Scaling Intel® Software Guard Extensions Applications with Intel® SGX Card

被引:4
|
作者
Chakrabarti, Somnath [1 ]
Hoekstra, Matthew [1 ]
Kuvaiskii, Dmitrii [1 ]
Vij, Mona [1 ]
机构
[1] Intel Labs, Santa Clara, CA 95054 USA
关键词
Intel (R) Software Guard Extensions; Intel (R) SGX Card;
D O I
10.1145/3337167.3337173
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing revolutionized the way internet-scale services are deployed and scaled. However, general security concerns and protecting business critical data are still major factors holding companies back from moving their IT infrastructure to the cloud. Intel (R) Software Guard Extensions (Intel (R) SGX) technology provides a hardware enforced trusted execution environment specifically developed to compute on confidential data in untrusted public clouds. To date, Intel SGX is available only on single-socket platforms and its secure memory limited to 128 MB. This paper describes how the Intel SGX Card makes the Intel SGX technology available on dual-socket server platforms today and easily integrated into existing data center infrastructure. Also, with software enabling, there is potential for applications to scale-out across the cards's three Intel (R) Xeon (R) E3 processors for additional secure memory. We propose four software architectures to efficiently utilize the card's resources and present use cases that benefit from Intel SGX card based deployments.
引用
收藏
页数:9
相关论文
共 50 条
  • [41] SGXGauge: A Comprehensive Benchmark Suite for Intel SGX
    Kumar, Sandeep
    Panda, Abhisek
    Sarangi, Smruti R.
    [J]. 2022 IEEE INTERNATIONAL SYMPOSIUM ON PERFORMANCE ANALYSIS OF SYSTEMS AND SOFTWARE (ISPASS 2022), 2022, : 135 - 137
  • [42] IRON: Functional Encryption using Intel SGX
    Fisch, Ben
    Vinayagamurthy, Dhinakaran
    Boneh, Dan
    Gorbunov, Sergey
    [J]. CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, : 765 - 782
  • [43] Verifiable Functional Encryption Using Intel SGX
    Suzuki, Tatsuya
    Emura, Keita
    Ohigashi, Toshihiro
    Omote, Kazumasa
    [J]. PROVABLE AND PRACTICAL SECURITY, PROVSEC 2021, 2021, 13059 : 215 - 240
  • [44] Secure and Private Function Evaluation with Intel SGX
    Felsen, Susanne
    Kiss, Agnes
    Schneider, Thomas
    Weinert, Christian
    [J]. CCSW'19: PROCEEDINGS OF THE 2019 ACM SIGSAC CONFERENCE ON CLOUD COMPUTING SECURITY WORKSHOP, 2019, : 165 - 181
  • [45] sgx-perf: A Performance Analysis Tool for Intel SGX Enclaves
    Weichbrodt, Nico
    Aublin, Pierre-Louis
    Kapitza, Ruediger
    [J]. MIDDLEWARE'18: PROCEEDINGS OF THE 2018 ACM/IFIP/USENIX MIDDLEWARE CONFERENCE, 2018, : 201 - 213
  • [46] A Distributed Oracle Using Intel SGX for Blockchain-Based IoT Applications
    Woo, Sangyeon
    Song, Jeho
    Park, Sungyong
    [J]. SENSORS, 2020, 20 (09)
  • [47] POSTER: Rust SGX SDK: Towards Memory Safety in Intel SGX Enclave
    Ding, Yu
    Duan, Ran
    Li, Long
    Cheng, Yueqiang
    Zhang, Yulong
    Chen, Tanghui
    Wei, Tao
    Wang, Huibo
    [J]. CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, : 2491 - 2493
  • [48] VoltJockey: A New Dynamic Voltage Scaling-Based Fault Injection Attack on Intel SGX
    Qiu, Pengfei
    Wang, Dongsheng
    Lyu, Yongqiang
    Tian, Ruidong
    Wang, Chunlu
    Qu, Gang
    [J]. IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS, 2021, 40 (06) : 1130 - 1143
  • [49] A Practical Intel SGX Setting for Linux Containers in the Cloud
    Tian, Dave
    Choi, Joseph, I
    Hernandez, Grant
    Traynor, Patrick
    Butler, Kevin R. B.
    [J]. PROCEEDINGS OF THE NINTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY '19), 2019, : 255 - 266
  • [50] Private Function Evaluation Using Intel's SGX
    Selo, Omar Abou
    Rachid, Maan Haj
    Shikfa, Abdullatif
    Wang, Yongge
    Malluhi, Qutaibah
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2020, 2020