- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The drivers in the 1.4 and 1.5 SGX DCAP releases have the same version number, but the files do not match. Should I be worried that this is an indicator of compromise?
$ sha256sum DCAP-1.?/sgx_linux_x64_driver_1.21.bin 6b2b35697b166b9ac291569acbcff1b79c4cec1fa8dd1745391fed8401c40d95 DCAP-1.4/sgx_linux_x64_driver_1.21.bin 5d72a9844ce4f9343a6294e68b37dff73a9dc97ac78860a769481437cd9863b6 DCAP-1.5/sgx_linux_x64_driver_1.21.bin
Link Copied
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Dmitry,
Those are the correct checksums and the files are not compromised. You can find the checksums in these files in the repositories:
https://download.01.org/intel-sgx/sgx-dcap/1.4/linux/SHA256SUM_dcap_1.4
https://download.01.org/intel-sgx/latest/dcap-latest/linux/SHA256SUM_dcap_1.5
The driver files are the same source code and the same version but they get rebuilt with the new DCAP releases so the hashes may be different.
Regards,
Jesus
Intel Customer Support


Reply
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page