Skip to content

Tags: intel/linux-sgx

Tags

sgx_2.24_reproducible

Toggle sgx_2.24_reproducible's commit message
Updates for SGX 2.24 reproducible build.

Signed-off-by: Zhang Lili <lili.z.zhang@intel.com>

sgx_2.24

Toggle sgx_2.24's commit message

Verified

This commit was signed with the committer’s verified signature.
llly Li Xun
Linux 2.24 Open Source Gold Release

Upgraded to OpenSSL 3.0.13.
Upgraded to Intel(R) Integrated Performance Primitives (IPP) Cryptography library
  version 2021.11.
Upgraded to Protobuf 3.23.2.
Upgraded MbedTLS to 3.5.2.
Upgraded Intel DCAP Ring3 Abstraction Layer (R3AAL) library to support ConfigFS-TSM
  as communication channel between host and guest for TDX remote attestation.
Upgraded Intel DCAP Quote Verification Enclave to integrate OpenSSL/SgxSSL 3.0.13.
Upgraded new TDX attestation result “TD_RELAUNCH_ADVISED” in Intel DCAP Quote
  Verification Library (QVL) and Appraisal Engine.
Fixed bugs.

Signed-off-by: Li, Xun <xun.li@intel.com>

sgx_2.22_reproducible

Toggle sgx_2.22_reproducible's commit message
Update LE XML files.

Signed-off-by: Zhang Lili <lili.z.zhang@intel.com>

sgx_2.23

Toggle sgx_2.23's commit message

Verified

This commit was signed with the committer’s verified signature.
llly Li Xun
Update `external/dcap_source` submodule

Signed-off-by: Li, Xun <xun.li@intel.com>

sgx_2.23_reproducible

Toggle sgx_2.23_reproducible's commit message
Updates for SGX 2.23 reproducible build.

Signed-off-by: Zhang Lili <lili.z.zhang@intel.com>

sgx_2.22

Toggle sgx_2.22's commit message

Verified

This commit was signed with the committer’s verified signature.
llly Li Xun
 Linux 2.22 Open Source Gold Release

Upgraded to OpenSSL 3.0.10.
Added interoperable RA-TLS support which follows CCC design.
Enhanced Protect File System performance and added additional dependency
  `libsgx_pthread.a`.
Added the Constant Time instruction Decoder (CTD) into the default AEX-Notify
  mitigation handler in order to prevent the introduction of any additional
  subtle sidechannel leakages within the default handler.
Added Mistletoe 3 mitigations to the IPP Cryptography Library to the AES-ECB,
  AESGCM, and AES-CMAC algorithms. These have been incorporated transparently
  into the `sgx_tcrypto` library.
Resigned all Intel® SGX Architecture Enclaves.
Upgraded Intel SGX Quote Verification Enclave to integrate OpenSSL/SgxSSL 3.0.10.
Added Attestation Library support for Intel(R) TDX Migration TD.
Added Rust wrapper for low-level Quote Generation APIs.
Enabled `SE_TRACE` log in release binary.
Updated Rust QVL wrapper to use native Rust structure for quote verification
  collateral.
Added a limitation in the DCAP QVL to only allow the user to set the QvE load
  policy once.
Fixed bugs.

Signed-off-by: Li, Xun <xun.li@intel.com>

sgx_2.21

Toggle sgx_2.21's commit message
Linux 2.21 Open Source Gold Release

Upgraded to OpenSSL 1.1.1u.
Introduced Intel(R) TDX 1.4 and 1.5 support
Upgraded Ring3 Abstraction Layer (R3AAL) library to support
Intel(R) TDX MVP 6.2 kernel
Enhanced quote verification performance in multi-thread scenarios
Fixed bugs.

Signed-off-by: Zhang, Lili Z <lili.z.zhang@intel.com>

sgx_2.21_reproducible

Toggle sgx_2.21_reproducible's commit message
Updates for SGX 2.21 reproducible build.

Signed-off-by: Zhang, Lili Z <lili.z.zhang@intel.com>

sgx_2.20

Toggle sgx_2.20's commit message

Verified

This commit was signed with the committer’s verified signature.
llly Li Xun
Linux 2.20 Open Source Gold Release

Supported the AEX (Asynchronous Enclave Exit) Notify feature.
Supported Mbed-TLS Cryptography library (excluding SSL/TLS portion) in Enclave.
Applied patches to OpenSSL 1.1.1t, fixed CVE-2023-1255, CVE-2023-0465 and
  CVE-2023-0466.
Upgraded to Intel(R) Integrated Performance Primitives (IPP) Cryptography
  library version 2021.7.
Upgraded Intel SGX Quote Verification Enclave to integrate updated SgxSSL.
Enhanced the attestation local cache functionality by giving users the option
  to provide their own cache file.
Enabled QPL/QCNL log in DCAP samples.
Fixed bugs.

Signed-off-by: Li, Xun <xun.li@intel.com>

sgx_2.20_reproducible

Toggle sgx_2.20_reproducible's commit message
Updates for SGX 2.20 reproducible build.

Signed-off-by: Zhang Lili <lili.z.zhang@intel.com>