Q: What is the difference between Intel TDX and Intel SGX on OpenMetal XL v5? Intel TDX isolates an entire guest VM (a “trust domain”) from the host hypervisor and
Category: Security
Q: Can I migrate Azure Confidential VM workloads to OpenMetal XL v5? Yes — Azure Confidential VMs and OpenMetal XL v5 both use Intel TDX, so the workload’s threat model
Q: Does the OpenMetal XL v5 support Intel TDX at its base configuration? Yes — the OpenMetal XL v5 ships TDX-ready with no RAM upgrade: its 1024 GB DDR5-6400 already
Q: Can I run TDX-protected VMs on an OpenMetal Large v5 Hosted Private Cloud cluster? No — Intel TDX is supported on OpenMetal bare metal Large v5 servers only, not
Q: Does OpenMetal sign a HIPAA BAA for TDX-protected workloads on the Large v5? Yes — OpenMetal is HIPAA compliant at the organizational level and may be able to sign
Q: Can I combine Intel SGX enclaves with TDX guest VMs on the OpenMetal Large v5? Yes — SGX and TDX work in parallel on the Xeon 6517P; the typical
Q: How do I upgrade a deployed OpenMetal Large v5 to enable Intel TDX? Schedule the upgrade with OpenMetal: 8 additional DDR5-6400 DIMMs are added to populate all 16 slots,
Q: Does the OpenMetal Large v5 support Intel TDX confidential computing? Yes — the Large v5’s Xeon 6517P processors support Intel TDX, but activation requires upgrading from the base 512
Q: Does the OpenMetal Medium v5 support Intel TDX confidential computing? The OpenMetal Medium v5 supports Intel TDX, but it is not enabled at the base 256 GB configuration; TDX
Q: What RAM upgrade is required to enable Intel TDX on the OpenMetal Medium v5? Enabling Intel TDX on the OpenMetal Medium v5 requires replacing all 8 installed 32 GB
Q: How does Intel TDX remote attestation work on OpenMetal bare metal servers? Intel TDX remote attestation on OpenMetal bare metal servers generates a hardware-rooted ECDSA-signed quote containing a cryptographic
Q: Can OpenMetal provide a BAA for HIPAA-covered workloads? OpenMetal is HIPAA compliant at the organizational level. For workloads involving protected health information, OpenMetal may be able to sign a
Q: What is the difference between Intel TDX and Intel SGX on OpenMetal servers? Intel TDX isolates entire virtual machines from the hypervisor and other VMs; Intel SGX isolates individual
Q: Can I run Intel SGX enclaves and TDX VMs on the same OpenMetal server? Intel SGX enclaves and TDX VMs can run concurrently on the same OpenMetal XXL v4
Q: What is the RAM requirement to activate Intel TDX on OpenMetal bare metal servers? Activating Intel TDX on OpenMetal bare metal servers requires a minimum of 1TB of installed
Q: Is OpenMetal HIPAA compliant for healthcare workloads? OpenMetal is HIPAA compliant at the organizational level. For workloads involving protected health information, OpenMetal may be able to sign a Business
Q: Does the OpenMetal Large v4 support Intel TDX confidential computing? The Large v4 supports Intel TDX, but it requires a RAM upgrade to 1 TB (filling all 16 DIMM
Q: Which OpenMetal servers are TDX-capable at their base configuration? The XL v4 and XL v5 are TDX-capable at their base configuration, which meets Intel’s memory-population gate. TDX is not
Q: What is the difference between Intel TDX and SGX on OpenMetal servers? TDX isolates entire virtual machines at the hardware level, while SGX protects specific application code and data

































