Scaling Intel® Software Guard Extensions Applications with Intel® SGX Card

被引:4
|
作者
Chakrabarti, Somnath [1 ]
Hoekstra, Matthew [1 ]
Kuvaiskii, Dmitrii [1 ]
Vij, Mona [1 ]
机构
[1] Intel Labs, Santa Clara, CA 95054 USA
关键词
Intel (R) Software Guard Extensions; Intel (R) SGX Card;
D O I
10.1145/3337167.3337173
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing revolutionized the way internet-scale services are deployed and scaled. However, general security concerns and protecting business critical data are still major factors holding companies back from moving their IT infrastructure to the cloud. Intel (R) Software Guard Extensions (Intel (R) SGX) technology provides a hardware enforced trusted execution environment specifically developed to compute on confidential data in untrusted public clouds. To date, Intel SGX is available only on single-socket platforms and its secure memory limited to 128 MB. This paper describes how the Intel SGX Card makes the Intel SGX technology available on dual-socket server platforms today and easily integrated into existing data center infrastructure. Also, with software enabling, there is potential for applications to scale-out across the cards's three Intel (R) Xeon (R) E3 processors for additional secure memory. We propose four software architectures to efficiently utilize the card's resources and present use cases that benefit from Intel SGX card based deployments.
引用
收藏
页数:9
相关论文
共 50 条
  • [21] Leveraging Intel SGX Technology to Protect Security-Sensitive Applications
    Sobchuk, Joseph
    O'Melia, Sean
    Utin, Daniil
    Khazan, Roger
    [J]. 2018 IEEE 17TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2018,
  • [22] Plundervolt: Software-based Fault Injection Attacks against Intel SGX
    Murdock, Kit
    Oswald, David
    Garcia, Flavio D.
    Van Bulck, Jo
    Gruss, Daniel
    Piessens, Frank
    [J]. 2020 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP 2020), 2020, : 1466 - 1482
  • [23] SGXTuner: Performance Enhancement of Intel SGX Applications Via Stochastic Optimization
    Mazzeo, Giovanni
    Arnautov, Sergei
    Fetzer, Christof
    Romano, Luigi
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (04) : 2595 - 2608
  • [24] Exploring the use of Intel SGX for Secure Many-Party Applications
    Kucuk, Kubilay Ahmet
    Paverd, Andrew
    Martin, Andrew
    Asokan, N.
    Simpson, Andrew
    Ankele, Robin
    [J]. SYSTEX 2016: 1ST WORKSHOP ON SYSTEM SOFTWARE FOR TRUSTED EXECUTION, 2016,
  • [25] A comparative analysis of emerging approaches for securing java']java software with Intel SGX
    Coppolino, Luigi
    D'Antonio, Salvatore
    Mazzeo, Giovanni
    Romano, Luigi
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 97 : 620 - 633
  • [26] SGXoMeter: Open and Modular Benchmarking for Intel SGX
    Mahhouk, Mohammad
    Weichbrodt, Nico
    Kapitza, Ruediger
    [J]. PROCEEDINGS OF THE 14TH EUROPEAN WORKSHOP ON SYSTEMS SECURITY (EUROSEC 2021), 2021, : 55 - 61
  • [27] Switchless Calls Made Practical in Intel SGX
    Tian, Hongliang
    Zhang, Qiong
    Yan, Shoumeng
    Rudnitsky, Alex
    Shacham, Liron
    Yariv, Ron
    Milshten, Noam
    [J]. PROCEEDINGS OF THE 3RD WORKSHOP ON SYSTEM SOFTWARE FOR TRUSTED EXECUTION (SYSTEX'18), 2018, : 22 - 27
  • [28] SecureKeeper: Confidential ZooKeeper using Intel SGX
    Brenner, Stefan
    Wulf, Colin
    Goltzsche, David
    Weichbrodt, Nico
    Lorenz, Matthias
    Fetzer, Christof
    Pietzuch, Peter
    Kapitza, Rudiger
    [J]. MIDDLEWARE '16: PROCEEDINGS OF THE 17TH INTERNATIONAL MIDDLEWARE CONFERENCE, 2016,
  • [29] Isolating Operating System Components with Intel SGX
    Richter, Lars
    Goetzfried, Johannes
    Mueller, Tilo
    [J]. SYSTEX 2016: 1ST WORKSHOP ON SYSTEM SOFTWARE FOR TRUSTED EXECUTION, 2016,
  • [30] Benchmarking the Second Generation of Intel SGX Hardware
    El-Hindi, Muhammad
    Ziegler, Tobias
    Heinrich, Matthias
    Lutsch, Adrian
    Zhao, Zheguang
    Binnig, Carsten
    [J]. 18TH INTERNATIONAL WORKSHOP ON DATA MANAGEMENT ON NEW HARDWARE, DAMON 2022, 2022,