Creating a virtual server with SGX or TDX
Select availability
You can create one or more virtual server instances with SGX or TDX in your IBM Cloud® VPC.
Confidential computing profiles are available in the Dallas (us-south), Washington DC (us-east), and Frankfurt (eu-de) regions. Confidential computing with Intel SGX for VPC is Dallas (us-south), Washington DC (us-east), and Frankfurt (eu-de). Confidential computing with Intel TDX for VPC is available only in the Washington DC (us-east) region. If you want to create a virtual server instance with a confidential computing profile and TDX, you can create that virtual server instance only in the Washington DC (us-east) region. You can’t create a virtual server instance with TDX in any other region, including Dallas (us-south) and Frankfurt (eu-de). For more information, see Confidential computing known issues. Confidential computing is only available with select profiles. For more information, see Confidential computing profiles.
Creating a virtual server with confidential computing
Use the following steps to create a virtual server with confidential computing.
Make sure that you created a VPC.
- In the IBM Cloud console, click Navigation Menu icon
> VPC Infrastructure
> Compute > Virtual server instances.
- Click Create and select or enter the following information.
- Select a location.
- Enter a unique name for your virtual server instance.
- Select an available image. For more information about SGX- or TDX-supported images, see Limitations.
- Select an SGX- or TDX-supported profile by clicking Confidential computing. Keep in mind that only the Balanced bx3dc profiles and Compute cx3dc profiles support SGX or TDX.
- Click Save.
- SGX is the default value. Keep the SGX confidential computing value or select TDX confidential computing. Secure boot is automatically enabled. Keep in mind that you can enable secure boot without enabling either SGX or TDX, but you can't enable SGX or TDX without enabling secure-boot.
- Select an existing public SSH key or click Create an SSH key to create a new one. For more information about creating an SSH key, see Creating your SSH key by using the UI.
- Go to Networking, and choose a VPC for this virtual server instance.
- Click Create a virtual server instance when you are ready to provision. After your new virtual server with SGX or TDX is provisioned, it's ready to use.