Supermicro X13DEG-PVC User Manual page 104

Table of Contents

Advertisement

Super X13DEG-PVC User's Manual
Memory Integrity (Available when both "Memory Encryption (TME)" and "Total
Memory Encryption Multi-Tenant (TME-MT)" are set to Enabled and when "Limit CPU
PA to 46 Bits" is set to Disable)
Use this feature to enable TME-MT memory integrity protection for memory transactions. The
options are Disabled and Enabled.
Key stock amount (Available
Use this feature to set the number of unique keys per system, which also indicates the number
of tenants per platform. The default setting is 1.
TME-MT key ID bits
Use this feature to set the number of bits for each key ID. The default setting is 1.
Trust Domain Extension (TDX) (Available when your CPU supports Intel TDX)
Use this feature to enable Intel Trust Domain Extension (TDX) technology support to enhance
control of data security. The options are Disabled and Enabled.
TDX Secure Arbitration Mode Loader (SEAM Loader) (Available when your CPU
supports Intel TDX)
The SEAM Loader (SEAMLDR) is used to load and update Intel TDX modules into the
SEAM memory range by verifying the digital signature. The options are Disabled and
Enabled.
----------------------------------------------------------------
Software Guard Extension (SGX)
----------------------------------------------------------------
*The following SGX features are available when "Memory Encryption (TME)" is set
to Enabled and when your CPU supports Intel SGX.
Note: Each memory channel must have at least one DIMM populated on the mother-
board to support the Intel SGX features.
SGX Factory Reset
Use this feature to perform an SGX factory reset to delete all registration data and force an
Initial Platform Establishment flow. Reboot the system for the changes to take effect. The
options are Disabled and Enabled.
SW Guard Extensions (SGX)
Use this feature to enable Intel Software Guard Extensions (SGX) support. Intel SGX is a set
of extensions that increases the security of application code and data by using enclaves in
memory to protect sensitive information. The options are Disabled and Enabled.
when "Memory Encryption (TME)" is set to Enabled)
(Available when "Memory Encryption (TME)" is set to Enabled)
104

Advertisement

Table of Contents
loading

Table of Contents