Skip to main navigation Skip to search Skip to main content

CAGE-V: Confidential Computing Architecture supporting Guest Enclaves for RISC-V

Research output: Chapter in Book/Report/Conference proceedingConference paperpeer-review

Abstract

Confidential VMs enable cloud service providers to operate a secure and trustworthy multi-tenant cloud infrastructure. The confidential computing architecture enforces strong isolation for mutually untrusted tenants, i.e., guest VMs, and protects tenants against an untrusted hypervisor. While confidential VMs ensure comprehensive protection for cloud workloads, such heavy-weight isolation is often omitted for serverless applications that co-locate thousands of cloud workers within the same process to optimize FaaS overheads through efficient context switches.
In this work, we present CAGE-V, a novel confidential computing architecture that supports lightweight enclave-based isolation for individual cloud workers running inside confidential VMs. We achieve this lightweight isolation through the use of tagged memory that allows to associate metadata, e.g., Domain Identifiers, with pages. Moreover, the guest enclaves support fast context switches within the confidential VM, as TLB entries are tagged with the Domain Identifiers, eliminating context switch overheads from TLB flushes. We implement a CAGE-V prototype, consisting of a hardware extension for the CORE-V CVA6 processor and a small security monitor, and evaluate our design in terms of system performance, demonstrating a minor performance impact.
Original languageEnglish
Title of host publicationProceedings of the ACM Asia Conference on Computer and Communications Security (ASIA CCS ’26),
PublisherAssociation for Computing Machinery (ACM)
Pages577-590
Number of pages14
ISBN (Electronic)979-8-4007-2356-8
DOIs
Publication statusPublished - 4 Jun 2026
EventACM ASIA Conference on Computer and Communications Security, ASIA CCS 2026 - hybrid, Bangalore, India
Duration: 1 Jun 20265 Jun 2026

Publication series

NameASIA CCS 2026 - Proceedings of the 21st ACM ASIA Conference on Computer and Communications Security

Conference

ConferenceACM ASIA Conference on Computer and Communications Security, ASIA CCS 2026
Abbreviated titleASIA CCS 2026
Country/TerritoryIndia
CityBangalore
Period1/06/265/06/26

Keywords

  • Secure Virtualization
  • Guest Enclaves
  • RISC-V
  • Confidential Computing

ASJC Scopus subject areas

  • Computational Theory and Mathematics
  • Computer Networks and Communications
  • Computer Science Applications

Fields of Expertise

  • Information, Communication & Computing

Fingerprint

Dive into the research topics of 'CAGE-V: Confidential Computing Architecture supporting Guest Enclaves for RISC-V'. Together they form a unique fingerprint.

Cite this