Intel® ISA Extensions
Use hardware-based isolation and memory encryption to provide more code protection in your solutions.
Announcements
This community is designed for sharing of public information. Please do not share Intel or third-party confidential information here.

sde and loadiwkey

Beulich__Jan
Beginner
397 Views

sde, starting with clean state, runs with a zero IWKey. While LOADIWKEY is a CPL0-only insn, sde allows its use even by applications it runs for emulation. My question is whether this is intentional, to allow overcoming the "clean initial state" restriction, and hence whether this behavior is intended to remain this way going forward. If it is not, I'd like to ask for recommendations on how to put a non-zero IWKey in place.

0 Kudos
1 Reply
AdyT_Intel
Moderator
360 Views

Yes, this is intentional. Currently, we have no plans to restrict it.

Reply