---
name: bare-metal-bare-metal-provision-SGX
title: Provisioning a bare metal server with Intel&reg; Software Guard Extension architecture
description: Intel Software Guard Extensions (SGX) can protect data that uses hardware-based server security. With Intel SGX applications, you can protect select code and data from disclosure or modification. By using trusted execution environments (TEE), known as enclaves, you can encrypt the pieces of your application memory that contains sensitive data while it is in use. For more information about SGX on IBM Cloud&reg;, see Confidential computing with Intel® Software Guard Extensions (SGX).
last-updated: 2026-08-20
---

> ## Documentation Index
> The table of contents for this documentation set is at https://cloud.ibm.com/docs/bare-metal?format=markdown
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

# Provisioning a bare metal server with Intel&reg; Software Guard Extension architecture
{: #bm-server-provision-sgx}

Intel Software Guard Extensions (SGX) can protect data that uses hardware-based server security. With Intel SGX applications, you can protect select code and data from disclosure or modification. By using trusted execution environments (TEE), known as enclaves, you can encrypt the pieces of your application memory that contains sensitive data while it is in use. For more information about SGX on IBM Cloud&reg;, see [Confidential computing with Intel® Software Guard Extensions (SGX)](https://cloud.ibm.com/docs/bare-metal?topic=bare-metal-bm-intel-sgx&format=markdown).
{: shortdesc}

## Provisioning your bare metal server with SGX
{: #provision-sgx}

To provision a bare metal server with SGX, use the following steps:

1. Create a custom server by following the procedure [Build a custom bare metal server](https://cloud.ibm.com/docs/bare-metal?topic=bare-metal-ordering-baremetal-server&format=markdown)
2. On the [bare metal provisioning page](https://cloud.ibm.com/gen1/infrastructure/provision/bm), select the following options.

| Field | Value |
|------|------|
| Server | Select a supported processor. |
| Image | Select an available image. For more information about Classic-supported operating systems, see [Lifecycle for operating systems and add-ons](https://cloud.ibm.com/docs/bare-metal?topic=bare-metal-product-lifecycle-classic&format=markdown).|
| Image Add-ons | Select Software Guard Extensions (SGX). |
{: caption="SGX order form options" caption-side="top"}

## Installing Intel SGX platform software and drivers
{: #install-intel}

Make sure that you install the SGX platform software and drivers.

1. Go to the [Get started](https://www.intel.com/content/www/us/en/developer/tools/software-guard-extensions/get-started.html){: external} and select the option for installation that matches your operating system.
2. Download the binary installation option. This option helps make sure that you use a stable version of SGX in your workloads.