DOCUMENTATION

Technical documentation

Comprehensive guides, API references, and deployment documentation for integrating ZMatrix into your infrastructure.

Getting started

Quick start guides to get ZMatrix running on your systems in minutes.

📦
5 min
Installation guide
Deploy ZMatrix on bare metal or cloud

Step-by-step instructions for installing the microvisor, configuring boot parameters, and verifying the installation.

⚙️
10 min
Policy configuration
Define and compile security policies

Learn the policy DSL, compile policies, and apply them to your microvisor for immutable enforcement.

🔄
15 min
Container integration
Deploy with Docker and Kubernetes

Configure ZMatrix for container hosts, apply per-pod policies, and integrate with orchestration systems.

Core concepts

Understand the fundamental concepts behind ZMatrix's architecture and operation.

Microvisor architecture

Deep dive into the layered architecture, VMX root mode operation, and how ZMatrix mediates all privilege transitions.

Policy language specification

Complete DSL reference including syntax, semantics, policy composition, and compilation internals.

Isolation domains

How ZMatrix creates hardware-isolated domains for processes, memory, I/O, and scheduling.

Measured boot chain

TPM integration, remote attestation, and establishing trust from firmware through policy enforcement.

API reference

Low-level API documentation for runtime introspection and policy management.

REST API
Runtime introspection API
Query system state, policy status, and isolation domains
# Get current policy status
GET /api/v1/policy/status
# List isolation domains
GET /api/v1/domains
CLI
Command-line interface
Policy compilation, validation, and deployment tools
# Compile policy
zmatrix policy compile policy.zm -o policy.bin
# Validate policy
zmatrix policy validate policy.bin
gRPC
Attestation service
Remote attestation and TPM quote verification
// Request attestation quote
rpc GetAttestationQuote(QuoteRequest)
returns (QuoteResponse)

Deployment scenarios

Architecture patterns and best practices for different infrastructure types.

Bare metal servers
Direct hardware deployment

UEFI integration, PXE boot configuration, and hardware compatibility requirements.

Cloud infrastructure
AWS, Azure, GCP deployment

Metal instance configuration, nested virtualization, and cloud-specific optimizations.

Container platforms
Kubernetes and container hosts

Node configuration, per-pod policies, and orchestration integration patterns.

Need help?

Can't find what you're looking for? Our engineering team is available to help with technical questions, deployment planning, and custom integration scenarios.