Is it Possible to Create and use an Intel® Software Guard Extensions (Intel® SGX) Enclave Within a Hypervisor?
Content Type: Product Information & Documentation | Article ID: 000059227 | Last Reviewed: 07/20/2021
Unable to determine how to create an enclave that runs in a hypervisor.
Intel® Software Guard Extensions (Intel® SGX) enclave code consists of shared libraries that run in ring 3 mode, at the user level, and its resources are managed by the operating system (OS). An Intel SGX enclave cannot be created and run in a hypervisor because a hypervisor operates below an OS.