Intel® SGX SDK 2.28 [ref]
·
120 commits
to main
since this release
Intel® Software Guard Extensions SDK (Intel® SGX SDK)
- Removed deprecated functionality based on EPID (Enhanced Privacy ID), including EPID remote attestation.
-
- Note support remains for ECDSA-based attestation and universal quoting APIs (i.e.
sgx_get_quote_ex()). - The following definitions have been removed from
libsgx-headers:sgx_calc_quote_size()sgx_check_update_status()sgx_get_extended_epid_group_id()sgx_get_quote()- note:
sgx_get_quote_ex()remains supported
- note:
sgx_get_quote_size()- note:
sgx_get_quote_size_ex()remains supported
- note:
sgx_init_quote()- note:
sgx_init_quote_ex()remains supported
- note:
sgx_report_attestation_status()
- The following dev header has been removed:
sgx_uae_epid.h - Removed
libsgx_epid_sim.so(the EPID simulation library).
- Note support remains for ECDSA-based attestation and universal quoting APIs (i.e.
-
- Removed code supporting the deprecated Launch Enclave, whitelist management and out-of-tree driver.
-
- The recommended launch mechanism continues to be the Flexible Launch Control via the in-kernel SGX driver.
- The following launch-related UAE APIs are deprecated and will now return
SGX_ERROR_FEATURE_NOT_SUPPORTED: - The following dev header has been deprecated: sgx_uae_launch.h
- The following parameters of
sgx_create_enclave()URTS API:*launch_tokenand*launch_token_updatedare now RESERVED and ignored by the implementation. Implementers may choose to continue passing an empty/initializedlaunch_token_tplaceholder or pass anullptrin their place. - Removed
libsgx_launch_sim.so(the Launch Enclave simulation library).
-
- Enclave creation no longer fails when the Enclave Dynamic Memory Management (EDMM) and AEX-Notify are both enabled.
- Upgraded to OpenSSL 3.0.19.
- Added support for CentOS* Stream 10 and Red Hat* Enterprise Linux* 10.
- Bug fixes.
Note
Intel® Software Guard Extensions (Intel® SGX) Eclipse plugin will be removed in the next release of Intel® SGX SDK.
📦 Download information
(click to expand)
Downloads
| Ubuntu* | Debian* | RHEL* | CentOS* Stream |
SUSE* | Anolis OS* | Azure Linux* |
|
|---|---|---|---|---|---|---|---|
| SDK installer | - 22.04 - 24.04 |
- 10 - 12 |
- 9.4 - 10.0 |
- 9 - 10 |
- 15.6 | - 8.10 | - 3.0 |
| Local repo DEB/RPM packages |
- 22.04 - 24.04 |
- 10 - 12 |
- 9.4 - 10.0 |
- 9 - 10 |
- 15.6 | - 8.10 | - 3.0 |
- Eclipse* plug-in: 2.28
💡 TIP: Ubuntu* packages are also served from the live Intel® SGX APT repository at https://download.01.org/intel-sgx/sgx_repo/ubuntu.
Caution
Reference-only snapshot — predates this repository (extracted from the Intel® SGX for Linux repository). These sources mirror the SDK at this point, but the build system isn't adapted to the standalone layout; to rebuild, use the matching SGX-side tag sgx_2.28.