【24h】

Secure Tera-scale Data Crunching with a Small TCB

机译:使用小型TCB进行万亿级数据安全处理

获取原文

摘要

Outsourcing services to third-party providers comes with a high security cost-to fully trust the providers. Using trusted hardware can help, but current trusted execution environments do not adequately support services that process very large scale datasets. We present LAST, a system that bridges this gap by supporting the execution of self-contained services over a large state, with a small and generic trusted computing base (TCB). LAST uses widely deployed trusted hardware to guarantee integrity and verifiability of the execution on a remote platform, and it securely supplies data to the service through simple techniques based on virtual memory. As a result, LAST is general and applicable to many scenarios such as computational genomics and databases, as we show in our experimental evaluation based on an implementation of LAST-GT on a secure hypervisor. We also describe a possible implementation on Intel SGX.
机译:将服务外包给第三方提供商会带来很高的安全成本,因此要完全信任提供商。使用受信任的硬件可以提供帮助,但是当前的受信任执行环境不能充分支持处理超大规模数据集的服务。我们提出了LAST,该系统通过在大型状态下使用小型通用的受信任计算基础(TCB)支持自包含服务的执行来弥合这种差距。 LAST使用广泛部署的受信任硬件来保证在远程平台上执行的完整性和可验证性,并且LAST通过基于虚拟内存的简单技术将数据安全地提供给服务。结果,如我们在基于安全管理程序上的LAST-GT实施的实验评估中所示,LAST具有通用性并适用于许多情况,例如计算基因组学和数据库。我们还将介绍在Intel SGX上可能的实现。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号