- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Simulation has a derive process from BASE_PROVISIONING_KEY to (simulated) PCK. Now there are three methods to derive the PCK in difference scenario:
- On Single-Package Platform, PCK is derived from SGX provisioning root key;
- On Multi-socket platform, PCK is derived from Platform root key which was encrypted by RSEK in Platform manifest;
- On Simulation Platform, PCK is derived from BASE_PROVISION_KEY.
Is that right? If it's right, do they have same derive algorithm, and the SGX provisioning root key, Platform root key,BASE_PROVISION_KEY play the same role in the derive process ?
1 Solution
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
I believe you have opened a Github thread for this topic already: https://github.com/intel/SGXDataCenterAttestationPrimitives/issues/233
The short answer however is that Simulation mode derivations are not the same as the real ones, and the real ones are not public.
Thanks,
Sahira
Link Copied
2 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
I believe you have opened a Github thread for this topic already: https://github.com/intel/SGXDataCenterAttestationPrimitives/issues/233
The short answer however is that Simulation mode derivations are not the same as the real ones, and the real ones are not public.
Thanks,
Sahira
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

Reply
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page