<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re:question about sealing policy in Intel® Software Guard Extensions (Intel® SGX)</title>
    <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1534827#M5968</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Intel will no longer monitor this thread since we have provided a solution.&amp;nbsp;If you need any additional information from Intel, please submit a new question.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Cordially,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Iffa&lt;/SPAN&gt;&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Wed, 18 Oct 2023 00:44:47 GMT</pubDate>
    <dc:creator>Iffa_Intel</dc:creator>
    <dc:date>2023-10-18T00:44:47Z</dc:date>
    <item>
      <title>question about sealing policy</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1531395#M5959</link>
      <description>&lt;P&gt;as I know , there is two sealing policy ,sealing to mrenclave or mrsigner. the sealing key is derived by root sealing key. If I seal data on one processor, I can not unseal the encrypted data on another processor.(read the link: &lt;A href="https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Sealing/m-p/1062514" target="_self"&gt;https://community.intel.com/t5/Intel-Software-Guard-Extensions/Question-about-Sealing/m-p/1062514&lt;/A&gt;&amp;nbsp;), I don`t know what is the usage about this two sealing policy(to mrenclave or mrsigner), the encrypted data can not be migrated to other platform, if I use my own key to encrypt data, I can decrypt it on the other machine, but this two sealing policy can only encrypt and decrypt data on one platform, what is the meaning ?&lt;/P&gt;&lt;P&gt;And , another question , we can use&amp;nbsp;&lt;SPAN&gt;sgx_rijndael128GCM_encrypt which is sgx sdk's API&amp;nbsp; to encrypt data by our own key, what is the difference if I use my own method to encrypt data by my own key in enclave .&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 07 Oct 2023 07:33:12 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1531395#M5959</guid>
      <dc:creator>riclee</dc:creator>
      <dc:date>2023-10-07T07:33:12Z</dc:date>
    </item>
    <item>
      <title>Re: question about sealing policy</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1532869#M5963</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The advantages of using the Intel SGX Sealing methods compared to others are, they are validated by Intel to be secure, as they are designed and tested to leverage established cryptographic algorithms and best practices. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Sealing methods like MRENCLAVE and MRSIGNER provide mechanisms to detect tampering in a compatible system. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Besides, SGX sealing methods leverage the hardware-based security features of SGX, especially for supported hardware.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="uiOutputText"&gt;These are some additional information regarding Intel SGX sealing policy:&lt;/SPAN&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;A title="https://www.intel.com/content/www/us/en/developer/articles/technical/introduction-to-intel-sgx-sealing.html" href="https://www.intel.com/content/www/us/en/developer/articles/technical/introduction-to-intel-sgx-sealing.html" target="_blank" rel="noopener noreferrer"&gt;&lt;SPAN class="uiOutputText"&gt;Introduction to Intel® SGX Sealing&lt;/SPAN&gt;&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A title="https://insujang.github.io/2017-10-09/intel-sgx-sealing/#:~:text=Intel%20SGX%20provides%20two%20policies,explained%20in%20Intel%20SGX%20explained." href="https://insujang.github.io/2017-10-09/intel-sgx-sealing/#:~:text=Intel%20SGX%20provides%20two%20policies,explained%20in%20Intel%20SGX%20explained." target="_blank" rel="noopener noreferrer"&gt;&lt;SPAN class="uiOutputText"&gt;Intel SGX Sealing&lt;/SPAN&gt;&lt;/A&gt;&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;SPAN class="uiOutputText"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cordially,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Iffa&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Oct 2023 02:19:25 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1532869#M5963</guid>
      <dc:creator>Iffa_Intel</dc:creator>
      <dc:date>2023-10-12T02:19:25Z</dc:date>
    </item>
    <item>
      <title>Re:question about sealing policy</title>
      <link>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1534827#M5968</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Intel will no longer monitor this thread since we have provided a solution.&amp;nbsp;If you need any additional information from Intel, please submit a new question.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Cordially,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;Iffa&lt;/SPAN&gt;&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 18 Oct 2023 00:44:47 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-Software-Guard-Extensions/question-about-sealing-policy/m-p/1534827#M5968</guid>
      <dc:creator>Iffa_Intel</dc:creator>
      <dc:date>2023-10-18T00:44:47Z</dc:date>
    </item>
  </channel>
</rss>

