Which two VMware features are supported in a virtual machine using Intel Software Guard Extensions (Intel SGX) technology? (Choose two.)
Which two VMware features are supported in a virtual machine using Intel Software Guard Extensions (Intel SGX) technology? (Choose two.)
Intel Software Guard Extensions (Intel SGX) technology involves specific hardware-level security features, which restrict some of the capabilities that are standard in virtual machines. VM encryption is supported as it enhances the security of the data within the virtual machine, complementing the security focus of Intel SGX. Storage I/O Control is supported as it deals with the management of storage resources, which does not conflict with the hardware-bound security features of Intel SGX. Fault tolerance, vSphere vMotion, and virtual machine suspend and resume are not supported because they involve state preservation and migration capabilities that can interfere with the requirements and constraints of Intel SGX technology.
Features NOT available with SGX - vMotion - FT - Suspend - Snapshot - Guest Integrity
C & E: Unsupported VMware Features on vSGX The following features are not supported in a virtual machine when vSGX is enabled: vMotion/DRS migration Virtual machine suspend and resume Virtual machine snapshots (Virtual machine snapshots are supported if you do not snapshot the virtual machine's memory.) Fault tolerance Guest Integrity (GI, platform foundation for VMware AppDefense™ 1.0)
C & E is the correct Answer :; the following are the features NOT SUPPORTED : vMotion/DRS migration Virtual machine suspend and resume Virtual machine snapshots (Virtual machine snapshots are supported if you do not snapshot the virtual machine's memory.) Fault tolerance Guest Integrity (GI, platform foundation for VMware AppDefense™ 1.0) From options given in the question C& E are the valid answer
C & E https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.security.doc/GUID-EF552A5E-744B-4FD4-85AB-07B3CB22EF3E.html
Unsupported VMware Features on vSGX: The following features are not supported in a virtual machine when vSGX is enabled: - vMotion/DRS migration - Virtual machine suspend and resume - Virtual machine snapshots (Virtual machine snapshots are supported if you do not snapshot the virtual machine's memory.) - Fault tolerance - Guest Integrity (GI, platform foundation for VMware AppDefense™ 1.0) https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.security.doc/GUID-EF552A5E-744B-4FD4-85AB-07B3CB22EF3E.html
C and E The following are the features NOT SUPPORTED : - vMotion/DRS migration - Virtual machine suspend and resume - Virtual machine snapshots (Virtual machine snapshots are supported if you do not snapshot the virtual machine's memory.) - Fault tolerance - Guest Integrity (GI, platform foundation for VMware AppDefense™ 1.0)
Answer is C & E
SGX ties the VM to a physical CPU, so nothing that breaks the link between the VM and the pCPU it's running on would be work.
COrrect CE
C & E are correct
correct
c and e
2 people quote the same article and provide different answers, what's the correct answer?
AB https://docs.vmware.com/en/VMware-vSphere/7.0/com.vmware.vsphere.security.doc/GUID-EF552A5E-744B-4FD4-85AB-07B3CB22EF3E.html
AB not supported
Question asks for which answers are supported using Intel SGX, which are C and E
A/B is not supported. The question is hinting Intel SGX.
Question is which 2 features ARE supported, as opposed to NOT supported ;-). Answer is C and E