Data Enclave: A Data-Centric Trusted Execution Environment

被引:0
|
作者
Xu, Yuanchao [1 ]
Pangia, James [2 ]
Ye, Chencheng [3 ]
Solihin, Yan [4 ]
Shen, Xipeng [2 ]
机构
[1] Univ Calif Santa Cruz, Santa Cruz, CA 95064 USA
[2] North Carolina State Univ, Raleigh, NC USA
[3] Huazhong Univ Sci & Technol, Wuhan, Peoples R China
[4] Univ Cent Florida, Orlando, FL 32816 USA
基金
美国国家科学基金会;
关键词
Memory Security; Memory Architecture Trusted; Execution Environments; ENCRYPTION; AUTHENTICATION; PERFORMANCE; COST;
D O I
10.1109/HPCA57654.2024.00026
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Trusted Execution Environments (TEEs) protect sensitive applications in the cloud with the minimal trust in the cloud provider. Existing TEEs with integrity protection however lack support for data management primitives, causing data sharing between enclaves either insecure or cumbersome. This paper proposes a new data abstraction for TEEs, data enclave. As a data-centric abstraction, data enclave is decoupled from an enclave's existence, is equipped with flexible secure permission controls, and crytographically isolated. It eliminates the hurdles for enclaves to cooperate efficiently, and at the same time, enables dynamic shrinking of the height of integrity tree for performance. This paper presents this new abstraction, its properties, and the architecture support. Experiments on synthetic benchmarks and three real-world applications all show that data enclave can help improve the efficiency of enclaves and inter-enclave cooperations significantly while enhancing the security protection.
引用
收藏
页码:218 / 232
页数:15
相关论文
共 50 条
  • [31] Safe Distribution and Parallel Execution of Data-centric Workflows over the Publish/Subscribe Abstraction
    Jergler, Matin
    Jacobsen, Hans-Arno
    Sadoghi, Mohammad
    Hull, Richard
    Vaculin, Roman
    2016 32ND IEEE INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE), 2016, : 1498 - 1499
  • [32] A DATA-CENTRIC APPROACH FOR INTEGRATED DATA CENTER MANAGEMENT
    Hoover, Christopher
    PROCEEDINGS OF THE ASME PACIFIC RIM TECHNICAL CONFERENCE AND EXHIBITION ON PACKAGING AND INTEGRATION OF ELECTRONIC AND PHOTONIC SYSTEMS, MEMS AND NEMS 2011, VOL 2, 2012, : 565 - 576
  • [33] Safe Distribution and Parallel Execution of Data-Centric Workflows over the Publish/Subscribe Abstraction
    Sadoghi, Mohammad
    Jergler, Martin
    Jacobsen, Hans-Arno
    Hull, Richard
    Vaculin, Roman
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2015, 27 (10) : 2824 - 2838
  • [34] Data Subsetting: A Data-Centric Approach to Approximate Computing
    Kim, Younghoon
    Venkataramani, Swagath
    Chandrachoodan, Nitin
    Raghunathan, Anand
    2019 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION (DATE), 2019, : 576 - 581
  • [35] Data-centric AI practice in maritime: securing trusted data quality via a computer vision-based framework
    Wang, Ke
    Tristan, Ong Qi Hao
    Zhang, Xiaocai
    Fu, Xiuju
    Qin, Zheng
    2024 IEEE CONFERENCE ON ARTIFICIAL INTELLIGENCE, CAI 2024, 2024, : 414 - 417
  • [36] Servitization for the Environment? The Impact of Data-Centric Product-Service Models
    Zhang, Xin
    Guo, Xiaolong
    Yue, Wei Thoo
    Yu, Yugang
    JOURNAL OF MANAGEMENT INFORMATION SYSTEMS, 2022, 39 (04) : 1146 - 1183
  • [37] Decentralized IoT Data Management Using BlockChain and Trusted Execution Environment
    Ayoade, Gbadebo
    Karande, Vishal
    Khan, Latifur
    Hamlen, Kevin
    2018 IEEE INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION (IRI), 2018, : 15 - 22
  • [38] CVShield: Guarding Sensor Data in Connected Vehicle with Trusted Execution Environment
    Hu, Shengtuo
    Chen, Qi Alfred
    Joung, Jiwon
    Carlak, Can
    Feng, Yiheng
    Mao, Z. Morley
    Liu, Henry X.
    AUTOSEC'20: PROCEEDINGS OF THE SECOND ACM WORKSHOP ON AUTOMOTIVE AND AERIAL VEHICLE SECURITY, 2020, : 1 - 4
  • [39] Data-centric optical networks and their survivability
    Colle, D
    De Maesschalck, S
    Develder, C
    Van Heuven, P
    Groebbens, A
    Cheyns, J
    Lievens, I
    Pickavet, M
    Lagasse, P
    Demeester, P
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2002, 20 (01) : 6 - 20
  • [40] A Data-Centric Approach to Loss Mechanisms
    Senior, Alistair C.
    Miller, Robert J.
    JOURNAL OF TURBOMACHINERY-TRANSACTIONS OF THE ASME, 2024, 146 (04):