{"id":"https://openalex.org/W4387298259","doi":"https://doi.org/10.1145/3607199.3607210","title":"EnclaveVPN: Toward Optimized Utilization of Enclave Page Cache and Practical Performance of Data Plane for Security-Enhanced Cloud VPN","display_name":"EnclaveVPN: Toward Optimized Utilization of Enclave Page Cache and Practical Performance of Data Plane for Security-Enhanced Cloud VPN","publication_year":2023,"publication_date":"2023-10-03","ids":{"openalex":"https://openalex.org/W4387298259","doi":"https://doi.org/10.1145/3607199.3607210"},"language":"en","primary_location":{"id":"doi:10.1145/3607199.3607210","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3607199.3607210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 26th International Symposium on Research in Attacks, Intrusions and Defenses","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100645943","display_name":"Jaemin Park","orcid":"https://orcid.org/0000-0001-8292-9953"},"institutions":[{"id":"https://openalex.org/I142401562","display_name":"Electronics and Telecommunications Research Institute","ror":"https://ror.org/03ysstz10","country_code":"KR","type":"facility","lineage":["https://openalex.org/I142401562","https://openalex.org/I2801339556","https://openalex.org/I4210144908","https://openalex.org/I4387152098"]}],"countries":["KR"],"is_corresponding":true,"raw_author_name":"Jaemin Park","raw_affiliation_strings":["The Affiliated Institute of ETRI, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0001-8292-9953","affiliations":[{"raw_affiliation_string":"The Affiliated Institute of ETRI, Republic of Korea","institution_ids":["https://openalex.org/I142401562"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5046066368","display_name":"Brent Byunghoon Kang","orcid":"https://orcid.org/0000-0001-8984-1006"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Brent Byunghoon Kang","raw_affiliation_strings":["Korea Advanced Institute of Science and Technology, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0001-8984-1006","affiliations":[{"raw_affiliation_string":"Korea Advanced Institute of Science and Technology, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5100645943"],"corresponding_institution_ids":["https://openalex.org/I142401562"],"apc_list":null,"apc_paid":null,"fwci":0.1704,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.57032829,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"397","last_page":"411"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9975000023841858,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7734485864639282},{"id":"https://openalex.org/keywords/ipsec","display_name":"IPsec","score":0.6648812294006348},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.6359519958496094},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.6083532571792603},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.5369091033935547},{"id":"https://openalex.org/keywords/network-packet","display_name":"Network packet","score":0.5025186538696289},{"id":"https://openalex.org/keywords/hypervisor","display_name":"Hypervisor","score":0.48152193427085876},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.481425017118454},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.46292635798454285},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.44202202558517456},{"id":"https://openalex.org/keywords/forwarding-plane","display_name":"Forwarding plane","score":0.42545628547668457},{"id":"https://openalex.org/keywords/virtualization","display_name":"Virtualization","score":0.27372753620147705},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.20866385102272034}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7734485864639282},{"id":"https://openalex.org/C67396069","wikidata":"https://www.wikidata.org/wiki/Q210214","display_name":"IPsec","level":3,"score":0.6648812294006348},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.6359519958496094},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.6083532571792603},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.5369091033935547},{"id":"https://openalex.org/C158379750","wikidata":"https://www.wikidata.org/wiki/Q214111","display_name":"Network packet","level":2,"score":0.5025186538696289},{"id":"https://openalex.org/C112904061","wikidata":"https://www.wikidata.org/wiki/Q1077480","display_name":"Hypervisor","level":4,"score":0.48152193427085876},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.481425017118454},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.46292635798454285},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.44202202558517456},{"id":"https://openalex.org/C10597312","wikidata":"https://www.wikidata.org/wiki/Q5473302","display_name":"Forwarding plane","level":3,"score":0.42545628547668457},{"id":"https://openalex.org/C513985346","wikidata":"https://www.wikidata.org/wiki/Q270471","display_name":"Virtualization","level":3,"score":0.27372753620147705},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.20866385102272034}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3607199.3607210","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3607199.3607210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 26th International Symposium on Research in Attacks, Intrusions and Defenses","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","score":0.6499999761581421,"display_name":"Industry, innovation and infrastructure"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":49,"referenced_works":["https://openalex.org/W157178500","https://openalex.org/W1569778844","https://openalex.org/W1674877186","https://openalex.org/W1949661937","https://openalex.org/W2010365467","https://openalex.org/W2048507685","https://openalex.org/W2061643296","https://openalex.org/W2150620897","https://openalex.org/W2156186849","https://openalex.org/W2312902414","https://openalex.org/W2402811135","https://openalex.org/W2519006453","https://openalex.org/W2533960930","https://openalex.org/W2552922956","https://openalex.org/W2565389256","https://openalex.org/W2594560662","https://openalex.org/W2599829375","https://openalex.org/W2600318748","https://openalex.org/W2601206855","https://openalex.org/W2604789199","https://openalex.org/W2606774910","https://openalex.org/W2612102454","https://openalex.org/W2624409104","https://openalex.org/W2734383261","https://openalex.org/W2734941459","https://openalex.org/W2742138868","https://openalex.org/W2753064028","https://openalex.org/W2759293838","https://openalex.org/W2761113868","https://openalex.org/W2790063371","https://openalex.org/W2791034507","https://openalex.org/W2803185452","https://openalex.org/W2807403537","https://openalex.org/W2883244996","https://openalex.org/W2897326345","https://openalex.org/W2903166669","https://openalex.org/W2941363285","https://openalex.org/W2965570296","https://openalex.org/W2966910544","https://openalex.org/W2976763854","https://openalex.org/W3000648809","https://openalex.org/W3095995204","https://openalex.org/W3100860658","https://openalex.org/W4232271737","https://openalex.org/W4282562840","https://openalex.org/W4290473017","https://openalex.org/W4301455809","https://openalex.org/W4308642193","https://openalex.org/W6730426483"],"related_works":["https://openalex.org/W2401656370","https://openalex.org/W2896807552","https://openalex.org/W2240600741","https://openalex.org/W2743511463","https://openalex.org/W1599380747","https://openalex.org/W2162787360","https://openalex.org/W94304979","https://openalex.org/W4252444451","https://openalex.org/W2754907853","https://openalex.org/W2561910076"],"abstract_inverted_index":{"A":[0],"cloud":[1,19,29,131],"Virtual":[2],"Private":[3],"Network":[4],"(VPN)":[5],"is":[6,47],"an":[7],"essential":[8],"infrastructure":[9],"for":[10,115,136],"tenants":[11,22],"to":[12,26,51,70,107,124,174],"connect":[13],"their":[14],"on-premise":[15],"networks":[16],"with":[17,93],"a":[18,48,87,149,152],"network.":[20],"However,":[21],"are":[23],"often":[24],"reluctant":[25],"adopt":[27],"the":[28,53,62,101,116,130,144,171,181,186],"VPN":[30],"because":[31,56],"of":[32,100,180,185],"security":[33,54],"concerns,":[34],"such":[35],"as":[36],"key":[37],"disclosure,":[38],"impersonation,":[39],"and":[40,74,97,111,128,133,140,164,176],"packet":[41],"sniffing.":[42],"Software":[43],"Guard":[44],"Extensions":[45],"(SGX)":[46],"good":[49],"candidate":[50],"address":[52],"concerns":[55],"it":[57],"can":[58],"create":[59],"enclaves":[60,106],"in":[61,143],"isolated":[63],"memory":[64],"(i.e.,":[65],"Enclave":[66],"Page":[67],"Cache":[68],"(EPC))":[69],"protect":[71],"security-sensitive":[72],"code":[73],"data":[75,102,145,182],"from":[76],"malicious":[77],"access.":[78],"In":[79],"this":[80],"paper,":[81],"we":[82],"propose":[83],"EnclaveVPN,":[84],"which":[85],"supports":[86],"security-enhanced":[88],"IPsec":[89,117,188],"gateway":[90],"using":[91],"SGX":[92,154],"optimized":[94],"EPC":[95,138,172],"utilization":[96,139],"practical":[98],"performance":[99,184],"plane.":[103,146],"EnclaveVPN":[104,119,169],"leverages":[105],"manage":[108],"cryptographic":[109,113],"keys":[110],"execute":[112],"operations":[114],"gateway.":[118,189],"allows":[120],"only":[121],"encrypted":[122],"packets":[123],"be":[125],"transmitted":[126],"within":[127],"to/from":[129],"network":[132],"presents":[134],"features":[135],"optimizing":[137],"minimizing":[141],"overhead":[142],"We":[147],"implemented":[148],"prototype":[150],"on":[151],"real":[153],"v1.0":[155],"machine":[156],"(Xeon":[157],"E-2286M":[158],"2.40GHz":[159],"8-core":[160],"CPU).":[161],"The":[162],"experiment":[163],"benchmark":[165],"results":[166],"showed":[167],"that":[168],"saved":[170],"up":[173],"62.5":[175],"achieved":[177],"approximately":[178],"87":[179],"plane":[183],"non-SGX":[187]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
