HSM4

‘Snap in’ security module designed for easy integration within a secure manufacturing environment,
  • Fully encapsulated

  • Single 30-pin connector

  • Extended battery
  • Soft bind lock
  • Measured identity
  • Secure key storage and generation
  • Cryptographic services

  • Physical tamper sensors
  • Manufacturing tools for high volume encryption & programming

Now Available !HSM6

With BIP 32/39/44 HD wallet,
700 foreign and private/public key slots,
enhanced security features and …..

Easy integration within a secure manufacturing environment.

Zymbit provides services, tools and processes that help manufacturers transition designs to volume manufactured product quickly and securely.
Secure manufacturing by Zymbit
Secure SD card on raspberry pi
https://www.zymbit.com/wp-content/uploads/2021/03/8Tray-1280x416.png
Secure raspberry pi

Tools that Simplify Integration

HSM4 Developer Kit

  • Everything you need to develop with HSM4.
  • Works with Raspberry Pi and NVIDIA Jetson Nano.
  • CAD files available for motherboard. 
HSM4 developer kit
ubuntu, raspberry pi OS

Software Resources

  • API’s for Python, C++, C
  • Support for Ubuntu and Raspberry Pi OS
  • Getting started guides
  • How-to examples for disk encryption….

Hardware Resources

  • PCB footprint, schematic symbol, 3D models
  • Altium Designer & CircuitStudio
  • KiCAD
  • Eagle
  • Mechanical drawings
PCB footprint, schematic symbol, 3D models

HSM4 protects credentials, data and IP
from physical and digital attacks.

HSM4 protects digital assets from cyberattacks

Essential Security with Simple API

measured system identity

Measured System Identity & Authentication

  • Unique ID created from multiple device-specific measurements.
  • Authentication required to activate cryptographic services.
  • Permanent and temporary binding modes.
  • Custom input factors available to OEMs.
data encryption

Data Encryption & Signing

  • Strong cipher suite includes ECDSA, ECDH, AES-256, SHA256
  • AES-256 encrypt/decrypt data service
  • TRNG, suitable seed for FIPS PUB 140-2, 140-3 DRNG.
  • Integrates with TLS client-side certificates
key generation

Secure Key Generation & Storage

  • Generates and stores key pairs.
  • Stored in tamper resistant silicon.
  • ZYMKEY4, HSM4 supports 3 private/public key pairs.
  • HSM6 supports 512 private/public keys, and 128 foreign public keys.
  • Learn more >
secure element

Secure Element + Security Supervisor

  • Multiple layers of hardware security.
  • Dual secure-processor architecture.
  • Secure microcontroller supervises access to cryptographic services.
  • Secure element delivers crypto-engine and key functions.  
 
low battery operation

Ultra-low-Power Operation

  • ARM Cortex-M0 microcontroller minimizes emissions footprint.
  • Enable years of secure operation from a single coin cell.
  • Delivers autonomous physical and digital security.
 
real time clock

Real Time Clock

  • Battery-backed real time clock to support off grid applications.
  • 24-36 month operation, application dependent.
  • RTC clock service available to client applications.
  • 5ppm accuracy.
 
 

Secure Integrations with HSM4

Detailed examples provide step-by-step instructions on how to integrate Zymbit into your application.
full disk encryption

Full Disk Encryption

  • Encrypt root file system with dm-crypt.
  • Protect data, applications and credentials.
  • HSM integrates seamlessly with LUKS key manager. 
  • Step-by-step guide with prewritten scripts that streamline the process.

LUKS Key Management Integration

LUKS key management integration

Physical Tamper Detect

  • Two independent perimeter circuits  provide layered protection. 
  • User configured policies and actions.
  • Notify or destroy keys on perimeter-breach event.
  • Continuous operation with onboard battery.
physical tamper detect
AWS Qualified Device_Zymbit
TLS Client Certificate Authentication
  • Generate Zymkey secured client certs.
  • Bring Your Own Certificate or use AWS.
  • Attach custom policies.
  • Secure connect  client authenticated TLS
Just In Time Client Registration
  • Simplifies large scale fleet deployments
  • Lambda function client registration

Compare Security Modules

Ready to Start?

https://www.zymbit.com/wp-content/uploads/2017/11/Zymbit-Logo-noBG-small.png

120 Cremona Drive,  Santa Barbara
California, 93117, USA
+1 (805) 481 4570

GET UPDATES