DOE Patents title logo U.S. Department of Energy
Office of Scientific and Technical Information

Title: Content-addressable memory based enforcement of configurable policies

Abstract

A monitoring device for monitoring transactions on a bus includes content-addressable memory ("CAM") and a response policy unit. The CAM includes an input coupled to receive a bus transaction tag based on bus traffic on the bus. The CAM stores data tags associated with rules of a security policy to compare the bus transaction tag to the data tags. The CAM generates an output signal indicating whether one or more matches occurred. The response policy unit is coupled to the CAM to receive the output signal from the CAM and to execute a policy action in response to the output signal.

Inventors:
Issue Date:
Research Org.:
Sandia National Lab. (SNL-NM), Albuquerque, NM (United States)
Sponsoring Org.:
USDOE
OSTI Identifier:
1130455
Patent Number(s):
8719925
Application Number:
12/546,740
Assignee:
Sandia Corporation (Albuquerque, NM)
Patent Classifications (CPCs):
G - PHYSICS G06 - COMPUTING G06F - ELECTRIC DIGITAL DATA PROCESSING
DOE Contract Number:  
AC04-94AL85000
Resource Type:
Patent
Resource Relation:
Patent File Date: 2009 Aug 25
Country of Publication:
United States
Language:
English
Subject:
97 MATHEMATICS AND COMPUTING

Citation Formats

Berg, Michael J. Content-addressable memory based enforcement of configurable policies. United States: N. p., 2014. Web.
Berg, Michael J. Content-addressable memory based enforcement of configurable policies. United States.
Berg, Michael J. Tue . "Content-addressable memory based enforcement of configurable policies". United States. https://www.osti.gov/servlets/purl/1130455.
@article{osti_1130455,
title = {Content-addressable memory based enforcement of configurable policies},
author = {Berg, Michael J},
abstractNote = {A monitoring device for monitoring transactions on a bus includes content-addressable memory ("CAM") and a response policy unit. The CAM includes an input coupled to receive a bus transaction tag based on bus traffic on the bus. The CAM stores data tags associated with rules of a security policy to compare the bus transaction tag to the data tags. The CAM generates an output signal indicating whether one or more matches occurred. The response policy unit is coupled to the CAM to receive the output signal from the CAM and to execute a policy action in response to the output signal.},
doi = {},
journal = {},
number = ,
volume = ,
place = {United States},
year = {2014},
month = {5}
}

Works referenced in this record:

Content addressable memory device
patent, February 2004


Processor based system and method for virus detection
patent-application, January 2005


Attack Prevention Techniques
patent-application, December 2009


Integrating cache coherence protocols for heterogeneous multiprocessor system. Part 2
journal, September 2004


Packet classification on multiple fields
journal, October 1999


A hardware-based memory acquisition procedure for digital investigations
journal, February 2004


    Works referencing / citing this record:

    Mock attack cybersecurity training system and methods
    patent, January 2017


    Context-aware training systems, apparatuses, and methods
    patent, January 2017


    Software network behavior analysis and identification system
    patent, October 2016


    Systems and methods of analyzing a software component
    patent, July 2016


    Systems and methods of analyzing a software component
    patent, May 2016


    Systems and methods of analyzing a software component
    patent, March 2016