The document discusses a novel architecture for cloud database services that ensures data confidentiality while allowing concurrent operations on encrypted data, enabling geographically distributed clients to access encrypted databases directly. This architecture eliminates the need for intermediate proxies, enhancing elasticity, availability, and scalability of cloud solutions. It is immediately applicable to existing cloud database services and supports concurrent SQL operations, thereby maintaining data confidentiality without modifications to the cloud database.