crust-sworker icon indicating copy to clipboard operation
crust-sworker copied to clipboard

Plan to extend SGX remote attestation to DCAP/ECDSA attestation?

Open ligangwangx opened this issue 3 years ago • 4 comments

According to Intel SGX Remote Attestation Portal, SGX EPID-based remote attestation is not available on 3rd Gen Xeon-SP (codenamed Ice Lake). 3rd Gen Xeon-SP only supports ECDSA-based attestation. Does the Crust community have a plan to support ECDSA-based attestation, so that Crust can run on 3rd Gen Xeon-SP to leverage its more powerful performance and much larger EPC size?

ligangwangx avatar May 11 '21 02:05 ligangwangx

Thank you for comments. We need to study this first, and we will follow up on this issue if there is a result

LowEntropyBody avatar May 11 '21 05:05 LowEntropyBody

Probably we can work together on this problem. You can contact me personally via my email: [email protected].

ligangwangx avatar May 11 '21 07:05 ligangwangx

Hi folks, this is a blocking issue for crust users to leverage 3rd Gen Xeon-SP's powerful performance and large EPC size. We have several engineers who could help on this. Please contact me, and we can discuss how to solve this issue. Thanks!

ligangwangx avatar May 12 '21 06:05 ligangwangx

When will it support?

tungh avatar Nov 30 '21 05:11 tungh