Q: What is the difference between Intel TDX and Intel SGX on OpenMetal servers?

Intel TDX isolates entire virtual machines from the hypervisor and other VMs; Intel SGX isolates individual application-level code regions from the OS and other processes — both are available on OpenMetal v4 bare metal servers.

Explore confidential computing infrastructure

TDX operates at the VM boundary. Each Trust Domain runs a complete guest OS with its own memory encryption key and CPU state, enforced by the CPU memory controller. The hypervisor can manage the TD lifecycle but cannot read or modify TD memory. TDX is the right choice for workloads running full OS stacks that require isolation from the infrastructure operator or co-located software — healthcare applications, financial transaction processors, multi-tenant SaaS.

SGX operates below the OS boundary, isolating specific code regions called enclaves from the host OS, hypervisor, and other processes. Enclaves are suited for key management services, cryptographic operations, and multi-party computation where a small, verifiable code region needs to execute without exposure to the broader OS environment. The XXL v4 provides 128GB of EPC for SGX enclaves.

Security diagram contrasting Intel TDX VM encryption with Intel SGX enclave isolation on OpenMetal bare metal.

TDX and SGX can run concurrently on the same server — TDX VMs handling application workloads while SGX enclaves manage key material or attestation services.


Some Recommended Configurations from our Catalog

Bare Metal Server — XXL v4

CPU: 2× Intel Xeon Gold 6530 (64C/128T)
RAM: 2048 GB DDR5
Storage: 6× 6.4 TB NVMe (38.4 TB)
Bandwidth: 10 Gbps private / 10 Gbps public
Monthly Price:

View Pricing

“OpenMetal Cloud provides on-demand private infrastructure, which brings cloud fundamentals like elasticity and usage billing to the cloud deployment itself. It’s awesome to see OpenMetal’s latest product use OpenStack to combine the benefits of public cloud and managed private cloud, powered by open infrastructure.”

— Thierry Carrez, VP of Engineering, Open Infrastructure Foundation

Interested in OpenMetal Products?

Contact Us

We’re available to answer questions and provide information.

Reach Out

Schedule a Consultation

Get a deeper assessment and discuss your unique requirements.

Schedule Consultation

Try It Out

Take a peek under the hood of our cloud platform or launch a trial.

Trial Options