Projects per year
Abstract
Confidential VMs enable cloud service providers to operate a secure and trustworthy multi-tenant cloud infrastructure. The confidential computing architecture enforces strong isolation for mutually untrusted tenants, i.e., guest VMs, and protects tenants against an untrusted hypervisor. While confidential VMs ensure comprehensive protection for cloud workloads, such heavy-weight isolation is often omitted for serverless applications that co-locate thousands of cloud workers within the same process to optimize FaaS overheads through efficient context switches.
In this work, we present CAGE-V, a novel confidential computing architecture that supports lightweight enclave-based isolation for individual cloud workers running inside confidential VMs. We achieve this lightweight isolation through the use of tagged memory that allows to associate metadata, e.g., Domain Identifiers, with pages. Moreover, the guest enclaves support fast context switches within the confidential VM, as TLB entries are tagged with the Domain Identifiers, eliminating context switch overheads from TLB flushes. We implement a CAGE-V prototype, consisting of a hardware extension for the CORE-V CVA6 processor and a small security monitor, and evaluate our design in terms of system performance, demonstrating a minor performance impact.
In this work, we present CAGE-V, a novel confidential computing architecture that supports lightweight enclave-based isolation for individual cloud workers running inside confidential VMs. We achieve this lightweight isolation through the use of tagged memory that allows to associate metadata, e.g., Domain Identifiers, with pages. Moreover, the guest enclaves support fast context switches within the confidential VM, as TLB entries are tagged with the Domain Identifiers, eliminating context switch overheads from TLB flushes. We implement a CAGE-V prototype, consisting of a hardware extension for the CORE-V CVA6 processor and a small security monitor, and evaluate our design in terms of system performance, demonstrating a minor performance impact.
| Original language | English |
|---|---|
| Title of host publication | Proceedings of the ACM Asia Conference on Computer and Communications Security (ASIA CCS ’26), |
| Publisher | Association for Computing Machinery (ACM) |
| Pages | 577-590 |
| Number of pages | 14 |
| ISBN (Electronic) | 979-8-4007-2356-8 |
| DOIs | |
| Publication status | Published - 4 Jun 2026 |
| Event | ACM ASIA Conference on Computer and Communications Security, ASIA CCS 2026 - hybrid, Bangalore, India Duration: 1 Jun 2026 → 5 Jun 2026 |
Publication series
| Name | ASIA CCS 2026 - Proceedings of the 21st ACM ASIA Conference on Computer and Communications Security |
|---|
Conference
| Conference | ACM ASIA Conference on Computer and Communications Security, ASIA CCS 2026 |
|---|---|
| Abbreviated title | ASIA CCS 2026 |
| Country/Territory | India |
| City | Bangalore |
| Period | 1/06/26 → 5/06/26 |
Keywords
- Secure Virtualization
- Guest Enclaves
- RISC-V
- Confidential Computing
ASJC Scopus subject areas
- Computational Theory and Mathematics
- Computer Networks and Communications
- Computer Science Applications
Fields of Expertise
- Information, Communication & Computing
Fingerprint
Dive into the research topics of 'CAGE-V: Confidential Computing Architecture supporting Guest Enclaves for RISC-V'. Together they form a unique fingerprint.Projects
- 2 Active
-
EU - Rigoletto - Risc-V Generation of high performance automative procesors and computing platforms
Mangard, S. (Project manager on research unit)
1/07/25 → 30/06/28
Project: Research project
-
RESIST - Enabling Secure RISC-V Architectures Through Efficient Software Integrity and Isolation Technologies
Mangard, S. (Project manager on research unit) & Mangard, S. (Consortium manager resp. coordinator with external organisations)
1/01/25 → 31/12/27
Project: Research project
Activities
- 1 Talk at conference or symposium
-
CAGE-V: Confidential Computing Architecture supporting Guest Enclaves for RISC-V
Waser, M. (Speaker)
3 Jun 2026Activity: Talk or presentation › Talk at conference or symposium › Science to science
Research output
- 1 Poster
-
CAGE-V: Confidential Computing Architecture supporting Guest Enclaves for RISC-V
Waser, M., Gollob, P., Unterguggenberger, M. & Mangard, S., 9 Jun 2026.Research output: Contribution to conference › Poster › peer-review
File
Cite this
- APA
- Standard
- Harvard
- Vancouver
- Author
- BIBTEX
- RIS