Intel® Software Guard Extensions (Intel® SGX)
Discussion board focused on hardware-based isolation and memory encryption to provide extended code protection in solutions.
1464 Discussions

differences when using QvE and QvL in DCAP RemoteAttestation

Toshi_O
Beginner
318 Views

Hello.


Is there any difference in verifiable factors when executing RemoteAttestation with DCAP compared to Trusted verification using QvE and Untrusted verification using QvL?

Labels (2)
0 Kudos
1 Reply
Scott_R_Intel
Employee
260 Views

Hello.

 

Using a QvE to verify a quote provides an SGX REPORT that can be used in local attestation to ensure the results were produce inside an SGX Enclave (QvE). The QVL results without the QvE Report could possibly be modified by an attacker between the QvL and the caller.

 

Regards.

0 Kudos
Reply