iExec V8: Confidential Computing, Faster and More Scalable

iExec
iExec
Published in
4 min readApr 19, 2023

Meet iExec’s latest tech stack upgrade: V8. iExec V8 strengthens the iExec Confidential Computing solution with new features and technical integrations that empower developers to address use cases that were previously unimaginable. iExec V8 now supports Intel® SGX2, the Gramine framework for TEE, as well as an essential technical upgrade where the ‘SMS’ of iExec’s confidential computing infrastructure now runs fully inside a hardware enclave.

Intel SGX V2: Confidential Computing with Faster Execution, and Larger Memory Capacity

In 2018, iExec released the first-ever ‘trusted compute’ solution for blockchain, collaborating with Intel and using Intel® SGX hardware enclaves. Intel® SGX hardware enclaves are a form of ‘Trusted Execution Environment’ (TEE). Hardware enclaves are a dedicated part of a machine’s CPU, where select pieces of code can run inside a protected area. In some cases, ensuring that code runs correctly without any third party altering the execution, is even more important than hiding the computational data.

This is essential for cases where code is executed on a remote machine that is not controlled by the computing requester. It ensures that not even the key admin user of a machine can access the code or data running on their machine. Today, iExec has integrated Intel® SGX 2 into its infrastructure, a new version boasting more dynamic management of enclave memory. This significantly enhances memory capacity and yields much faster execution. In terms of application, V8 will be useful for developers to leverage game-changing confidential computing apps, like those related to deep learning.

A whole new world of confidential computing apps is now made possible with Intel SGX 2. Think AI applications. These require much more powerful executions, using larger inputs. In order for the AI application to help us solve real-world problems, it is inevitable that the inputs will be confidential or sensitive. The benefits of SGX V2’s increased storage space and memory now allow for these types of applications to run on iExec using Confidential Computing, as well as a whole host of other apps that were not possible with the first version of Intel SGX.

Gramine TEE Framework Now Available

iExec is continually seeking to offer developers more options that meet the latest industry standards for confidential computing. Today, we are happy to announce that iExec V8 now supports the Gramine TEE framework in parallel to the already available Scone Library. Gramine is an OpenSource project that provides workflow and security management for Confidential Computing, and is quickly becoming the best industry standard.

SMS in an enclave: iExec Confidential Computing end-to-end secured

The iExec Confidential Computing solution is now even more secure, with the SMS (‘Secret Management Service’) now operating within a hardware enclave. The SMS is a key component of the Confidential Computing Solution.It holds and delivers the ‘secrets’ of computational tasks. Secrets are private pieces of non-human privileged credentials that act as a key to unlocking protected resources or sensitive information used within applications. These secrets are defined as part of deals made on the iExec Marketplace. With iExec V8, this service now runs inside the Intel SGX hardware enclave. The SMS running within the isolated environment of the hardware enclave means that iExec Confidential Computing becomes more secure than ever before.

Here is a sum up of the new features that await you with iExec V8:

  • ⚡️Intel SGX V2: for running confidential computing on a faster and larger scale
  • 🌐Gramine infrastructure: a new TEE framework for developers wishing to do confidential computing
  • 🔏SMS in an Enclave: making iExec Confidential Computing fully End-to-End Secured
  • 🔗Chainlist: As an added bonus, developers can now find the iExec Sidechain on Chainlist, increasing accessibility for the chain

iExec’s latest tech stack upgrade, V8, marks a significant milestone in the world of confidential computing. With the support of Intel® SGX2 and the Gramine framework for TEE, iExec has not only strengthened its Confidential Computing solution but also empowered developers to address use cases that were previously unimaginable. The technical upgrade where the ‘SMS’ now runs fully inside a hardware enclave has taken the solution’s security to the next level, making iExec Confidential Computing fully end-to-end secured. With V8’s faster execution and larger memory capacity, developers can now leverage game-changing confidential computing apps related to deep learning and beyond.

iExec’s commitment to innovation and providing developers with the latest tools and infrastructure for confidential computing is evident in the release of V8. The integration of the Gramine TEE infrastructure offers developers more possibilities that meet the current industry standards, while the addition of the iExec Sidechain on Chainlist makes the chain more accessible to developers. iExec V8 represents a significant step forward in the evolution of confidential computing and demonstrates the company’s dedication to advancing the field.

--

--