How to set up KNX Secure with Thinka

KNX

KNX Secure with Thinka — Setup Guide


Before Thinka can control KNX Secure devices, it needs to be granted access to the secure group addresses  associated with these devices. Finally, the encryption keys need to be loaded into Thinka. This involved 6 discrete steps:
  1. Import the "Thinka HomeKit bridge" into your ETS Catalog once
  2. Add the "Thinka HomeKit bridge" to your ETS project
  3. Associate the secure group address with the "Thinka HomeKit bridge"
  4. Download the configuration to affected devices
  5. Export the `.knxkeys` encryption keys from ETS
  6. Import the `.knxkeys` encryption keys in Thinka

Import Thinka device into the ETS Catalog

This has to be done once, so that the ETS Catalog knows about "Thinka HomeKit bridge". Open the Catalog panel in your ETS project and click the Import button. Download the Thinka.knxprod and Import it into the Catalog.

Add Thinka your ETS project

Search in the Catalog panel for "thinka", then drag the "Thinka HomeKit bridge" to the Topology panel.
• Download.png 115.2 KB

Then set the Individual Address in the Properties panel of ETS to the same address that you configured on the Thinka Settings page under  KNX > Individual Address. In the example below, the Individual Address is 1.1.3.
image.png 238.37 KB


Associate secure group addresses with Thinka

Now that ETS knows about Thinka and its individual address, you must configure which secure group addresses Thinka may control. From the Group Addresses panel, drag any secure dimming, switching, status or value group address to the Thinka bridge.
image.png 359.63 KB

Download the configuration to affected devices

The Topology panel shows you which devices you need to download the configuration to. This writes the Individual Address of Thinka to the authorized sender table. Otherwise, the device will ignore secure telegrams from Thinka.

image.png 291.61 KB

Export the `.knxkeys` encryption keys from ETS

Select the Thinka device and open the right-hand Properties panel. Make sure Secure Group Addresses is set to Supported, then click Export Interface Information to export the keyring. Enter a Password to protect the 
image.png 710.38 KB


Import the `.knxkeys` encryption keys in Thinka

You can provide the KNX Secure encryption keys either when importing the ETS project, or add it later on the Settings > KNX page.
Choose the exported .knxkeys file, enter the keyring password, and click Upload keyring.
image.png 139.26 KB

Screenshot 2026-06-11 at 16.12.34.png 142.64 KB
KNX Secure is now active, and Thinka can read and write your secure group addresses.