https://bugzilla.redhat.com/show_bug.cgi?id=2030595
--- Comment #22 from Paolo Bonzini pbonzini@redhat.com --- Regarding the signed binaries, I understand that they need to be signed by Intel but we need to at least be able to build them (as reproducibly as possible, to verify what was signed).
So in parallel to aesm the SGX SDK needs to be packaged in Fedora as well. Fedora cannot use the RPMs at https://download.01.org/intel-sgx/.