SCONE: Secure linux containers with Intel SGX

Research output: Contribution to book/Conference proceedings/Anthology/ReportConference contributionContributedpeer-review

Contributors

Abstract

In multi-tenant environments, Linux containers managed by Docker or Kubernetes have a lower resource footprint, faster startup times, and higher I/O performance compared to virtual machines (VMs) on hypervisors. Yet their weaker isolation guarantees, enforced through software kernel mechanisms, make it easier for attackers to compromise the confidentiality and integrity of application data within containers.

We describe SCONE, a secure container mechanism for Docker that uses the SGX trusted execution support of Intel CPUs to protect container processes from outside attacks. The design of SCONE leads to (i) a small trusted computing base (TCB) and (ii) a low performance overhead: SCONE offers a secure C standard library interface that transparently encrypts/decrypts I/O data; to reduce the performance impact of thread synchronization and system calls within SGX enclaves, SCONE supports user-level threading and asynchronous system calls. Our evaluation shows that it protects unmodified applications with SGX, achieving 0.6x–1.2x of native throughput.

Details

Original languageEnglish
Title of host publicationProceedings of the 12th USENIX Symposium on Operating Systems Design and Implementation, OSDI 2016
PublisherUSENIX Association
Pages689-703
Number of pages15
ISBN (electronic)978-1-931971-33-1
Publication statusPublished - 2016
Peer-reviewedYes

Conference

Title12th USENIX Symposium on Operating Systems Design and Implementation, OSDI 2016
Duration2 - 4 November 2016
CitySavannah
CountryUnited States of America

External IDs

Scopus 85068857453

Keywords