Intel SGX Enclave with Qubes

@yann @fsflover @ppc s it possible the DOM0 and the VM kernels to be upgraded to the 5.12 version?

what about the seabios ans linux kernel

i’m not sure about it is 5.12, but you can update to newer version

Intel SGX is supported and enabled. thanks to this GitHub - intel/sgx-software-enable, and can begin running application in enclaves.

1 Like

You can install kernel-latest, currently at least at 5.14

@yann I have enabled the 5.14 kernel. Thanks!

@yann @ppc @fsflover @brendanhoar @Sven @adw Enable SGX Virtualization — Project ACRN™ v 1.6 documentation

Can the set of instructions given on the page be built into Qubes? I would request you to tag and include community managers into this thread.

Sorry to necrobump the topic, but it’s the only one dedicated to SGX and Qubes, so probably better 9like WIndows topics) to keep it here.

My dilemma is that Intel ME is now “hidden” in SGX feature of Intel non-Xeon CPUs. What is better trade off: to get a CPU without SGX if that means no Intel ME (does actually this means that?), or SGX itself is too important even for Qubes so it’s (or it’ll be) better SGX with Intel Me than without it