Intel SGX Dockers in Xen VMs

12 views
Skip to first unread message

Zaro

unread,
Dec 2, 2021, 11:20:37 PM12/2/21
to sup...@graphene-project.io
Hello,

I am looking for help in running intel SGX in Qubes VMs, either running the whole VM in an enclave or running specific applications in a VM inside an enclave, and require help with the same.

I would be glad if some information or guidance could be provided.

Best,
Zaro

Sent with ProtonMail Secure Email.

publickey - Zaroe@protonmail.ch - 0x2CA0AE53.asc
signature.asc

Wojtek Porczyk

unread,
Dec 3, 2021, 7:12:05 AM12/3/21
to Zaro, sup...@graphene-project.io
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

On Thu, Dec 02, 2021 at 10:39:05AM +0000, 'Zaro' via Graphene Support Mailing List wrote:
> I am looking for help in running intel SGX in Qubes VMs, either running the
> whole VM in an enclave or running specific applications in a VM inside an
> enclave, and require help with the same.
>
> I would be glad if some information or guidance could be provided.

You should ask on qubes-users@ or qubes-devel@. gramine-direct itself works in
Qubes OS just fine, you can install it in template, but for SGX to work you
might need to configure and/or patch Xen and libvirt. I have never tried to
run gramine-sgx in Qubes.

When asking on qubes-*@ lists, it will be helpful if you first write what you
have already tried, what did and what didn't work. This way you have better
chance at getting help.


- --
pozdrawiam / best regards
Wojtek Porczyk
Gramine / Invisible Things Lab

I do not fear computers,
I fear lack of them.
-- Isaac Asimov
-----BEGIN PGP SIGNATURE-----
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=NQoy
-----END PGP SIGNATURE-----
Reply all
Reply to author
Forward
0 new messages