Intel Software Guard Extensions Platform Software for Windows* OS Release Notes

Similar documents
Intel Software Guard Extensions SDK for Linux* OS. Installation Guide

Clear CMOS after Hardware Configuration Changes

Intel Unite Plugin Guide for VDO360 Clearwater

Intel Unite. Intel Unite Firewall Help Guide

INTEL PERCEPTUAL COMPUTING SDK. How To Use the Privacy Notification Tool

Installation Guide and Release Notes

Intel System Debugger 2018 for System Trace Linux* host

Intel Stress Bitstreams and Encoder (Intel SBE) 2017 AVS2 Release Notes (Version 2.3)

Intel Xeon Phi Coprocessor. Technical Resources. Intel Xeon Phi Coprocessor Workshop Pawsey Centre & CSIRO, Aug Intel Xeon Phi Coprocessor

Intel Media Server Studio 2018 R1 Essentials Edition for Linux* Release Notes

Intel Unite Solution Intel Unite Plugin for WebEx*

Sample for OpenCL* and DirectX* Video Acceleration Surface Sharing

Intel Compute Card Slot Design Overview

Intel Unite Solution. Linux* Release Notes Software version 3.2

12th ANNUAL WORKSHOP 2016 NVME OVER FABRICS. Presented by Phil Cayton Intel Corporation. April 6th, 2016

Modernizing Meetings: Delivering Intel Unite App Authentication with RFID

OpenCL* and Microsoft DirectX* Video Acceleration Surface Sharing

Installation Guide and Release Notes

Intel Unite Solution Version 4.0

Intel Cache Acceleration Software for Windows* Workstation

Intel Software Guard Extensions (SGX) SW Development Guidance for Potential Bounds Check Bypass (CVE ) Side Channel Exploits.

Installation Guide and Release Notes

Intel Xeon W-3175X Processor Thermal Design Power (TDP) and Power Rail DC Specifications

Intel QuickAssist for Windows*

LED Manager for Intel NUC

Intel Parallel Studio XE 2011 for Windows* Installation Guide and Release Notes

Intel Manycore Platform Software Stack (Intel MPSS)

Localized Adaptive Contrast Enhancement (LACE)

Building an Android* command-line application using the NDK build tools

SELINUX SUPPORT IN HFI1 AND PSM2

Intel & Lustre: LUG Micah Bhakti

Intel Analysis of Speculative Execution Side Channels

Intel Unite Solution Version 4.0

Intel Desktop Board DZ68DB

Jomar Silva Technical Evangelist

Evolving Small Cells. Udayan Mukherjee Senior Principal Engineer and Director (Wireless Infrastructure)

Välkommen. Intel Anders Huge

The Intel Processor Diagnostic Tool Release Notes

Intel Parallel Studio XE 2011 SP1 for Linux* Installation Guide and Release Notes

Intel Visual Compute Accelerator Product Family

Intel Visual Compute Accelerator Product Family

Intel Unite Solution Intel Unite Plugin for Ultrasonic Join

Intel System Information Retrieval Utility

Expand Your HPC Market Reach and Grow Your Sales with Intel Cluster Ready

Intel Unite Plugin for Logitech GROUP* and Logitech CONNECT* Devices INSTALLATION AND USER GUIDE

How to Create a.cibd File from Mentor Xpedition for HLDRC

Running Docker* Containers on Intel Xeon Phi Processors

OpenMP * 4 Support in Clang * / LLVM * Andrey Bokhanko, Intel

Intel Omni-Path Fabric Manager GUI Software

Bitonic Sorting. Intel SDK for OpenCL* Applications Sample Documentation. Copyright Intel Corporation. All Rights Reserved

Intel Security Dev API 1.0 Production Release

Upgrading Intel Server Board Set SE8500HW4 to Support Intel Xeon Processors 7000 Sequence

Intel QuickAssist for Windows*

Re-Architecting Cloud Storage with Intel 3D XPoint Technology and Intel 3D NAND SSDs

BIOS Implementation of UCSI

Intel Integrated Native Developer Experience 2015 Build Edition for OS X* Installation Guide and Release Notes

H.J. Lu, Sunil K Pandey. Intel. November, 2018

Intel Media Server Studio 2017 R3 Essentials Edition for Linux* Release Notes

MICHAL MROZEK ZBIGNIEW ZDANOWICZ

SDK API Reference Manual for VP8. API Version 1.12

CREATING A COMMON SOFTWARE VERBS IMPLEMENTATION

Intel Unite Solution Version 4.0

Intel Unite Solution. Plugin Guide for Protected Guest Access

Intel Parallel Studio XE 2011 for Linux* Installation Guide and Release Notes

LNet Roadmap & Development. Amir Shehata Lustre * Network Engineer Intel High Performance Data Division

Intel Media Server Studio Professional Edition for Linux*

Intel Desktop Board DP55SB

Vectorization Advisor: getting started

Intel True Scale Fabric Switches Series

Intel vpro Technology Virtual Seminar 2010

Intel RealSense D400 Series Calibration Tools and API Release Notes

Installation Guide and Release Notes

Small File I/O Performance in Lustre. Mikhail Pershin, Joe Gmitter Intel HPDD April 2018

Intel Software Development Products Licensing & Programs Channel EMEA

Bitonic Sorting Intel OpenCL SDK Sample Documentation

Intel 848P Chipset. Specification Update. Intel 82848P Memory Controller Hub (MCH) August 2003

Optimization of Lustre* performance using a mix of fabric cards

Intel Stress Bitstreams and Encoder (Intel SBE) HEVC Getting Started

Intel Unite Solution. Plugin Guide for Protected Guest Access

Intel Omni-Path Fabric Manager GUI Software

Intel vpro Technology Virtual Seminar 2010

Intel Parallel Studio XE 2015 Composer Edition for Linux* Installation Guide and Release Notes

Analyze and Optimize Windows* Game Applications Using Intel INDE Graphics Performance Analyzers (GPA)

Intel Desktop Board D946GZAB

Intel Desktop Board DG41CN

How to Create a.cibd/.cce File from Mentor Xpedition for HLDRC

NVDIMM DSM Interface Example

Intel RealSense Depth Module D400 Series Software Calibration Tool

White Paper. May Document Number: US

Intel Firmware Support Package (Intel FSP) for Intel Xeon Processor D Product Family (formerly Broadwell-DE), Gold 001

An introduction to today s Modular Operating System

Intel Server Board S2600STB

Intel Cluster Checker 3.0 webinar

Intel Stereo 3D SDK Developer s Guide. Alpha Release

Intel Desktop Board D945GCLF2

Intel System Event Log Viewer Utility

Intel Unite. Enterprise Test Environment Setup Guide

Software Evaluation Guide for ImTOO* YouTube* to ipod* Converter Downloading YouTube videos to your ipod

Intel s Architecture for NFV

Fast-track Hybrid IT Transformation with Intel Data Center Blocks for Cloud

Transcription:

Intel Software Guard Extensions Platform Software for Windows* OS Release Notes Installation Guide and Release Notes November 3, 2016 Revision: 1.7 Gold Contents: Introduction What's New System Requirements Installation Notes Known Issues and Limitations Disclaimer and Legal Information 1

1 Introduction This document provides system requirements, installation instructions, limitations and legal information for Intel Software Guard Extensions (Intel SGX) platform software (PSW) for Windows*. Product Contents Intel Software Guard Extensions PSW package includes the following software components: Ingredient Binary Version String Intel SGX Runtime System Library 1.7.100.35600 Intel SGX Launcher Enclave 1.7.100.34769 Intel SGX Platform Services Initialization Enclave 1.7.100.35258 Intel SGX Quoting Enclave 1.6.101.32775 Intel SGX Provisioning Enclave Intel SGX Provisioning Cert Enclave Intel SGX Platform Services Operation Enclave Intel SGX Application Enclave Service (AESM) 1.7.100.35600 Intel SGX Windows* 7/8.1/10 driver (64 bit only) 1.6.80.31049 2 What's New Intel Software Guard Extensions PSW includes the following changes comparing to 1.6 Gold PSW: Use new Intel SGX Launcher Enclave to support 2048 enclave launch white-list entries Use enclave launch white-list file version 10 by default Updated Intel SGX Platform Service Dal applet (PSDA) to support longer operation latency 2

Release PSW installation executable file (EXE) Updated Intel Platform Service Initialization Enclave for bug fix Ability to query the PSW version string Bug fixes 3 System Requirements Hardware Requirements 6 th Generation Intel Core Processor (Intel microarchitecture code name Skylake) 7 th Generation Intel Core Processor (Intel microarchitecture code name KabyLake) Firmware Requirements The 6 th Generation Intel Core Processor (Intel microarchitecture code name Skylake) BIOS RC 0.7 or newer if the system is using an Intel reference BIOS. The 7 th Generation Intel Core Processor (Intel microarchitecture code name KabyLake) BIOS RC 1.0.5 (BIOS 52.2) or newer if the system is using an Intel reference BIOS Software Requirements Supported operating systems for the Intel SGX PSW installer: o Microsoft Windows* 7/Threshold2/Redstone1/Redstone2 64-bit version. Note: Intel SGX PSW does not support Microsoft Windows* 32-bit operating system. If you need to use Intel SGX platform service, install the following product: o Full set of Intel Management Engine (ME) software components 11.6.0.1126 or newer Note: To install the full set of Intel Management Engine (ME) software components, you need to install with SetupMe.exe instead of MEISetup.exe (HECI driver only). 4 Installation Notes Before installing Intel SGX PSW, enable Intel SGX in the BIOS. 3

For example, if the system is using an Intel reference BIOS, you may configure the BIOS options according to the following steps: Go to Intel Advanced Menu CPU Configuration SW Guard Extensions (SGX). Set SW Guard Extensions (SGX) as Enabled or Software Controlled. If you set Software Controlled for the SW Guard Extensions (SGX) option, you need to enable Intel SGX using Intel SGX Enabling Functions after installing Intel SGX PSW. See the Intel SGX SDK User s Guide for Windows* OS for more details. If you set Enabled for the SW Guard Extensions (SGX) option, you may need to configure Intel Advanced Menu CPU Configuration PRMRR. You can set it to 32MB, 64MB or 128MB. The default option is 128MB. This step may be only applicable to Intel reference BIOS and may be not applicable to OEM BIOS. You need administrator privileges to run the installer. Once installed, you can see Intel Software Guard Extensions Platform Software in the Control Panel\Programs\Programs and Features list. The Intel SGX PSW installer does not uninstall the Intel SGX device driver after the uninstallation of the platform software. Subsequent installations of the Intel SGX PSW will update the driver to a newer version only (no downgrade is allowed). To use Intel SGX platform service, you need to install full set of Intel Management Engine (ME) software components which includes Intel Dynamic Application Loader(DAL) Host Interface Service. If you install Intel ME driver only, Intel SGX platform service is not available. Default Installation Folders The default top-level installation folder for this product is: C:\Program Files\Intel\IntelSGXPSW 5 Known Issues and Limitations Intel Software Guard Extensions only supports integrated Windows authentication proxy scheme. The Basic and the Digest authenticated proxy schemes are not supported. 4

OEMs must not post Intel SGX PSW for end-users to download. Any Intel SGX PSW upgrade for end-users is through SGX applications provided by ISV only. You cannot load any enclave in Windows 7/8.1 if the Microsoft Universal C Runtime (CRT) isn t installed on the machine. To resolve this issue, you can install Windows Update for Universal CRT (KB2999226) in Windows. The legacy Intel SGX PSW installation entry cannot be removed from Programs and Features in Windows Control Panel if you install a legacy Intel SGX PSW installer with.exe as file name extension and upgrade with the 1.7 version installer. To work around the issue, manually uninstall Intel SGX PSW (.exe) before installing the 1.7 version. If you install legacy Intel SGX PSW installer with.msi as file name extension and upgrade with 1.7 installer, the issue is not observed. 6 Disclaimer and Legal Information No license (express or implied, by estoppel or otherwise) to any intellectual property rights is granted by this document. Intel disclaims all express and implied warranties, including without limitation, the implied warranties of merchantability, fitness for a particular purpose, and non-infringement, as well as any warranty arising from course of performance, course of dealing, or usage in trade. This document contains information on products, services and/or processes in development. All information provided here is subject to change without notice. Contact your Intel representative to obtain the latest forecast, schedule, specifications and roadmaps. The products and services described may contain defects or errors known as errata which may cause deviations from published specifications. Current characterized errata are available on request. Intel technologies features and benefits depend on system configuration and may require enabled hardware, software or service activation. Learn more at Intel.com, or from the OEM or retailer. Copies of documents which have an order number and are referenced in this document may be obtained by calling 1-800-548-4725 or by visiting www.intel.com/design/literature.htm. Intel, the Intel logo, Xeon, and Xeon Phi are trademarks of Intel Corporation in the U.S. and/or other countries. 5

Optimization Notice Intel's compilers may or may not optimize to the same degree for non-intel microprocessors for optimizations that are not unique to Intel microprocessors. These optimizations include SSE2, SSE3, and SSSE3 instruction sets and other optimizations. Intel does not guarantee the availability, functionality, or effectiveness of any optimization on microprocessors not manufactured by Intel. Microprocessor-dependent optimizations in this product are intended for use with Intel microprocessors. Certain optimizations not specific to Intel microarchitecture are reserved for Intel microprocessors. Please refer to the applicable product User and Reference Guides for more information regarding the specific instruction sets covered by this notice. Notice revision #20110804 * Other names and brands may be claimed as the property of others. 2016 Intel Corporation. 6