Q: Can I run Intel SGX enclaves and TDX VMs on the same OpenMetal server?

Intel SGX enclaves and TDX VMs can run concurrently on the same OpenMetal XXL v4 — TDX and SGX operate at different layers of the hardware security stack and do not conflict.

Explore confidential computing infrastructure

TDX creates memory-isolated Trust Domains for entire virtual machines, enforced by the CPU memory controller. SGX creates Encrypted Page Cache regions for individual application enclaves, enforced at the memory page level. Because they operate at different granularities, an SGX enclave can run inside a TDX VM or directly on the bare metal host alongside running TDX VMs.

A common configuration on the XXL v4 is a key management service (such as HashiCorp Vault with an SGX backend) running in a 128GB EPC enclave, while application workloads run in TDX Trust Domains. TDX VMs can consume keys from the SGX enclave via local attestation — the enclave proves its key management code is unmodified, and the TDX VM proves it is operating in an isolated trust domain.

Security diagram showing Intel SGX enclaves and TDX VMs operating concurrently on a single OpenMetal server.

Both TDX and SGX include remote attestation: cryptographic reports that allow external parties to verify the configuration and software state of a trust domain or enclave before transmitting sensitive data into it.


Some Recommended Configurations from our Catalog

Bare Metal Server — XXL v4

CPU: 2× Intel Xeon Gold 6530 (64C/128T)
RAM: 2048 GB DDR5
Storage: 6× 6.4 TB NVMe (38.4 TB)
Bandwidth: 10 Gbps private / 10 Gbps public
Monthly Price:

View Pricing

“With OpenMetal, we found a true partner, we have more control over the performance of our clouds, and we are able to significantly reduce our cloud costs. These three things make this relationship something I would say yes to a hundred times over.”

— Tom Fanelli, CEO & Co-Founder, Convesio

Interested in OpenMetal Products?

Contact Us

We’re available to answer questions and provide information.

Reach Out

Schedule a Consultation

Get a deeper assessment and discuss your unique requirements.

Schedule Consultation

Try It Out

Take a peek under the hood of our cloud platform or launch a trial.

Trial Options