Confidential Databases Without Cryptographic Mappings

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Huang, Wenxuan, Wang, Zhanbo, Li, Mingyu
Format: Preprint
Published: 2026
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866911537384390656
author Huang, Wenxuan
Wang, Zhanbo
Li, Mingyu
author_facet Huang, Wenxuan
Wang, Zhanbo
Li, Mingyu
contents Confidential databases (CDBs) are essential for enabling secure queries over sensitive data in untrusted cloud environments using confidential computing hardware. While adoption is growing, widespread deployment is hindered by high performance overhead from frequent synchronous cryptographic operations, which causes significant computational and memory bottlenecks. We present FEDB, a novel CDB design that removes cryptographic operations from the critical path. FEDB leverages crypto-free mappings, which maintain data-independent identifiers within the database while securely mapping them to plaintext secrets in a trusted domain. This paradigm shift reduces the runtime overhead by up to 78.0 times on industry-standard benchmarks including TPC-C and TPC-H.
format Preprint
id arxiv_https___arxiv_org_abs_2603_18836
institution arXiv
publishDate 2026
record_format arxiv
spellingShingle Confidential Databases Without Cryptographic Mappings
Huang, Wenxuan
Wang, Zhanbo
Li, Mingyu
Cryptography and Security
Databases
Confidential databases (CDBs) are essential for enabling secure queries over sensitive data in untrusted cloud environments using confidential computing hardware. While adoption is growing, widespread deployment is hindered by high performance overhead from frequent synchronous cryptographic operations, which causes significant computational and memory bottlenecks. We present FEDB, a novel CDB design that removes cryptographic operations from the critical path. FEDB leverages crypto-free mappings, which maintain data-independent identifiers within the database while securely mapping them to plaintext secrets in a trusted domain. This paradigm shift reduces the runtime overhead by up to 78.0 times on industry-standard benchmarks including TPC-C and TPC-H.
title Confidential Databases Without Cryptographic Mappings
topic Cryptography and Security
Databases
url https://arxiv.org/abs/2603.18836