Intel® NUCs
Assistance in Intel® NUC products
Announcements
The Intel sign-in experience has changed to support enhanced security controls. If you sign in, click here for more information.
12986 Discussions

FLC support for NUC10i7FNH

Avnish
Beginner
819 Views

Hi,

I need to understand if intel NUC (NUC10i7FNH to be specific) has a bios version that support FLC (Flexible Launch Control). I need this feature in order to make sgx  DCAP driver work on my NUC. Apparently DCAP is dependent on FLC as pre following (and many other) document -

https://software.intel.com/content/www/us/en/develop/blogs/an-update-on-3rd-party-attestation.html

Even with the latest bios update for my NUC (NUC10i7FNH), I do not find any option for Flexible Launch Control. I have already tried with Ubuntu 18.04 and cpuid is reporting FLC as not supported feature. 

As per following (2 yrs old) thread, intel planned to add support for FLC in NUC bios - 

https://community.intel.com/t5/Intel-NUCs/SGX-Feature-Control-MSR-in-NUC-7CJYH-Bios/td-p/610457

Even this thread has no timelines mentioned and I am not able to find FLC support claimed (or denied) anywhere in NUC/intel documentation so far. 

Any help or visibility in NUC FLC support is much appreciated!!

Thanks
Avnish

0 Kudos
9 Replies
AndrewG_Intel
Moderator
795 Views

Hello @Avnish

Thank you for posting on the Intel® communities.

Please allow us to check further regarding your inquiry about BIOS support for FLC (Flexible Launch Control). As soon as we have more details available, we will be posting back in the thread.


Best regards,

Andrew G.

Intel Customer Support Technician


Avnish
Beginner
776 Views

Hi @AndrewG_Intel ,

Hope you got a chance to circulate this request internally and get some info regarding FLC support in NUC10i7FNH BIOS. Please let me know if there's any update.

For my current work items, I definitely need DCAP driver (thus FLC support) on my machine. I'll start searching for alternate hardware based on your response. 

Thanks
Avnish

Mark_S_Intel2
Employee
743 Views

Hi @AndrewG_Intel

Any update on whether this platform will support SGX FLC?

Regards,

Mark 

Ronny_G_Intel
Community Manager
710 Views

Hi Mark,

I apologize for the delay in getting back to you.

I have confirmation from our BIOS Engineering that FLC isn't currently supported with the current BIOS.

Can you please let me know how many units you need FLC for? Is this for the enterprise, small business or just a single unit? Depending in the quantity of units requiring this feature I can go back and submit a request for it. I cant promise anything at this point and usually this type of feature request requires a large number of unit to justify the resource allocation.

 

Thanks,

Ronny G

MarkS
Beginner
700 Views

Hi Ronny G, 

Thank you for the response.

We are looking for a limited number (approx. 4) of platforms to support SGX FLC in order to perform testing on SGX Software.

Thank you, 

Mark

AndrewG_Intel
Moderator
687 Views

Hello Avnish

Thank you very much for your response and for confirming those details. We are reviewing this internally and we will be posting more details as soon as possible.


Best regards,

Andrew G.

Intel Customer Support Technician


Avnish
Beginner
682 Views

Hi Andrew,

I believe last post was from Mark who happen to have same problem as me.

As far as my use case is concerned, we are actively developing and testing SGX solutions and even as of today we have 20+ NUC boxes for local development and testing purposes across our team members. As it stands, this number is bound to grow, my projection will be ~50 NUC boxes within next couple of months. Having said that, we are seriously considering moving away from NUC since it's capabilities are limited to EPID only and we need local development system that support both EPID and DCAP. Having this support in NUC will be huge benefit for sure. 

Hope this insights helps. 

Ronny_G_Intel
Community Manager
678 Views

Hi Avnish, MarkS,

I have submitted this request to the Product Team, we don't want to lose you as a customers but realistically it may be very difficult to deploy a quick solution for this request so I cannot promise anything at this point.

I will keep you informed.

 

Regards,

Ronny G

Ronny_G_Intel
Community Manager
659 Views

Hi Avnish, MarkS,

 

Unfortunately I just got confirmation that there are no plans to add this feature to our existing product family currently available in the market today and I cant really provide much details about future products but this feature is not part of the design as far as I am aware of.

 

I wish I had better news but that's what I have for now.

 

Regards,

Ronny G

Reply