Please use this identifier to cite or link to this item: http://hdl.handle.net/10397/117541
PIRA download icon_1.1View/Download Full Text
Title: Building confidential accelerator computing environment for Arm CCA
Authors: Wang, C 
Lu, K
Zhang, F
Deng, Y
Leach, K
Cao, J 
Ning, Z
Yan, S
Wei, T
He, Z
Issue Date: Jan-2026
Source: IEEE transactions on dependable and secure computing, Jan.-Feb. 2026, v. 23, no. 1, p. 1308-1325
Abstract: Confidential computing is an emerging technique that provides users and third-party developers with an isolated and transparent execution environment. To support this technique, Arm introduced the Confidential Computing Architecture (CCA), which creates multiple isolated regions, known as realms, to ensure data confidentiality and integrity in security-sensitive tasks. However, hardware and firmware supporting confidential accelerator workloads remain unavailable. Moreover, due to incompatible hardware or large trusted computing base (TCB) size, existing studies for protecting acceleration are unsuitable for CCA’s realm-style architecture. Thus, there is a need to complement existing Arm CCA capabilities with accelerator support. We present CAGE to support confidential accelerator computing for Arm CCA, ensuring data security with CCA’s existing security features. To adapt the accelerator workflow to CCA’s realm-style architecture, CAGE proposes a novel shadow task mechanism to manage confidential accelerator applications flexibly. Additionally, CAGE leverages the memory isolation mechanism in Arm CCA to protect data confidentiality and integrity from the strong adversary. CAGE also optimizes security operations in memory isolation to mitigate performance overhead. Without hardware changes, we design and implement CAGE on two types of accelerators: Unified-memory GPU and generic FPGA. Our evaluation shows that CAGE effectively provides confidential accelerator support for Arm CCA with moderate overhead.
Keywords: Arm CCA
Confidential accelerator computing
Publisher: Institute of Electrical and Electronics Engineers
Journal: IEEE transactions on dependable and secure computing 
ISSN: 1545-5971
EISSN: 1941-0018
DOI: 10.1109/TDSC.2025.3615787
Rights: © 2025 The Authors. This work is licensed under a Creative Commons Attribution 4.0 License. For more information, see https://creativecommons.org/licenses/by/4.0/
The following publication C. Wang et al., "Building Confidential Accelerator Computing Environment for Arm CCA," in IEEE Transactions on Dependable and Secure Computing, vol. 23, no. 1, pp. 1308-1325, Jan.-Feb. 2026 is available at https://doi.org/10.1109/TDSC.2025.3615787.
Appears in Collections:Journal/Magazine Article

Files in This Item:
File Description SizeFormat 
Wang_Building_Confidential_Accelerator.pdf1.38 MBAdobe PDFView/Open
Open Access Information
Status open access
File Version Version of Record
Access
View full-text via PolyU eLinks SFX Query
Show full item record

Google ScholarTM

Check

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.