Supermicro X13DDW-A User Manual page 110

Table of Contents

Advertisement

Super X13DDW-A User's Manual
SW Guard Extensions (SGX)
Use this feature to enable Intel Software Guard Extensions (SGX) support. Intel SGX is a set
of extensions that increases the security of application code and data by using enclaves in
memory to protect sensitive information. The options are Disabled and Enabled.
SGX Package Info In-Band Access
Setting this feature to Enabled is required before the BIOS provides software with the key
blobs, which are generated for each CPU package. The options are Disabled and Enabled.
PRM Size for SGX (Available when "SW Guard Extensions (SGX)" is set to Enabled)
Use this feature to set the Processor Reserved Memory Range Register (PRMRR) size.
The options are Auto, 128M, 256M, 512M, 1G, 2G, 4G, 8G, 16G, 32G, 64G, 128G, 256G,
and 512G. Please note that the available options are based on your motherboard features,
memory size and memory map.
SGX QoS (Available when "SW Guard Extensions (SGX)" is set to Enabled)
Use this feature to enable Intel SGX Quality of Service (QoS) support. QoS can enhance
network performance by prioritizing network traffic. The options are Disabled and Enabled.
Select Owner EPOCH Input type (Available when "SW Guard Extensions (SGX)" is
set to Enabled)
Owner EPOCH is used as a parameter to allow you to add personal entropy into the key
derivation process. A correct Owner EPOCH is required to have access to personal data
previously sealed by other platform users. There are two Owner EPOCH modes. One is New
Random Owner EPOCH , and the other is manually entered by the user. Each EPOCH is
64-bit. The options are Change to New Random Owner EPOCHs and Manual User Defined
Owner EPOCHs. Changing the Owner EPOCH value will lose the data in enclaves.
Software Guard Extensions Epoch 0 (Available when "SW Guard Extensions (SGX)"
is set to Enabled and "Select Owner EPOCH input type" is set to Manual User
Defined Owner EPOCHs)
Use this feature to enter the EPOCH value. The default is 0.
Software Guard Extensions Epoch 1 (Available when "SW Guard Extensions (SGX)"
is set to Enabled and "Select Owner EPOCH input type" is set to Manual User
Defined Owner EPOCHs)
Use this feature to enter the EPOCH value. The default is 0.
SGXLEPUBKEYHASHx Write Enable (Available when "SW Guard Extensions (SGX)"
is set to Enabled)
Use this feature to enable writes to SGXLEPUBKEYHASH[3..0] from OS/SW. The options
are Disabled and Enabled. Only those CPUs that support Intel SGX Flexible Launch Control
110

Advertisement

Table of Contents
loading

Table of Contents