact, high-performance active GNSS patch antenna designed for next-generation positioning systems requiring precision, reliability, and multi-constellation support.

Read more...
Cellular routers for explosive areas
Phoenix Contact Telecoms, Datacoms, Wireless, IoT
Updated versions of the Cellulink outdoor cellular router product range from Phoenix Contact are now available; they have been specially developed for use in Zone 2 potentially explosive areas.

Read more...
Power the next wave of IoT innovation
Links Field Networks Telecoms, Datacoms, Wireless, IoT
Links Field Networks’ portfolio includes connectivity platforms, edge devices, and network management tools designed to support secure, resilient IoT deployments across a range of use cases.

Read more...
Move to smart agriculture
Otto Wireless Solutions Telecoms, Datacoms, Wireless, IoT
Designed for precision agriculture, the RAKwireless SensorHub is a modular, industrial-grade IoT platform that collects real-time environmental and soil data across farming operations.

Read more...









While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd | All Rights Reserved