{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,8]],"date-time":"2025-09-08T06:04:41Z","timestamp":1757311481526,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":61,"publisher":"ACM","license":[{"start":{"date-parts":[[2017,9,24]],"date-time":"2017-09-24T00:00:00Z","timestamp":1506211200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"National Natural Science Funds for Distinguished Young Scholar","award":["61525204"],"award-info":[{"award-number":["61525204"]}]},{"name":"National Key Research & Development Program of China","award":["2016YFB1000500"],"award-info":[{"award-number":["2016YFB1000500"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2017,9,24]]},"DOI":"10.1145\/3127479.3127482","type":"proceedings-article","created":{"date-parts":[[2017,9,27]],"date-time":"2017-09-27T12:34:00Z","timestamp":1506515640000},"page":"201-213","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":15,"title":["STYX"],"prefix":"10.1145","author":[{"given":"Changzheng","family":"Wei","sequence":"first","affiliation":[{"name":"Intel Asia-Pacific Research &amp; Development Ltd. Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jian","family":"Li","sequence":"additional","affiliation":[{"name":"Shanghai Jiao Tong University, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Weigang","family":"Li","sequence":"additional","affiliation":[{"name":"Intel Asia-Pacific Research &amp; Development Ltd. Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ping","family":"Yu","sequence":"additional","affiliation":[{"name":"Intel Asia-Pacific Research &amp; Development Ltd. Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Haibing","family":"Guan","sequence":"additional","affiliation":[{"name":"Shanghai Jiao Tong University, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2017,9,24]]},"reference":[{"unstructured":"Intel corp. intel quickassist technology. https:\/\/01.org\/packet-processing\/intel  Intel corp. intel quickassist technology. https:\/\/01.org\/packet-processing\/intel","key":"e_1_3_2_1_1_1"},{"unstructured":"Intel corp. intel software guard extensions: Intel attestation service api. https:\/\/software.intel.com\/sites\/default\/files\/managed\/3d\/c8\/IAS_1_0_API_spec_1_1_Final.pdf.  Intel corp. intel software guard extensions: Intel attestation service api. https:\/\/software.intel.com\/sites\/default\/files\/managed\/3d\/c8\/IAS_1_0_API_spec_1_1_Final.pdf.","key":"e_1_3_2_1_2_1"},{"unstructured":"Intel corp. intel software guard extensions (intel sgx). https:\/\/software.intel.com\/en-us\/sgx.  Intel corp. intel software guard extensions (intel sgx). https:\/\/software.intel.com\/en-us\/sgx.","key":"e_1_3_2_1_3_1"},{"unstructured":"Intel corp intel\u00c2\u0151 xeon\u00c2\u0151 processor e5-2600 v2 product family and intel\u00c2\u0151 communications chipset 89xx series . https:\/\/wwwssl.intel.com\/content\/www\/us\/en\/intelligent-systems\/highland-forest\/xeon-e5-2600-v2-large-scale-communications-brief.html.  Intel corp intel\u00c2\u0151 xeon\u00c2\u0151 processor e5-2600 v2 product family and intel\u00c2\u0151 communications chipset 89xx series . https:\/\/wwwssl.intel.com\/content\/www\/us\/en\/intelligent-systems\/highland-forest\/xeon-e5-2600-v2-large-scale-communications-brief.html.","key":"e_1_3_2_1_4_1"},{"unstructured":"Amazon. Amazon cloudfront \u00e2\u0102\u015e content delivery network (cdn). https:\/\/aws.amazon.com\/cloudfront\/.  Amazon. Amazon cloudfront \u00e2\u0102\u015e content delivery network (cdn). https:\/\/aws.amazon.com\/cloudfront\/.","key":"e_1_3_2_1_5_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_6_1","DOI":"10.1109\/ARES.2015.55"},{"key":"e_1_3_2_1_7_1","volume-title":"Shielding applications from an untrusted cloud with haven. ACM Transactions on Computer Systems (TOCS) 33, 3","author":"Baumann A.","year":"2015","unstructured":"Baumann , A. , Peinado , M. , and Hunt , G . Shielding applications from an untrusted cloud with haven. ACM Transactions on Computer Systems (TOCS) 33, 3 ( 2015 ), 8. Baumann, A., Peinado, M., and Hunt, G. Shielding applications from an untrusted cloud with haven. ACM Transactions on Computer Systems (TOCS) 33, 3 (2015), 8."},{"unstructured":"Blog V. C. Analysis of \"average session duration\" in google analytics. https:\/\/www.visma.com\/blog\/analysis-reporting-average-session-duration-google-analytics\/.  Blog V. C. Analysis of \"average session duration\" in google analytics. https:\/\/www.visma.com\/blog\/analysis-reporting-average-session-duration-google-analytics\/.","key":"e_1_3_2_1_8_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_9_1","DOI":"10.1145\/501983.502018"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_10_1","DOI":"10.1145\/1314333.1314337"},{"key":"e_1_3_2_1_12_1","first-page":"1","article-title":"Enhanced privacy id from bilinear pairing for hardware authentication and attestation. International Journal of Information Privacy","volume":"2","author":"Brickell E.","year":"2011","unstructured":"Brickell , E. , and Li , J . Enhanced privacy id from bilinear pairing for hardware authentication and attestation. International Journal of Information Privacy , Security and Integrity 2 1 , 1 ( 2011 ), 3--33. Brickell, E., and Li, J. Enhanced privacy id from bilinear pairing for hardware authentication and attestation. International Journal of Information Privacy, Security and Integrity 2 1, 1 (2011), 3--33.","journal-title":"Security and Integrity"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_13_1","DOI":"10.1109\/TDSC.2011.63"},{"key":"e_1_3_2_1_14_1","volume-title":"Sec 1: elliptic curve cryptography. standards for efficient cryptography group (secg)","author":"Brown R.","year":"2016","unstructured":"Brown , R. Sec 1: elliptic curve cryptography. standards for efficient cryptography group (secg) , 2016 . Brown, R. Sec 1: elliptic curve cryptography. standards for efficient cryptography group (secg), 2016."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_15_1","DOI":"10.1145\/2976749.2978301"},{"key":"e_1_3_2_1_16_1","first-page":"1","volume-title":"Cryptographic Key Management Issues and Challenges in Cloud Services","author":"Chandramouli R.","year":"2014","unstructured":"Chandramouli , R. , Iorga , M. , and Chokhani , S . Cryptographic Key Management Issues and Challenges in Cloud Services . Springer New York , New York, NY , 2014 , pp. 1 -- 30 . Chandramouli, R., Iorga, M., and Chokhani, S. Cryptographic Key Management Issues and Challenges in Cloud Services. Springer New York, New York, NY, 2014, pp. 1--30."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_17_1","DOI":"10.1007\/3-540-36288-6_2"},{"unstructured":"Cloudflare. How will keyless ssl affect performance? https:\/\/support.cloudflare.com\/hc\/en-us\/articles\/203243090-How-will-Keyless-SSL-affect-performance-.  Cloudflare. How will keyless ssl affect performance? https:\/\/support.cloudflare.com\/hc\/en-us\/articles\/203243090-How-will-Keyless-SSL-affect-performance-.","key":"e_1_3_2_1_18_1"},{"unstructured":"Cloudflare. Keyless ssl: The nitty gritty technical details. https:\/\/blog.cloudflare.com\/keyless-ssl-the-nitty-gritty-technical-details\/.  Cloudflare. Keyless ssl: The nitty gritty technical details. https:\/\/blog.cloudflare.com\/keyless-ssl-the-nitty-gritty-technical-details\/.","key":"e_1_3_2_1_19_1"},{"key":"e_1_3_2_1_20_1","volume-title":"Cloud security: Emerging threats and current solutions. Computers & Electrical Engineering","author":"Coppolino L.","year":"2016","unstructured":"Coppolino , L. , D\u00e2\u0102 &Zacute;Antonio, S., Mazzeo , G. , and Romano , L . Cloud security: Emerging threats and current solutions. Computers & Electrical Engineering ( 2016 ). Coppolino, L., D\u00e2\u0102&Zacute;Antonio, S., Mazzeo, G., and Romano, L. Cloud security: Emerging threats and current solutions. Computers & Electrical Engineering (2016)."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_22_1","DOI":"10.1145\/357830.357847"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_23_1","DOI":"10.1145\/2663716.2663755"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_24_1","DOI":"10.1109\/AsiaJCIS.2014.17"},{"unstructured":"Google. https:\/\/support.google.com\/analytics\/answer\/1006253?hl=en.  Google. https:\/\/support.google.com\/analytics\/answer\/1006253?hl=en.","key":"e_1_3_2_1_25_1"},{"unstructured":"Google. Google cloud cdn documentation. https:\/\/cloud.google.com\/cdn\/docs\/.  Google. Google cloud cdn documentation. https:\/\/cloud.google.com\/cdn\/docs\/.","key":"e_1_3_2_1_26_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_27_1","DOI":"10.1145\/1367497.1367526"},{"key":"e_1_3_2_1_28_1","volume-title":"Guide to elliptic curve cryptography","author":"Hankerson D.","year":"2006","unstructured":"Hankerson , D. , Menezes , A. J. , and Vanstone , S . Guide to elliptic curve cryptography . Springer Science & Business Media , 2006 . Hankerson, D., Menezes, A. J., and Vanstone, S. Guide to elliptic curve cryptography. Springer Science & Business Media, 2006."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_29_1","DOI":"10.1145\/2499368.2451146"},{"key":"e_1_3_2_1_30_1","volume-title":"intel system studio","author":"Intel. Corp.","year":"2017","unstructured":"Intel. Corp. , intel system studio 2017 . https:\/\/software.intel.com\/en-us\/intel-system-studio. Intel. Corp., intel system studio 2017. https:\/\/software.intel.com\/en-us\/intel-system-studio."},{"key":"e_1_3_2_1_31_1","volume-title":"intel vtune\u00e2\u010e\u0107 amplifier","author":"Intel. Corp.","year":"2017","unstructured":"Intel. Corp. , intel vtune\u00e2\u010e\u0107 amplifier 2017 . https:\/\/software.intel.com\/en-us\/intel-vtune-amplifier-xe. Intel. Corp., intel vtune\u00e2\u010e\u0107 amplifier 2017. https:\/\/software.intel.com\/en-us\/intel-vtune-amplifier-xe."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_32_1","DOI":"10.1145\/1993498.1993544"},{"key":"e_1_3_2_1_33_1","volume-title":"Intel software guard extensions: Epid provisioning and attestation services. White Paper","author":"Johnson S.","year":"2016","unstructured":"Johnson , S. , Scarlata , V. , Rozas , C. , Brickell , E. , and Mckeen , F . Intel software guard extensions: Epid provisioning and attestation services. White Paper ( 2016 ). Johnson, S., Scarlata, V., Rozas, C., Brickell, E., and Mckeen, F. Intel software guard extensions: Epid provisioning and attestation services. White Paper (2016)."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_34_1","DOI":"10.1007\/10722028_23"},{"key":"e_1_3_2_1_35_1","volume-title":"IETF","author":"Kaliski B.","year":"2008","unstructured":"Kaliski , B. Public-key cryptography standards (pkcs)# 8: Private-key information syntax specification version 1.2. RFC 5208 , IETF ( 2008 ). Kaliski, B. Public-key cryptography standards (pkcs)# 8: Private-key information syntax specification version 1.2. RFC 5208, IETF (2008)."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_36_1","DOI":"10.1145\/2834050.2834100"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_37_1","DOI":"10.1007\/978-3-540-45146-4_24"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_38_1","DOI":"10.1109\/SP.2014.12"},{"key":"e_1_3_2_1_39_1","first-page":"49","volume-title":"Proceedings of the 12th USENIX Conference on Operating Systems Design and Implementation (Berkeley, CA, USA, 2016), OSDI'16, USENIX Association","author":"Litton J.","unstructured":"Litton , J. , Vahldiek-Oberwagner , A. , Elnikety , E. , Garg , D. , Bhattacharjee , B. , and Druschel , P . Light-weight contexts: An os abstraction for safety and performance . In Proceedings of the 12th USENIX Conference on Operating Systems Design and Implementation (Berkeley, CA, USA, 2016), OSDI'16, USENIX Association , pp. 49 -- 64 . Litton, J., Vahldiek-Oberwagner, A., Elnikety, E., Garg, D., Bhattacharjee, B., and Druschel, P. Light-weight contexts: An os abstraction for safety and performance. In Proceedings of the 12th USENIX Conference on Operating Systems Design and Implementation (Berkeley, CA, USA, 2016), OSDI'16, USENIX Association, pp. 49--64."},{"key":"e_1_3_2_1_40_1","first-page":"417","volume-title":"Conference on the Theory and Application of Cryptographic Techniques","author":"Miller V. S.","year":"1985","unstructured":"Miller , V. S. Use of elliptic curves in cryptography . In Conference on the Theory and Application of Cryptographic Techniques ( 1985 ), Springer , pp. 417 -- 426 . Miller, V. S. Use of elliptic curves in cryptography. In Conference on the Theory and Application of Cryptographic Techniques (1985), Springer, pp. 417--426."},{"key":"e_1_3_2_1_41_1","volume-title":"Half a million widely trusted websites vulnerable to heartbleed bug","author":"Mutton P.","year":"2014","unstructured":"Mutton , P. Half a million widely trusted websites vulnerable to heartbleed bug , 2014 . Mutton, P. Half a million widely trusted websites vulnerable to heartbleed bug, 2014."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_42_1","DOI":"10.1007\/978-3-642-19125-1_7"},{"key":"e_1_3_2_1_43_1","volume-title":"Trusted code execution on untrusted platform using intel sgx. Virus Bulletin","author":"Noubir G.","year":"2016","unstructured":"Noubir , G. , and Sanatinia , A . Trusted code execution on untrusted platform using intel sgx. Virus Bulletin ( 2016 ). Noubir, G., and Sanatinia, A. Trusted code execution on untrusted platform using intel sgx. Virus Bulletin (2016)."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_44_1","DOI":"10.1109\/TIFS.2015.2439964"},{"unstructured":"OpenSSL. https:\/\/www.openssl.org\/.  OpenSSL. https:\/\/www.openssl.org\/.","key":"e_1_3_2_1_45_1"},{"key":"e_1_3_2_1_46_1","first-page":"173","article-title":"the high-performance web server and reverse proxy","volume":"2008","author":"Reese W.","year":"2008","unstructured":"Reese , W. Nginx : the high-performance web server and reverse proxy . Linux Journal 2008 , 173 ( 2008 ), 2. Reese, W. Nginx: the high-performance web server and reverse proxy. Linux Journal 2008, 173 (2008), 2.","journal-title":"Linux Journal"},{"key":"e_1_3_2_1_47_1","volume-title":"Security holes... who cares? In USENIX Security","author":"Rescorla E.","year":"2003","unstructured":"Rescorla , E. Security holes... who cares? In USENIX Security ( 2003 ), Washington , DC. Rescorla, E. Security holes... who cares? In USENIX Security (2003), Washington, DC."},{"key":"e_1_3_2_1_48_1","volume-title":"Pkcs#8: Private-key information syntax standard","author":"Rsa A.","year":"1993","unstructured":"Rsa , A. , and Note , L. T . Pkcs#8: Private-key information syntax standard , 1993 . Rsa, A., and Note, L. T. Pkcs#8: Private-key information syntax standard, 1993."},{"key":"e_1_3_2_1_49_1","volume-title":"Honey onions: a framework for characterizing and identifying misbehaving tor hsdirs. arXiv preprint arXiv:1610.06140","author":"Sanatinia A.","year":"2016","unstructured":"Sanatinia , A. , and Noubir , G . Honey onions: a framework for characterizing and identifying misbehaving tor hsdirs. arXiv preprint arXiv:1610.06140 ( 2016 ). Sanatinia, A., and Noubir, G. Honey onions: a framework for characterizing and identifying misbehaving tor hsdirs. arXiv preprint arXiv:1610.06140 (2016)."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_50_1","DOI":"10.1109\/SP.2015.10"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_51_1","DOI":"10.1145\/2528521.1508250"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_52_1","DOI":"10.1145\/2810103.2813608"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_53_1","DOI":"10.1109\/Trustcom.2015.385"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_54_1","DOI":"10.1145\/238168.238182"},{"key":"e_1_3_2_1_55_1","volume-title":"Public key cryptography standards: Pkcs. arXiv preprint arXiv:1207.5446","author":"Wang Y.","year":"2012","unstructured":"Wang , Y. Public key cryptography standards: Pkcs. arXiv preprint arXiv:1207.5446 ( 2012 ). Wang, Y. Public key cryptography standards: Pkcs. arXiv preprint arXiv:1207.5446 (2012)."},{"unstructured":"Wikipedia. Content delivery network. https:\/\/en.wikipedia.org\/wiki\/Content_delivery_network.  Wikipedia. Content delivery network. https:\/\/en.wikipedia.org\/wiki\/Content_delivery_network.","key":"e_1_3_2_1_56_1"},{"unstructured":"Wikipedia. Fiber. https:\/\/en.wikipedia.org\/wiki\/Fiber_(computer_science)#cite_note-flounder-1.  Wikipedia. Fiber. https:\/\/en.wikipedia.org\/wiki\/Fiber_(computer_science)#cite_note-flounder-1.","key":"e_1_3_2_1_57_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_58_1","DOI":"10.1145\/370155.370419"},{"key":"e_1_3_2_1_59_1","first-page":"34","volume-title":"PROCEEDINGS OF 2013 International Conference on Sensor Network Security Technology and Privacy Communication System (May","author":"Xie W.","year":"2013","unstructured":"Xie , W. , and Wang , J . A trusted connection based scheme for ad hoc network . In PROCEEDINGS OF 2013 International Conference on Sensor Network Security Technology and Privacy Communication System (May 2013 ), pp. 34 -- 38 . Xie, W., and Wang, J. A trusted connection based scheme for ad hoc network. In PROCEEDINGS OF 2013 International Conference on Sensor Network Security Technology and Privacy Communication System (May 2013), pp. 34--38."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_60_1","DOI":"10.1145\/2948618.2948621"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_61_1","DOI":"10.1145\/2663716.2663758"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_62_1","DOI":"10.1145\/2342356.2342434"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_63_1","DOI":"10.1109\/TNET.2015.2409233"}],"event":{"sponsor":["SIGMOD ACM Special Interest Group on Management of Data","SIGOPS ACM Special Interest Group on Operating Systems"],"acronym":"SoCC '17","name":"SoCC '17: ACM Symposium on Cloud Computing","location":"Santa Clara California"},"container-title":["Proceedings of the 2017 Symposium on Cloud Computing"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3127479.3127482","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3127479.3127482","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T03:37:09Z","timestamp":1750217829000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3127479.3127482"}},"subtitle":["a trusted and accelerated hierarchical SSL key management and distribution system for cloud based CDN application"],"short-title":[],"issued":{"date-parts":[[2017,9,24]]},"references-count":61,"alternative-id":["10.1145\/3127479.3127482","10.1145\/3127479"],"URL":"https:\/\/doi.org\/10.1145\/3127479.3127482","relation":{},"subject":[],"published":{"date-parts":[[2017,9,24]]},"assertion":[{"value":"2017-09-24","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}