Preliminary Study of Trusted Execution Environments on Heterogeneous Edge Platforms

Preliminary Study of Trusted Execution Environments on Heterogeneous Edge Platforms
复制标题

DOI:
10.1109/sec.2018.00057
复制
发表时间:
2018-10
期刊:
2018 IEEE/ACM Symposium on Edge Computing (SEC)
影响因子:
--
通讯作者:
Zhenyu Ning;Jinghui Liao;Fengwei Zhang;Weisong Shi
Zhenyu Ning;Jinghui Liao;Fengwei Zhang;Weisong Shi
中科院分区:
其他
文献类型:
--
作者:
Zhenyu Ning;Jinghui Liao;Fengwei Zhang;Weisong Shi

文献摘要

相似文献

最近的边缘计算基础设施引入了一种新的计算模型,作为传统云计算的补充。基础设施中的边缘节点减少了云计算模型的网络延迟,并通过将敏感计算从云卸载到边缘来提高数据隐私。目前的研究主要集中在边缘计算的应用和性能上,但对这种新的计算模式的安全性关注较少。受硬件供应商最近推出硬件辅助可信执行环境(TEE)的启发,我们相信在边缘节点上应用这些TEE将是保护这些节点上的计算和敏感数据的自然选择。在本文中,我们研究了典型的硬件辅助TEE,并评估了这些TEE的性能,以帮助分析在边缘平台上部署它们的可行性。我们的实验表明,由TEE引入的性能开销是低的,这表明将这些TEE集成到边缘节点可以有效地减轻安全漏洞与低性能开销。
The recent edge computing infrastructure introduces a new computing model that works as a complement of the traditional cloud computing. The edge nodes in the infrastructure reduce the network latency of the cloud computing model and increase data privacy by offloading the sensitive computation from the cloud to the edge. Recent research focuses on the applications and performance of the edge computing, but less attention is paid to the security of this new computing paradigm. Inspired by the recent move of hardware vendors that introducing hardware-assisted Trusted Execution Environment (TEE), we believe applying these TEEs on the edge nodes would be a natural choice to secure the computation and sensitive data on these nodes. In this paper, we investigate the typical hardware-assisted TEEs and evaluate the performance of these TEEs to help analyze the feasibility of deploying them on the edge platforms. Our experiments show that the performance overhead introduced by the TEEs is low, which indicates that integrating these TEEs into the edge nodes can efficiently mitigate security loopholes with a low-performance overhead.