AI Chat Paper
Note: Please note that the following content is generated by AMiner AI. SciOpen does not take any responsibility related to this content.
{{lang === 'zh_CN' ? '文章概述' : 'Summary'}}
{{lang === 'en_US' ? '中' : 'Eng'}}
Chat more with AI
Article Link
Collect
Submit Manuscript
Show Outline
Outline
Show full outline
Hide outline
Outline
Show full outline
Hide outline
Regular Paper

Unified Enclave Abstraction and Secure Enclave Migration on Heterogeneous Security Architectures

Engineering Research Center for Domain-Specific Operating Systems, Ministry of Education, Shanghai 200240, China
Institute of Parallel and Distributed Systems, Shanghai Jiao Tong University, Shanghai 200240, China
Ant Group, Hangzhou 310099, China
Show Author Information

Abstract

Nowadays, application migration becomes more and more attractive. For example, it can make computation closer to data sources or make service closer to end-users, which may significantly decrease latency in edge computing. Yet, migrating applications among servers that are controlled by different platform owners raises security issues. We leverage hardware-secured trusted execution environment (TEE, aka., enclave) technologies, such as Intel SGX, AMD SEV, and ARM TrustZone, for protecting critical computations on untrusted servers. However, these hardware TEEs propose non-uniform programming abstractions and are based on heterogeneous architectures, which not only forces programmers to develop secure applications targeting some specific abstraction but also hinders the migration of protected applications. Therefore, we propose UniTEE which gives a unified enclave programming abstraction across the above three hardware TEEs by using a microkernel-based design and enables the secure enclave migration by integrating heterogeneous migration techniques. We have implemented the prototype on real machines. The evaluation results show the migration support incurs nearly-zero runtime overhead and the migration procedure is also efficient.

Electronic Supplementary Material

Download File(s)
jcst-37-2-468-Highlights.pdf (279.8 KB)

References

【1】
【1】
 
 
Journal of Computer Science and Technology
Pages 468-486

{{item.num}}

Comments on this article

Go to comment

< Back to all reports

Review Status: {{reviewData.commendedNum}} Commended , {{reviewData.revisionRequiredNum}} Revision Required , {{reviewData.notCommendedNum}} Not Commended Under Peer Review

Review Comment

Close
Close
Cite this article:
Gu J-Y, Li H, Xia Y-B, et al. Unified Enclave Abstraction and Secure Enclave Migration on Heterogeneous Security Architectures. Journal of Computer Science and Technology, 2022, 37(2): 468-486. https://doi.org/10.1007/s11390-021-1083-8

1162

Views

9

Crossref

10

Web of Science

13

Scopus

4

CSCD

Received: 18 October 2020
Accepted: 21 February 2021
Published: 31 March 2022
©Institute of Computing Technology, Chinese Academy of Sciences 2022