6G • Security

Intel TDX

Trust Domain Extensions for Edge Telecom

Hardware architectural extensions that isolate virtual machines into secure 'Trust Domains' protected from host software and BIOS tampering.

Technical Explanation

Intel Trust Domain Extensions (TDX) isolates containerized 6G microservices into hardware-enforced Trust Domains (TDs). By removing the hypervisor and BIOS from the trusted computing base, Intel TDX ensures that sensitive tele-surgery data, automotive telemetry, and subscriber encryption master keys processed on commercial off-the-shelf edge servers remain completely confidential from local server operators.

Key Functions

  • Hardware-isolated Trust Domains (TDs) removing hypervisor from the trust perimeter
  • Multi-key total memory encryption protecting against physical hardware memory snooping
  • Hardware attestation tokens cryptographically verified by remote 6G policy controllers
  • Seamless deployment of unmodified Linux container workloads into secure enclaves
  • Hardware-accelerated cryptographic switching between secure and non-secure domains
Specifications
Intel TDX Architecture Specification, ETSI NFV-SEC Guidelines
Interfaces
TDX-Enclave-BusTD-Attest-API

Related 6G Concepts

Want to memorize 6G concepts like this one?
Study it with SuperMemo SM-2 spaced repetition flashcards.
Practice 6G Flashcards