- 硬件需求:
第6代及以后的Intel处理器
BIOS 开启SGX
若是使用isgx,需要关闭secure boot - 需要安装3个部分:
- 先安装需要的工具: https://01.org/intel-software-guard-extensions/downloads 可选择支持或不支持DCAP的driver下载
Intel® Software Guard Extensions (Intel® SGX) driver :
#/ 安装必要工具
sudo apt-get install build-essential ocaml ocamlbuild automake autoconf libtool wget python libssl-dev git cmake perl
#/ 安装driver
./sgx_linux_x64_driver_<version...>.bin
#\ 查看driver是否安装成功
ls /dev | grep isgx
Intel® SGX platform software (PSW):
#/ 安装必要工具
sudo apt-get install libssl-dev libcurl4-openssl-dev protobuf-compiler libprotobuf-dev debhelper cmake reprepro unzip
#/ 安装PSW
echo 'deb [arch=amd64] https://download.01.org/intel-sgx/sgx_repo/ubuntu bionic main' | sudo tee /etc/apt/sources.list.d/intel-sgx.list
wget -qO - https://download.01.org/intel-sgx/sgx_repo/ubuntu/intel-sgx-deb.key | sudo apt-key add -
sudo apt-get update
#Install launch service:
sudo apt-get install -y libsgx-launch libsgx-urts
#Install EPID-based attestation service:
sudo apt-get install -y libsgx-epid libsgx-urts
#Install algorithm agnostic attestation service:
sudo apt-get install -y libsgx-quote-ex libsgx-urts
Intel® SGX SDK:
# 安装必要工具
sudo apt-get install build-essential
# 安装sdk到/opt/intel
./sgx_linux_x64_sdk_<version...>.bin
# 输入yes,然后/opt/intel
source /opt/intel/sgxsdk/environment
# 查看是否成功
cd /opt/intel/sgxsdk/SampleCode/SampleEnclave
make
./app
到此就已经安装成功