On Scalable Integrity Checking for Secure Cloud Disks
Quinn Burke, Ryan Sheatsley, Rachel King, Owen Hines, Michael Swift, Patrick D. McDaniel
Abstract
Merkle hash trees are the standard method to protect the integrity and freshness of stored data. However, hash trees introduce additional compute and I/O costs on the I/O critical path, and prior efforts have not fully characterized these costs. In this paper, we quantify performance overheads of storage-level hash trees in realistic settings. We then design an optimized tree structure called Dynamic Merkle Trees (DMTs) based on an analysis of root causes of overheads. DMTs exploit patterns in workloads to deliver up to a 2.2x throughput and latency improvement over the state of the art. Our novel approach provides a promising new direction to achieve integrity guarantees in storage efficiently and at scale.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext b116dbe1-73bb-4bec-b6e3-5a1ab9860939Cited by top-tier papers2
- Reliable and Private Utility Signaling for Data MarketsLi Peng, Jiayao Zhang, Yihang Wu, Weiran Liu et al.SIGMOD 2026 · 1 citation
- Efficient Storage Integrity in Adversarial SettingsQuinn Burke, Ryan Sheatsley, Yohan Beugin, Eric Pauley et al.S&P 2025
Builds on10
- Data-Oriented Programming: On the Expressiveness of Non-control Data AttacksHong Hu, Shweta Shinde, Sendroiu Adrian, Zheng Leong Chua et al.S&P 2016 · 420 citations
- EnclaveDB: A Secure Database Using SGXChristian Priebe, Kapil Vaswani, Manuel CostaS&P 2018 · 329 citations
- ROTE: Rollback Protection for Trusted ExecutionSinisa Matetic, Mansoor Ahmed, Kari Kostiainen, Aritra Dhar et al.USENIX Security 2017 · 249 citations
- Scalable Memory Protection in the PENGLAI EnclaveErhu Feng, Xu Lu, Dong Du, Bicheng Yang et al.OSDI 2021 · 126 citations
- Bonsai Merkle Forests: Efficiently Achieving Crash Consistency in Secure Persistent MemoryAlexander Freij, Huiyang Zhou, Yan SolihinMICRO 2021 · 32 citations
Related papers
- The Locality of Memory CheckingWeijie Wang, Yujie Lu, Charalampos Papamanthou, Fan ZhangCCS 2023 · 5 citations
- KV-Fresh: Freshness Authentication for Outsourced Multi-Version Key-Value StoresYidan Hu, Rui Zhang, Yanchao ZhangINFOCOM 2020 · 8 citations
- Less is More: De-amplifying I/Os for Key-value Stores with a Log-assisted LSM-treeKecheng Huang, Zhiping Jia, Zhaoyan Shen, Zili Shao et al.ICDE 2021 · 27 citations
- A Midsummer Night's Tree: Efficient and High Performance Secure SCMSamuel Thomas, Kidus Workneh, Jac McCarty, Joseph Izraelevitz et al.ASPLOS 2024 · 5 citations
- ?Tree: a Persistent B+-Tree with Low Tail LatencyYoumin Chen, Youyou Lu, Kedong Fang, Qing Wang et al.VLDB 2020
