{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,16]],"date-time":"2026-07-16T02:11:46Z","timestamp":1784167906925,"version":"3.55.0"},"reference-count":64,"publisher":"Association for Computing Machinery (ACM)","issue":"6","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Proc. VLDB Endow."],"published-print":{"date-parts":[[2021,2]]},"abstract":"<jats:p>\n            Data confidentiality is one of the biggest concerns that hinders enterprise customers from moving their workloads to the cloud. Thanks to the trusted execution environment (TEE), it is now feasible to build encrypted databases in the enclave that can process customers' data while keeping it confidential to the cloud. Though some enclave-based encrypted databases emerge recently, there remains a large unexplored area in between about how confidentiality can be achieved in different ways and what influences are implied by them. In this paper, we first provide a broad exploration of possible design choices in building encrypted database storage engines, rendering trade-offs in security, performance and functionality. We observe that choices on different dimensions can be independent and their combination determines the overall trade-off of the entire storage. We then propose\n            <jats:italic>Enclage<\/jats:italic>\n            , an encrypted storage engine that makes practical trade-offs. It adopts many enclave-native designs, such as page-level encryption, reduced enclave interaction, and hierarchical memory buffer, which offer high-level security guarantee and high performance at the same time. To make better use of the limited enclave memory, we derive the optimal page size in enclave and adopt delta decryption to access large data pages with low cost. Our experiments show that\n            <jats:italic>Enclage<\/jats:italic>\n            outperforms the baseline, a common storage design in many encrypted databases, by over 13x in throughput and about 5x in storage savings.\n          <\/jats:p>","DOI":"10.14778\/3447689.3447705","type":"journal-article","created":{"date-parts":[[2021,4,12]],"date-time":"2021-04-12T16:20:06Z","timestamp":1618244406000},"page":"1019-1032","source":"Crossref","is-referenced-by-count":44,"title":["Building enclave-native storage engines for practical encrypted databases"],"prefix":"10.14778","volume":"14","author":[{"given":"Yuanyuan","family":"Sun","sequence":"first","affiliation":[{"name":"Alibaba Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Sheng","family":"Wang","sequence":"additional","affiliation":[{"name":"Alibaba Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Huorong","family":"Li","sequence":"additional","affiliation":[{"name":"Alibaba Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Feifei","family":"Li","sequence":"additional","affiliation":[{"name":"Alibaba Group"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,4,12]]},"reference":[{"key":"e_1_2_1_1_1","unstructured":"2008. MurmurHash. https:\/\/sites.google.com\/site\/murmurhash\/  2008. MurmurHash. https:\/\/sites.google.com\/site\/murmurhash\/"},{"key":"e_1_2_1_2_1","unstructured":"2010. Google fired engineer for privacy breach. https:\/\/www.cnet.com\/news\/google-fired-engineer-for-privacy-breach\/  2010. Google fired engineer for privacy breach. https:\/\/www.cnet.com\/news\/google-fired-engineer-for-privacy-breach\/"},{"key":"e_1_2_1_3_1","unstructured":"2019. Google Encrypted BigQuery client. https:\/\/github.com\/google\/encrypted-bigquery-client  2019. Google Encrypted BigQuery client. https:\/\/github.com\/google\/encrypted-bigquery-client"},{"key":"e_1_2_1_4_1","unstructured":"2020. SEV Secure Encrypted Virtualization API Version 0.24. https:\/\/www.amd.com\/system\/files\/TechDocs\/55766_SEV-KM_API_Specification.pdf  2020. SEV Secure Encrypted Virtualization API Version 0.24. https:\/\/www.amd.com\/system\/files\/TechDocs\/55766_SEV-KM_API_Specification.pdf"},{"key":"e_1_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/3318464.3386141"},{"key":"e_1_2_1_6_1","unstructured":"Arvind Arasu Spyros Blanas Ken Eguro Raghav Kaushik Donald Kossmann Ravishankar Ramamurthy and Ramarathnam Venkatesan. 2013. Orthogonal Security with Cipherbase.. In CIDR.  Arvind Arasu Spyros Blanas Ken Eguro Raghav Kaushik Donald Kossmann Ravishankar Ramamurthy and Ramarathnam Venkatesan. 2013. Orthogonal Security with Cipherbase.. In CIDR."},{"key":"e_1_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE.2015.7113304"},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.5555\/3026877.3026930"},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.5555\/3323298.3323315"},{"key":"e_1_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2013.38"},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2245276.2232005"},{"key":"e_1_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/1073970.1074009"},{"key":"e_1_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.14778\/3236187.3236217"},{"key":"e_1_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.5555\/2033036.2033080"},{"key":"e_1_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2312005.2312016"},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046753"},{"key":"e_1_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354216"},{"key":"e_1_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813700"},{"key":"e_1_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40041-4_20"},{"key":"e_1_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/1807128.1807152"},{"key":"e_1_2_1_21_1","volume-title":"The Pyramid Scheme: Oblivious RAM for Trusted Processors. arXiv preprint arXiv:1712.07882","author":"Costa Manuel","year":"2017","unstructured":"Manuel Costa , Lawrence Esswood , Olga Ohrimenko , Felix Schuster , and Sameer Wagh . 2017. The Pyramid Scheme: Oblivious RAM for Trusted Processors. arXiv preprint arXiv:1712.07882 ( 2017 ). Manuel Costa, Lawrence Esswood, Olga Ohrimenko, Felix Schuster, and Sameer Wagh. 2017. The Pyramid Scheme: Oblivious RAM for Trusted Processors. arXiv preprint arXiv:1712.07882 (2017)."},{"key":"e_1_2_1_22_1","first-page":"1","article-title":"Intel SGX Explained","volume":"2016","author":"Costan Victor","year":"2016","unstructured":"Victor Costan and Srinivas Devadas . 2016 . Intel SGX Explained . IACR Cryptology ePrint Archive 2016 , 86 (2016), 1 -- 118 . Victor Costan and Srinivas Devadas. 2016. Intel SGX Explained. IACR Cryptology ePrint Archive 2016, 86 (2016), 1--118.","journal-title":"IACR Cryptology ePrint Archive"},{"key":"e_1_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1835698.1835736"},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.5555\/2842853"},{"key":"e_1_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.14778\/3364324.3364331"},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.5555\/1251123.1251143"},{"key":"e_1_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.5555\/822080.822806"},{"key":"e_1_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.5220\/0006461202000211"},{"key":"e_1_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/233551.233553"},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/1506409.1506429"},{"key":"e_1_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2312005.2312036"},{"key":"e_1_2_1_33_1","unstructured":"Intel. 2014. Intel(R) Software Guard Extensions Programming Reference. https:\/\/software.intel.com\/sites\/default\/files\/managed\/48\/88\/329298-002.pdf  Intel. 2014. Intel(R) Software Guard Extensions Programming Reference. https:\/\/software.intel.com\/sites\/default\/files\/managed\/48\/88\/329298-002.pdf"},{"key":"e_1_2_1_34_1","unstructured":"Intel. 2018. Intel(R) Software Guard Extensions SDK for Linux* OS. https:\/\/download.01.org\/intel-sgx\/linux-2.2\/docs\/Intel_SGX_Developer_Reference_Linux_2.2_Open_Source.pdf  Intel. 2018. Intel(R) Software Guard Extensions SDK for Linux * OS. https:\/\/download.01.org\/intel-sgx\/linux-2.2\/docs\/Intel_SGX_Developer_Reference_Linux_2.2_Open_Source.pdf"},{"key":"e_1_2_1_35_1","unstructured":"Intel. June 2015. Intel(R) Software Guard Extensions (Intel SGX). https:\/\/software.intel.com\/sites\/default\/files\/332680-002.pdf  Intel. June 2015. Intel(R) Software Guard Extensions (Intel SGX). https:\/\/software.intel.com\/sites\/default\/files\/332680-002.pdf"},{"key":"e_1_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-29485-8_6"},{"key":"e_1_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00778-004-0140-6"},{"key":"e_1_2_1_38_1","volume-title":"Proceedings of the 25th USENIX Security Symposium (SEC'16)","author":"Kaplan David","year":"2016","unstructured":"David Kaplan . 2016 . AMD x86 Memory Encryption Technologies . In Proceedings of the 25th USENIX Security Symposium (SEC'16) . David Kaplan. 2016. AMD x86 Memory Encryption Technologies. In Proceedings of the 25th USENIX Security Symposium (SEC'16)."},{"key":"e_1_2_1_39_1","volume-title":"Feb","author":"Kaplan David","year":"2017","unstructured":"David Kaplan . 2017. Protecting VM Register State with SEV-ES. White paper , Feb ( 2017 ). David Kaplan. 2017. Protecting VM Register State with SEV-ES. White paper, Feb (2017)."},{"key":"e_1_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/3302424.3303951"},{"key":"e_1_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/1142473.1142488"},{"key":"e_1_2_1_42_1","volume-title":"Oblix: An Efficient Oblivious Search Index. In 2018 IEEE Symposium on Security and Privacy (SP). IEEE, 279--296","author":"Mishra Pratyush","year":"2018","unstructured":"Pratyush Mishra , Rishabh Poddar , Jerry Chen , Alessandro Chiesa , and Raluca Ada Popa . 2018 . Oblix: An Efficient Oblivious Search Index. In 2018 IEEE Symposium on Security and Privacy (SP). IEEE, 279--296 . Pratyush Mishra, Rishabh Poddar, Jerry Chen, Alessandro Chiesa, and Raluca Ada Popa. 2018. Oblix: An Efficient Oblivious Search Index. In 2018 IEEE Symposium on Security and Privacy (SP). IEEE, 279--296."},{"key":"e_1_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/2692916.2555256"},{"key":"e_1_2_1_44_1","volume-title":"Pegah Nikbakht Bideh, and Joakim Brorsson","author":"Nilsson Alexander","year":"2020","unstructured":"Alexander Nilsson , Pegah Nikbakht Bideh, and Joakim Brorsson . 2020 . A Survey of Published Attacks on Intel SGX. Technical Report. Tech . rep. Alexander Nilsson, Pegah Nikbakht Bideh, and Joakim Brorsson. 2020. A Survey of Published Attacks on Intel SGX. Technical Report. Tech. rep."},{"key":"e_1_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1145\/3064176.3064219"},{"key":"e_1_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.30"},{"key":"e_1_2_1_47_1","first-page":"591","article-title":"Arx: A Strongly Encrypted Database System","volume":"2016","author":"Poddar Rishabh","year":"2016","unstructured":"Rishabh Poddar , Tobias Boelter , and Raluca Ada Popa . 2016 . Arx: A Strongly Encrypted Database System . IACR Cryptology ePrint Archive 2016 (2016), 591 . Rishabh Poddar, Tobias Boelter, and Raluca Ada Popa. 2016. Arx: A Strongly Encrypted Database System. IACR Cryptology ePrint Archive 2016 (2016), 591.","journal-title":"IACR Cryptology ePrint Archive"},{"key":"e_1_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.14778\/3342263.3342641"},{"key":"e_1_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043566"},{"key":"e_1_2_1_50_1","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy (SP'18)","author":"Priebe Christian","year":"2018","unstructured":"Christian Priebe , Kapil Vaswani , and Manuel Costa . 2018 . EnclaveDB: A Secure Database UsingSGX . In Proceedings of the IEEE Symposium on Security and Privacy (SP'18) . IEEE, 264--278. Christian Priebe, Kapil Vaswani, and Manuel Costa. 2018. EnclaveDB: A Secure Database UsingSGX. In Proceedings of the IEEE Symposium on Security and Privacy (SP'18). IEEE, 264--278."},{"key":"e_1_2_1_51_1","unstructured":"Thomas Ristenpart and Scott Yilek. 2010. When Good Randomness Goes Bad: Virtual Machine Reset Vulnerabilities and Hedging Deployed Cryptography. In NDSS.  Thomas Ristenpart and Scott Yilek. 2010. When Good Randomness Goes Bad: Virtual Machine Reset Vulnerabilities and Hedging Deployed Cryptography. In NDSS."},{"key":"e_1_2_1_52_1","volume-title":"TaoStore: Overcoming Asynchronicity in Oblivious Data Storage. In 2016 IEEE Symposium on Security and Privacy (SP). IEEE, 198--217","author":"Sahin Cetin","year":"2016","unstructured":"Cetin Sahin , Victor Zakhary , Amr El Abbadi , Huijia Lin , and Stefano Tessaro . 2016 . TaoStore: Overcoming Asynchronicity in Oblivious Data Storage. In 2016 IEEE Symposium on Security and Privacy (SP). IEEE, 198--217 . Cetin Sahin, Victor Zakhary, Amr El Abbadi, Huijia Lin, and Stefano Tessaro. 2016. TaoStore: Overcoming Asynchronicity in Oblivious Data Storage. In 2016 IEEE Symposium on Security and Privacy (SP). IEEE, 198--217."},{"key":"e_1_2_1_53_1","volume-title":"White Paper","author":"AMD","year":"2020","unstructured":"AMD SEV-SNP. 2020 . Strengthening VM isolation with integrity protection and more . White Paper , January (2020). AMD SEV-SNP. 2020. Strengthening VM isolation with integrity protection and more. White Paper, January (2020)."},{"key":"e_1_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.5555\/882494.884426"},{"key":"e_1_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516660"},{"key":"e_1_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1145\/782814.782838"},{"key":"e_1_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/3268935.3268942"},{"key":"e_1_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.14778\/2535573.2488336"},{"key":"e_1_2_1_59_1","doi-asserted-by":"crossref","unstructured":"Stephan van Schaik Marina Minkin Andrew Kwong Daniel Genkin and Yuval Yarom. 2020. CacheOut: Leaking Data on Intel CPUs via Cache Evictions. http:\/\/cacheoutattack.com\/ (2020).  Stephan van Schaik Marina Minkin Andrew Kwong Daniel Genkin and Yuval Yarom. 2020. CacheOut: Leaking Data on Intel CPUs via Cache Evictions. http:\/\/cacheoutattack.com\/ (2020).","DOI":"10.1109\/SP40001.2021.00064"},{"key":"e_1_2_1_60_1","unstructured":"Verizon. 2018. 2016 Data Breach Investigations Report. https:\/\/regmedia.co.uk\/2016\/05\/12\/dbir_2016.pdf  Verizon. 2018. 2016 Data Breach Investigations Report. https:\/\/regmedia.co.uk\/2016\/05\/12\/dbir_2016.pdf"},{"key":"e_1_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0052"},{"key":"e_1_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/3140659.3080208"},{"key":"e_1_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"},{"key":"e_1_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.5555\/3154630.3154653"}],"container-title":["Proceedings of the VLDB Endowment"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.14778\/3447689.3447705","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,28]],"date-time":"2022-12-28T11:19:32Z","timestamp":1672226372000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.14778\/3447689.3447705"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,2]]},"references-count":64,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2021,2]]}},"alternative-id":["10.14778\/3447689.3447705"],"URL":"https:\/\/doi.org\/10.14778\/3447689.3447705","relation":{},"ISSN":["2150-8097"],"issn-type":[{"value":"2150-8097","type":"print"}],"subject":[],"published":{"date-parts":[[2021,2]]}}}