Article ID: 000059227 Content Type: Product Information & Documentation Last Reviewed: 07/20/2021

Is it Possible to Create and use an Intel® Software Guard Extensions (Intel® SGX) Enclave Within a Hypervisor?

BUILT IN - ARTICLE INTRO SECOND COMPONENT
Summary

Why it is not possible to run an Intel® Software Guard Extensions (Intel® SGX) enclave from within a hypervisor

Description

Unable to determine how to create an enclave that runs in a hypervisor.

Resolution

 Intel® Software Guard Extensions (Intel® SGX) enclave code consists of shared libraries that run in ring 3 mode, at the user level, and its resources are managed by the operating system (OS). An Intel SGX enclave cannot be created and run in a hypervisor because a hypervisor operates below an OS.

Related Products

This article applies to 1 products