{"id":"https://openalex.org/W4411403358","doi":"https://doi.org/10.1145/3725354","title":"SHIELD: Encrypting Persistent Data of LSM-KVS from Monolithic to Disaggregated Storage","display_name":"SHIELD: Encrypting Persistent Data of LSM-KVS from Monolithic to Disaggregated Storage","publication_year":2025,"publication_date":"2025-06-17","ids":{"openalex":"https://openalex.org/W4411403358","doi":"https://doi.org/10.1145/3725354"},"language":"en","primary_location":{"id":"doi:10.1145/3725354","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3725354","pdf_url":null,"source":{"id":"https://openalex.org/S4387289859","display_name":"Proceedings of the ACM on Management of Data","issn_l":"2836-6573","issn":["2836-6573"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM on Management of Data","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5032427894","display_name":"Viraj Thakkar","orcid":"https://orcid.org/0000-0002-0317-1214"},"institutions":[{"id":"https://openalex.org/I55732556","display_name":"Arizona State University","ror":"https://ror.org/03efmqc40","country_code":"US","type":"education","lineage":["https://openalex.org/I55732556"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Viraj Thakkar","raw_affiliation_strings":["Arizona State University, Tempe, USA"],"raw_orcid":"https://orcid.org/0000-0002-0317-1214","affiliations":[{"raw_affiliation_string":"Arizona State University, Tempe, USA","institution_ids":["https://openalex.org/I55732556"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053255391","display_name":"Dongha Kim","orcid":"https://orcid.org/0000-0001-7660-9646"},"institutions":[{"id":"https://openalex.org/I55732556","display_name":"Arizona State University","ror":"https://ror.org/03efmqc40","country_code":"US","type":"education","lineage":["https://openalex.org/I55732556"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Dongha Kim","raw_affiliation_strings":["Arizona State University, Tempe, USA"],"raw_orcid":"https://orcid.org/0000-0001-7660-9646","affiliations":[{"raw_affiliation_string":"Arizona State University, Tempe, USA","institution_ids":["https://openalex.org/I55732556"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019578956","display_name":"Y. N. Lai","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yingchun Lai","raw_affiliation_strings":["Apache Pegasus (Incubating) Community, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0007-4129-426X","affiliations":[{"raw_affiliation_string":"Apache Pegasus (Incubating) Community, Beijing, China","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069501250","display_name":"Hokeun Kim","orcid":"https://orcid.org/0000-0003-1450-5248"},"institutions":[{"id":"https://openalex.org/I55732556","display_name":"Arizona State University","ror":"https://ror.org/03efmqc40","country_code":"US","type":"education","lineage":["https://openalex.org/I55732556"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hokeun Kim","raw_affiliation_strings":["Arizona State University, Tempe, USA"],"raw_orcid":"https://orcid.org/0000-0003-1450-5248","affiliations":[{"raw_affiliation_string":"Arizona State University, Tempe, USA","institution_ids":["https://openalex.org/I55732556"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5038377797","display_name":"Zhichao Cao","orcid":"https://orcid.org/0000-0001-6950-1776"},"institutions":[{"id":"https://openalex.org/I55732556","display_name":"Arizona State University","ror":"https://ror.org/03efmqc40","country_code":"US","type":"education","lineage":["https://openalex.org/I55732556"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zhichao Cao","raw_affiliation_strings":["Arizona State University, Tempe, USA"],"raw_orcid":"https://orcid.org/0000-0001-6950-1776","affiliations":[{"raw_affiliation_string":"Arizona State University, Tempe, USA","institution_ids":["https://openalex.org/I55732556"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5032427894"],"corresponding_institution_ids":["https://openalex.org/I55732556"],"apc_list":null,"apc_paid":null,"fwci":1.3104,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.82208445,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":"3","issue":"3","first_page":"1","last_page":"28"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11181","display_name":"Advanced Data Storage Technologies","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11181","display_name":"Advanced Data Storage Technologies","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11478","display_name":"Caching and Content Delivery","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10772","display_name":"Distributed systems and fault tolerance","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.7701846957206726},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7183030843734741},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.5609905123710632},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.5023448467254639},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.4112575054168701},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.2019093632698059}],"concepts":[{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.7701846957206726},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7183030843734741},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.5609905123710632},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.5023448467254639},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.4112575054168701},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.2019093632698059}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3725354","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3725354","pdf_url":null,"source":{"id":"https://openalex.org/S4387289859","display_name":"Proceedings of the ACM on Management of Data","issn_l":"2836-6573","issn":["2836-6573"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM on Management of Data","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":50,"referenced_works":["https://openalex.org/W1984097153","https://openalex.org/W1985229168","https://openalex.org/W2028546326","https://openalex.org/W2034526275","https://openalex.org/W2042012257","https://openalex.org/W2061643296","https://openalex.org/W2068739275","https://openalex.org/W2090190190","https://openalex.org/W2106539366","https://openalex.org/W2110423232","https://openalex.org/W2119738171","https://openalex.org/W2136720346","https://openalex.org/W2159915142","https://openalex.org/W2165271954","https://openalex.org/W2250570571","https://openalex.org/W2322411027","https://openalex.org/W2397197342","https://openalex.org/W2399989564","https://openalex.org/W2584004798","https://openalex.org/W2600805457","https://openalex.org/W2607140826","https://openalex.org/W2608747371","https://openalex.org/W2788385473","https://openalex.org/W2900066288","https://openalex.org/W2915352631","https://openalex.org/W2926084389","https://openalex.org/W2945783429","https://openalex.org/W3010592244","https://openalex.org/W3028864909","https://openalex.org/W3042802894","https://openalex.org/W3049751049","https://openalex.org/W3148141054","https://openalex.org/W3169931086","https://openalex.org/W3174854792","https://openalex.org/W3207452942","https://openalex.org/W3215406573","https://openalex.org/W4220803117","https://openalex.org/W4238584892","https://openalex.org/W4240852666","https://openalex.org/W4293023238","https://openalex.org/W4367857367","https://openalex.org/W4381329269","https://openalex.org/W4385270105","https://openalex.org/W4389320808","https://openalex.org/W4395667881","https://openalex.org/W4395681046","https://openalex.org/W4399119617","https://openalex.org/W4399174418","https://openalex.org/W6732409977","https://openalex.org/W6778209916"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W2389214306"],"abstract_inverted_index":{"Log-Structured":[0],"Merge-tree-based":[1],"Key-Value":[2],"Stores":[3],"(LSM-KVS)":[4],"are":[5],"widely":[6],"used":[7],"to":[8,27,45,96,167,213],"support":[9],"modern,":[10],"high-performance,":[11],"data-intensive":[12],"applications.":[13],"In":[14],"recent":[15],"years,":[16],"with":[17,75],"the":[18,32,81,98,251],"trend":[19],"of":[20,34,77,100,107,161,198,248],"deploying":[21],"and":[22,40,50,53,79,83,116,122,131,147,181,208,221,229,241,254],"optimizing":[23],"LSM-KVS":[24,35,108,129,139,164],"from":[25,48,171],"monolith":[26,115],"Disaggregated":[28],"Storage":[29],"(DS)":[30],"setups,":[31],"confidentiality":[33,211],"persistent":[36,105],"data":[37,73],"(e.g.,":[38],"WAL":[39],"SST":[41],"files)":[42],"is":[43],"vulnerable":[44],"unauthorized":[46],"access":[47],"insiders":[49],"external":[51],"attackers":[52],"must":[54],"be":[55],"protected":[56],"using":[57,175,184,204],"encryption.":[58],"Existing":[59],"solutions":[60],"lack":[61,80],"a":[62,120,133,205,217,222],"high-performance":[63],"design":[64,125,134,253],"for":[65,104,127,141,226,250,256],"encryption":[66,137,162,177,186,197],"in":[67,87,113,144,239],"LSM-KVS,":[68],"often":[69],"focus":[70],"on":[71,235],"in-memory":[72],"protection":[74],"overheads":[76],"3.4-32.5x,":[78],"scalability":[82,228],"flexibility":[84],"considerations":[85],"required":[86],"DS":[88,117,148,214,242],"deployments.":[89],"This":[90],"paper":[91],"proposes":[92],"two":[93],"novel":[94],"designs":[95,234],"address":[97],"challenges":[99],"providing":[101],"robust":[102],"security":[103],"components":[106,140],"while":[109,244],"maintaining":[110],"high":[111,227],"performance":[112,169,192],"both":[114,145,233],"deployments":[118],"-":[119],"simple":[121],"effective":[123],"instance-level":[124,252],"suitable":[126],"monolithic":[128,146,240],"deployments,":[130],"SHIELD,":[132],"that":[135],"embeds":[136],"into":[138,163],"minimal":[142],"overhead":[143,170,247],"deployment.":[149],"We":[150,231],"achieve":[151],"our":[152],"objective":[153],"through":[154],"three":[155],"contributions:":[156],"(1)":[157],"A":[158],"fine-grained":[159],"integration":[160],"write":[165],"path":[166],"minimize":[168],"exposure-limiting":[172],"practices":[173],"like":[174],"unique":[176],"keys":[178,187],"per":[179],"file":[180],"regularly":[182],"re-encrypting":[183],"new":[185],"during":[188],"compaction,":[189],"(2)":[190],"Mitigating":[191],"degradation":[193],"caused":[194],"by":[195,203,215],"recurring":[196],"Write-Ahead":[199],"Log":[200],"(WAL)":[201],"writes":[202],"buffering":[206],"solution":[207],"(3)":[209],"Extending":[210],"guarantees":[212],"designing":[216],"metadata-enabled":[218],"encryption-key-sharing":[219],"mechanism":[220],"secure":[223],"local":[224],"cache":[225],"flexibility.":[230],"implement":[232],"RocksDB,":[236],"evaluating":[237],"them":[238],"setups":[243],"showcasing":[245],"an":[246],"0-32%":[249],"0-36%":[255],"SHIELD.":[257]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2026-05-05T08:41:31.759640","created_date":"2025-10-10T00:00:00"}
