- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, I'm currently researching a little about the Intel SGX technology and I find it difficult to build a trusted enclave within an untrusted operating system. Maybe there is no effective mechanism to notify a Ring3 application whether the enclave is trusted or not.
Take an example to explain the details of my question. In an untrusted OS, I can make IA32_FEATURE_CONTROL.SGX_
I do not know whether it is a bug or I lose some knowledge about SGX. Please enlighten me on this subject. Thank you.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
At the moment, not anyone can build secure enclaves and distribute them to run arbitrarily. Instead, a platform running an enclave’s code must verify its attestation with respect to an identified vendor.
-Surenthar
Link Copied
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
At the moment, not anyone can build secure enclaves and distribute them to run arbitrarily. Instead, a platform running an enclave’s code must verify its attestation with respect to an identified vendor.
-Surenthar
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Selvaraj, Surenthar wrote:
Hi,
At the moment, not anyone can build secure enclaves and distribute them to run arbitrarily. Instead, a platform running an enclave’s code must verify its attestation with respect to an identified vendor.
-Surenthar
Thank you

- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page