DGV-TC-017L1: Compute SubstrateGER-340: Hardware Root UnverifiedVersion: 1.0.0
RLWE Enclave Binding
Verifies that any proposal signature generated outside the verified Trusted Execution Environment (TEE) (e.g., incorrect boot/configuration hashes) is strictly rejected.
Operational Purpose & Scope
Verifies that presenting a signature from a tampered or un-attested enclave environment closes the gate.
Verification Context
- Target Scope:
runtime CLI execution - Audit Strategy:
exact-match - Verification Metrics:
gate_statusrejection_reasontee_providermeasurement_pcr_shapekey_originsignature_algorithm - Framework Origin:LifeStack / WEDGE Integration
- Mandatory:Yes — must pass for certification
Governance Risk & Penalty
Untrusted signature indicates compromised validator key or tampered enclave, breaching security and integrity guarantees.
Expected Outcome
- gate_status:
"CLOSED" - rejection_reason:
"invalid_rlwe_enclave_signature" - tee_provider:
"software" - measurement_fields_present:
["pcr0","pcr1","pcr2"] - signature_algorithm:
"Ed25519" - key_origin:
"software_sealed"
Explore this card in 3D
Open DGV-TC-017 in the interactive scenario replay. This illustrates the test flow; it does not run the verifier or generate a cryptographic receipt.
Open DGV Live →