Benchmarking the Second Generation of Intel SGX Hardware

被引:10
作者
El-Hindi, Muhammad [1 ]
Ziegler, Tobias [1 ]
Heinrich, Matthias [1 ]
Lutsch, Adrian [1 ]
Zhao, Zheguang [1 ]
Binnig, Carsten [1 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
来源
18TH INTERNATIONAL WORKSHOP ON DATA MANAGEMENT ON NEW HARDWARE, DAMON 2022 | 2022年
关键词
D O I
10.1145/3533737.3535098
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, trusted execution environments (TEEs) such as Intel Software Guard Extensions (SGX) have gained a lot of attention in the database community. This is because TEEs provide an interesting platform for building trusted databases in the cloud. However, until recently SGX was only available on low-end single socket servers built on the Intel Xeon E3 processor generation and came with many restrictions for building DBMSs. With the availability of the new Ice Lake processors, Intel provides a new implementation of the SGX technology that supports high-end multi-socket servers. With this new implementation, which we refer to as SGXv2 in this paper, Intel promises to address several limitations of SGX enclaves. This raises the question whether previous efforts to overcome the limitations of SGX for DBMSs are still applicable and if the new generation of SGX can truly deliver on the promise to secure data without compromising on performance. To answer this question, in this paper we conduct a first systematic performance study of Intel SGXv2 and compare it to the previous generation of SGX.
引用
收藏
页数:8
相关论文
共 44 条
[1]   Performance Analysis of Scientific Computing Workloads on General Purpose TEEs [J].
Akram, Ayaz ;
Giannakou, Anna ;
Akella, Venkatesh ;
Lowe-Power, Jason ;
Peisert, Sean .
2021 IEEE 35TH INTERNATIONAL PARALLEL AND DISTRIBUTED PROCESSING SYMPOSIUM (IPDPS), 2021, :1066-1076
[2]  
Alves Tiago, 2004, Information Quarterly, V3
[3]   Personal Data Management Systems: The security and functionality standpoint [J].
Anciaux, Nicolas ;
Bonnet, Philippe ;
Bouganim, Luc ;
Nguyen, Benjamin ;
Pucheral, Philippe ;
Popa, Lulian Sandu ;
Scerri, Guillaume .
INFORMATION SYSTEMS, 2019, 80 :13-35
[4]   Azure SQL Database Always Encrypted [J].
Antonopoulos, Panagiotis ;
Arasu, Arvind ;
Singh, Kunal D. ;
Eguro, Ken ;
Gupta, Nitish ;
Jain, Rajat ;
Kaushik, Raghav ;
Kodavalla, Hanuma ;
Kossmann, Donald ;
Ogg, Nikolas ;
Ramamurthy, Ravi ;
Szymaszek, Jakub ;
Trimmer, Jeffrey ;
Vaswani, Kapil ;
Venkatesan, Ramarathnam ;
Zwilling, Mike .
SIGMOD'20: PROCEEDINGS OF THE 2020 ACM SIGMOD INTERNATIONAL CONFERENCE ON MANAGEMENT OF DATA, 2020, :1511-1525
[5]   Secure Cloud Micro Services Using Intel SGX [J].
Brenner, Stefan ;
Hundt, Tobias ;
Mazzeo, Giovanni ;
Kapitza, Rudiger .
DISTRIBUTED APPLICATIONS AND INTEROPERABLE SYSTEMS, DAIS 2017, 2017, 10320 :177-191
[6]  
ChongChong Zhao, 2016, 2016 13th Web Information Systems and Applications Conference (WISA). Proceedings, P184, DOI 10.1109/WISA.2016.45
[7]  
Costan V, 2016, PROCEEDINGS OF THE 25TH USENIX SECURITY SYMPOSIUM, P857
[8]  
Devadas Srinivas, 2016, Technical Report 086
[9]   ObliDB: Oblivious Query Processing for Secure Databases [J].
Eskandarian, Saba ;
Zaharia, Matei .
PROCEEDINGS OF THE VLDB ENDOWMENT, 2019, 13 (02) :169-183
[10]  
Faerber Franz, 2017, Foundations and Trends in Databases, V8, P1, DOI DOI 10.1561/1900000058