6 Posts
0
2726
August 13th, 2021 14:00
T640 cant enable Intel SGX (Software Guard Extensions)
BIOS version 2.11.2
iDRAC version 5.0.
Intel SGX not showing in BIOS. Change SGX Launch Control Policy to Intel Locked in iDRAC Bios settings shows
NIC016: AttributeValue cannot be changed for disabled AttributeName SgxLcp.
No response action is required.
Any solutions?
No Events found!


DELL-Joey C
Moderator
•
4.2K Posts
•
21K Points
0
August 15th, 2021 22:00
Hi,
I can try create a case up and check that, but it wont be that immediate to get a response from them. I tried getting more information about T640 why it isn't supporting SGX, it's probably due to the support of processors that have SGX capability. From this documentation, E-2100 have SGX feature, but T640 does not support the processor.
I'll check why iDRAC have that particular settings that you have screen captured. If you don't mind, send me a PM of your server's service tag.
freefrank
6 Posts
0
August 15th, 2021 11:00
Anyone?
DELL-Joey C
Moderator
•
4.2K Posts
•
21K Points
0
August 15th, 2021 20:00
Hi,
I checked on the UEFI guide on T640, it seems that the server does not support Intel SGX. Only PowerEdge T140, T340, R240, R340 supports Intel SGX. Here's the UEFI reference on T640 and T340.
T340: https://dell.to/3m753R8
T640: https://dell.to/3g4jGk6
freefrank
6 Posts
0
August 15th, 2021 21:00
It doesn't make sense that T640 is so special that doesn't support an important security feature, even other workstations or servers DOES support it, even consumer platform support it too.
Besides, these's option in iDRAC to enable it just can't apply. Must be a bug. Can you please report it to the engineer team or whoever responsible for BIOS features?
freefrank
6 Posts
0
August 16th, 2021 15:00
I cant send you PM, it is said I reached my message limit though I haven't sent any message yet.
Shoud I post my service tag here?
freefrank
6 Posts
0
August 16th, 2021 15:00
oh okay I searched intel ark, my cpu doesn't support SGX. maybe that's why.
DELL-Joey C
Moderator
•
4.2K Posts
•
21K Points
0
August 16th, 2021 18:00
Hi,
That is most probably the root cause. Would you still like me to get to engineering about it? Or we have found out why we can't change the settings cause of the non-supported CPU on SGX?
This was the document I was talking about: https://dell.to/2W01VLy
freefrank
6 Posts
0
August 17th, 2021 13:00
I don't know whats the cause of SGX settings showing in iDRAC, if no CPU on T640 supports SGX.
It's weird that SGX is a feature from 2015, and some lines of intel cpu dont support it.
DELL-Joey C
Moderator
•
4.2K Posts
•
21K Points
0
August 17th, 2021 18:00
Hi,
Yeah, SGX support feature on CPU was somewhere around that year. I'm unsure any particular reason from Intel CPU have no support. Though, I found that 3rd gen XEON have start to support again, unfortunately T640 doesn't support 3rd gen XEON.
Ultimately, we can conclude that T640 doesn't have SGX support.