intel / tdx-tools

Cloud Stack and Solutions for Intel TDX (Trust Domain Extension)

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

SGX is deprecated and not available in majority of Sapphire Rapids

matti opened this issue · comments

Running utils/check-tdx-host.sh gives me

image

Isn't SGX deprecated? I can't find any place to enable it in Asus Pro WS W790E-SAGE SE latest bios.

This is all "SGX" there is:

image

And at https://www.intel.com/content/www/us/en/products/sku/233484/intel-xeon-w32423-processor-15m-cache-2-10-ghz/specifications.html

image

Same with for example https://ark.intel.com/content/www/us/en/ark/products/233481/intel-xeon-w52445-processor-26-25m-cache-3-10-ghz.html

@kenplusplus so in other words, are you saying that the majority of sapphire rapids processors are not TDX compatible at all?

commented

@kenplusplus so in other words, are you saying that the majority of sapphire rapids processors are not TDX compatible at all?

Sorry, I do not know the product features definition or timeline. For SGX, I think at least you can refer above official link. TDX feature depends on SGX.

In this project you consistently refer and point to vague white papers - stop doing this.

Instead, list the concrete CPUs that will support tdx-tools.

Now if I purchase a CPU from that list then there will be another feature missing on that.

Just list concrete processors that will work and are tested.

Thank you.

commented

In this project you consistently refer and point to vague white papers - stop doing this.

Instead, list the concrete CPUs that will support tdx-tools.

Understand your point, thanks for your feedback. I have no more information about product or feature here. Could you please contact the vendor or sale representee on this?

Which CPUs are you using to test tdx-tools?

commented

Sorry to bring frustration to you. But I am not the correct person to answer product infomration.
I used the processor followed by What Intel® Xeon Processors Support for Intel® Trust Domain Extensions (Intel® TDX)?

I am asking for what CPUs is the team using to test tdx-tools internally. It's a reasonable ask.

commented

I am asking for what CPUs is the team using to test tdx-tools internally. It's a reasonable ask.

sorry, I could not share internal information here.

So only a handful of Xeons might work - for example Intel Xeon Bronze 3408U and Xeon Silver 4410Y

Most of the sapphire rapids cpus just won't work because of the missing SGX.

This is, before I purchase Intel Xeon Bronze 3408U and learn that there is something else missing.

Related #353

Basically no Sapphire Rapids supports TDX - Emerald Rapids will, see #399