Intel® Software Guard Extensions (Intel® SGX)
Discussion board focused on hardware-based isolation and memory encryption to provide extended code protection in solutions.
1459 Discussions

differences when using QvE and QvL in DCAP RemoteAttestation

Toshi_O
Beginner
192 Views

Hello.


Is there any difference in verifiable factors when executing RemoteAttestation with DCAP compared to Trusted verification using QvE and Untrusted verification using QvL?

Labels (2)
0 Kudos
1 Reply
Scott_R_Intel
Employee
134 Views

Hello.

 

Using a QvE to verify a quote provides an SGX REPORT that can be used in local attestation to ensure the results were produce inside an SGX Enclave (QvE). The QVL results without the QvE Report could possibly be modified by an attacker between the QvL and the caller.

 

Regards.

0 Kudos
Reply