Zymbit Documentation

Zymbit Documentation

Welcome to Zymbit’s Documentation Site! Here, you will find all the resources you need to learn about and to use all Zymbit hardware and software.

Info

Recent Updates - December 2025:

  • Release of new HSM
    • HSM 60 (Order) - Security Module for Pi Compute Modules
    • ZYMKEY5 (Pre-Order) - Plug-in hardware security module (for Raspberry Pi).

Details: December 2025 Update

Latest STABLE Platform and OS Support

Pi Platform:SEN-500/CM5SEN-400/CM4Pi5Pi4
Zymbit HSMs:Zymkey,HSM60Zymkey,HSM60,SCMZymkeyZymkey
Raspberry Pi OS Bookworm (64-bit)    
Raspberry Pi OS Bullseye (64-bit) 1 1
Ubuntu 24.04.3 LTS Noble (64-bit)    
Ubuntu 22.04 LTS Jammy (64-bit) 1 1

Full Bootware Support

NOTICE: Changes from the Pi foundation to the Pi5/CM5 firmware are incompatible with Bootware. Symptom is Bootware cannot access ethernet or USB to retrieve and update image. You won’t see the problem with the 11/19 release. The 11/19 release can be downloaded from here: Pi5 Raspberry Pi OS Lite 64-bit 2024-11-19

Contact support for PiZero 2W.


December 2025


  • Released HSM 60 - Security Module for Pi Compute Modules

  • Released ZYMKEY5 - Plug-in hardware security module (for Raspberry Pi).

  • zkifc

    • Installation script can now set the distribution via an environment variable. This allows pointing a newer distribution to use an older repo. For example, to point any OS at the Zymbit bookworm repo, do the following on your Pi,
    export distro=bookworm
    curl -fsSL https://s3.amazonaws.com/zk-sw-repo/install_zk_sw.sh | sudo -E bash

Bootware® 1.3.2-3

  • Open bugs:
    • #208: zbcli update-config doesn’t allow you to clear wifi SSID and Passphrase, takes "" as valid characters.
    • #205: zbcli update-config cli errors off with Invalid Parameter: user. Workaround is to provide one option at a time.
    • #200: zbcli update confirmation screen indicates password has been set to change when it hasn’t
    • #199: Multiple copies of rollback message in MOTD. Also refers to rollback as rollover.
    • #196: overlay .zi images saves files as root regardless of what it was owned by before.
    • #195: If you delete the DATA partition with your update policy not set to BOTH, zboot does not inject the new data key into the non-updated partition’s initramfs. If the user switches to the non-updated partition, the data key will return bad passphrase from initramfs. The system will timeout, boot up, and unlock the partition’s LUKS volume. Access to the shared LUKS data partition will be unavailable.

Previous Release Notes are in the Troubleshooting section.




  1. For Bootware to use Wi-Fi to retrieve images from remote endpoints on Pi4/CM4 running either Ubuntu 22.04 (jammy) or Bullseye, you must use the latest dtb file, available here:↩︎ ↩︎ ↩︎ ↩︎