Accelerating Encrypted Deduplication via SGX
Yanjing Ren, Jingwei Li, Zuoru Yang, Patrick P. C. Lee, Xiaosong Zhang
Abstract
Encrypted deduplication preserves the deduplication effectiveness on encrypted data and is attractive for outsourced storage. However, existing encrypted deduplication approaches build on expensive cryptographic primitives that incur substantial performance slowdown. We present SGXDedup, which leverages Intel SGX to speed up encrypted deduplication based on server-aided message-locked encryption (MLE), while preserving security via SGX. SGXDedup implements a suite of secure interfaces to execute MLE key generation and proof-ofownership operations in SGX enclaves. It also proposes various designs to support secure and efficient enclave operations. Evaluation on synthetic and real-world workloads shows that SGXDedup achieves significant speedups and maintains high bandwidth and storage savings.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers6
- Secure and Lightweight Deduplicated Storage via Shielded Deduplication-Before-EncryptionZuoru Yang, Jingwei Li, Patrick P. C. LeeUSENIX ATC 2022 · 46 citations
- d-DSE: Distinct Dynamic Searchable Encryption Resisting Volume Leakage in Encrypted DatabasesDongli Liu, Wei Wang, Peng Xu, Laurence T. Yang et al.USENIX Security 2024 · 11 citations
- SimEnc: A High-Performance Similarity-Preserving Encryption Approach for Deduplication of Encrypted Docker ImagesTong Sun, Bowen Jiang, Borui Li, Jiamei Lv et al.USENIX ATC 2024 · 10 citations
- FeatureSpy: Detecting Learning-Content Attacks via Feature Inspection in Secure Deduplicated StorageJingwei Li, Yanjing Ren, Patrick P. C. Lee, Yuyu Wang et al.INFOCOM 2023 · 7 citations
- ShieldReduce: Fine-Grained Shielded Data ReductionJingyuan Yang, Jun Wu, Ruilin Wu, Jingwei Li et al.USENIX ATC 2025 · 3 citations
Builds on5
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin et al.USENIX Security 2018 · 1,175 citations
- EnclaveDB: A Secure Database Using SGXChristian Priebe, Kapil Vaswani, Manuel CostaS&P 2018 · 329 citations
- OBLIVIATE: A Data Oblivious Filesystem for Intel SGXAdil Ahmad, Kyungtae Kim, Muhammad Ihsanulhaq Sarfaraz, Byoungyoung LeeNDSS 2018 · 144 citations
- ObliDB: Oblivious Query Processing for Secure DatabasesSaba Eskandarian, Matei ZahariaVLDB 2020 · 127 citations
- Balancing storage efficiency and data confidentiality with tunable encrypted deduplicationJingwei Li, Zuoru Yang, Yanjing Ren, Patrick P. C. Lee et al.EuroSys 2020 · 46 citations
Related papers
- Efficient Distributed Secure Memory with Migratable Merkle TreeErhu Feng, Dong Du, Yubin Xia, Haibo ChenHPCA 2023 · 14 citations
- ESD: An ECC-assisted and Selective Deduplication for Encrypted Non-Volatile Main MemoryChunfeng Du, Suzhen Wu, Jiapeng Wu, Bo Mao et al.HPCA 2023 · 7 citations
- MAGE: Mutual Attestation for a Group of Enclaves without Trusted Third PartiesGuoxing Chen, Yinqian ZhangUSENIX Security 2022
- LightBox: Full-stack Protected Stateful Middlebox at Lightning SpeedHuayi Duan, Cong Wang, Xingliang Yuan, Yajin Zhou et al.CCS 2019 · 88 citations
- MPTEE: bringing flexible and efficient memory protection to Intel SGXWenjia Zhao, Kangjie Lu, Yong Qi, Saiyu QiEuroSys 2020 · 21 citations
