Scaling Intel® Software Guard Extensions Applications with Intel® SGX Card

被引:4
|
作者
Chakrabarti, Somnath [1 ]
Hoekstra, Matthew [1 ]
Kuvaiskii, Dmitrii [1 ]
Vij, Mona [1 ]
机构
[1] Intel Labs, Santa Clara, CA 95054 USA
关键词
Intel (R) Software Guard Extensions; Intel (R) SGX Card;
D O I
10.1145/3337167.3337173
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing revolutionized the way internet-scale services are deployed and scaled. However, general security concerns and protecting business critical data are still major factors holding companies back from moving their IT infrastructure to the cloud. Intel (R) Software Guard Extensions (Intel (R) SGX) technology provides a hardware enforced trusted execution environment specifically developed to compute on confidential data in untrusted public clouds. To date, Intel SGX is available only on single-socket platforms and its secure memory limited to 128 MB. This paper describes how the Intel SGX Card makes the Intel SGX technology available on dual-socket server platforms today and easily integrated into existing data center infrastructure. Also, with software enabling, there is potential for applications to scale-out across the cards's three Intel (R) Xeon (R) E3 processors for additional secure memory. We propose four software architectures to efficiently utilize the card's resources and present use cases that benefit from Intel SGX card based deployments.
引用
收藏
页数:9
相关论文
共 50 条
  • [1] Intel Software Guard Extensions Applications: A Survey
    Will, Newton C.
    Maziero, Carlos A.
    [J]. ACM COMPUTING SURVEYS, 2023, 55 (14S)
  • [2] Achieving Data Dissemination with Security using FIWARE and Intel Software Guard Extensions (SGX)
    Gomes Valadares, Dalton Cezane
    Leite da Silva, Matteus Sthefano
    Monteiro Brito, Andrey Elisio
    Salvador, Ewerton Monteiro
    [J]. 2018 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2018, : 548 - 554
  • [3] Verifying Linearizability of Intel® Software Guard Extensions
    Leslie-Hurd, Rebekah
    Caspi, Dror
    Fernandez, Matthew
    [J]. COMPUTER AIDED VERIFICATION, CAV 2015, PT II, 2015, 9207 : 144 - 160
  • [4] Intel Software Guard Extensions Introduction and Open Research Challenges
    Schunter, Matthias
    [J]. SPRO'16: PROCEEDINGS OF THE 2016 ACM WORKSHOP ON SOFTWARE PROTECTION, 2016, : 1 - 1
  • [5] A survey of Intel SGX and its applications
    Zheng, Wei
    Wu, Ying
    Wu, Xiaoxue
    Feng, Chen
    Sui, Yulei
    Luo, Xiapu
    Zhou, Yajin
    [J]. FRONTIERS OF COMPUTER SCIENCE, 2021, 15 (03)
  • [6] A survey of Intel SGX and its applications
    Wei Zheng
    Ying Wu
    Xiaoxue Wu
    Chen Feng
    Yulei Sui
    Xiapu Luo
    Yajin Zhou
    [J]. Frontiers of Computer Science, 2021, 15
  • [7] A survey of Intel SGX and its applications
    Wei ZHENG
    Ying WU
    Xiaoxue WU
    Chen FENG
    Yulei SUI
    Xiapu LUO
    Yajin ZHOU
    [J]. Frontiers of Computer Science., 2021, (03) - 205
  • [8] Secure Software Defined Networks Controller Storage using Intel Software Guard Extensions
    Youssef, Qasmaoui
    Yassine, Maleh
    Haqiq, Abdelkrim
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (10) : 475 - 481
  • [9] Secure Content-Based Routing Using Intel Software Guard Extensions
    Pires, Rafael
    Pasin, Marcelo
    Felber, Pascal
    Fetzer, Christof
    [J]. MIDDLEWARE '16: PROCEEDINGS OF THE 17TH INTERNATIONAL MIDDLEWARE CONFERENCE, 2016,
  • [10] Malware Guard Extension: abusing Intel SGX to conceal cache attacks
    Schwarz, Michael
    Weiser, Samuel
    Gruss, Daniel
    Maurice, Clementine
    Mangard, Stefan
    [J]. CYBERSECURITY, 2020, 3 (01)