On 2022/5/15 11:35, Luck, Tony wrote: >> Any machine check exception (#MC) that occurs after Intel SGX is first enables >> causes Intel SGX to be disabled, (CPUID.SGX_Leaf.0:EAX[SGX1] == 0). It cannot be >> enabled until after the next reset. " > > That part is out of date. A machine check used to disable SGX system-wide. It now just > disables the enclave that triggered the machine check. > > Is that text still in the latest SDM (version 077, April 2022)? Yes, I've double checked it, version 077, Apr. 2022. Looks like SDM needs to follow up :-) Best Regards, Zhiquan > > -Tony