What is the price for joining securely?

Author:

Maliszewski Kajetan1,Quiané-Ruiz Jorge-Arnulfo2,Traub Jonas1,Markl Volker2

Affiliation:

1. Technische Universität Berlin (TU Berlin)

2. Technische Universität Berlin (TU Berlin) and German Research Center for Artificial Intelligence (DFKI)

Abstract

Protection of personal data has been raised to be among the top requirements of modern systems. At the same time, it is now frequent that the owner of the data and the owner of the computing infrastructure are two entities with limited trust between them (e. g., volunteer computing or the hybrid-cloud). Recently, trusted execution environments (TEEs) became a viable solution to ensure the security of systems in such environments. However, the performance of relational operators in TEEs remains an open problem. We conduct a comprehensive experimental study to identify the main bottlenecks and challenges when executing relational equi-joins in TEEs. For this, we introduce TEEbench, a framework for unified benchmarking of relational operators in TEEs, and use it for conducting our experimental evaluation. In a nutshell, we perform the following experimental analysis for eight core join algorithms: off-the-shelf performance; the performance implications of data sealing and obliviousness; sensitivity and scalability. The results show that all eight join algorithms significantly suffer from different performance bottlenecks in TEEs. They can be up to three orders of magnitude slower in TEEs than on plain CPUs. Our study also indicates that existing join algorithms need a complete, hardware-aware redesign to be efficient in TEEs, and that, in secure query plans, managing TEE features is equally important to join selection.

Publisher

Association for Computing Machinery (ACM)

Subject

General Earth and Planetary Sciences,Water Science and Technology,Geography, Planning and Development

Reference72 articles.

1. Sovereign Joins

2. AMD. 2021 . AMD Secure Encrypted Virtualization (SEV) . Retrieved May 18, 2021 from https://developer.amd.com/sev/ AMD. 2021. AMD Secure Encrypted Virtualization (SEV). Retrieved May 18, 2021 from https://developer.amd.com/sev/

3. Ittai Anati , Shay Gueron , Simon Johnson , and Vincent Scarlata . 2013 . Innovative technology for CPU based attestation and sealing . In Proceedings of the 2nd international workshop on hardware and architectural support for security and privacy , Vol. 13 . ACM New York, NY, USA, 7. Ittai Anati, Shay Gueron, Simon Johnson, and Vincent Scarlata. 2013. Innovative technology for CPU based attestation and sealing. In Proceedings of the 2nd international workshop on hardware and architectural support for security and privacy, Vol. 13. ACM New York, NY, USA, 7.

4. The Computational and Storage Potential of Volunteer Computing

5. Azure SQL Database Always Encrypted

Cited by 7 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. An Experimental Study on Federated Equi-Joins;IEEE Transactions on Knowledge and Data Engineering;2024-09

2. DuckDB-SGX2: The Good, The Bad and The Ugly within Confidential Analytical Query Processing;Proceedings of the 20th International Workshop on Data Management on New Hardware;2024-06-09

3. Relational Algorithms for Top-k Query Evaluation;Proceedings of the ACM on Management of Data;2024-05-29

4. Intel Software Guard Extensions Applications: A Survey;ACM Computing Surveys;2023-07-17

5. Olive: Oblivious Federated Learning on Trusted Execution Environment against the Risk of Sparsification;Proceedings of the VLDB Endowment;2023-06

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3