skip to main content
DOE Patents title logo U.S. Department of Energy
Office of Scientific and Technical Information

Title: Content-addressable memory based enforcement of configurable policies

Abstract

A monitoring device for monitoring transactions on a bus includes content-addressable memory ("CAM") and a response policy unit. The CAM includes an input coupled to receive a bus transaction tag based on bus traffic on the bus. The CAM stores data tags associated with rules of a security policy to compare the bus transaction tag to the data tags. The CAM generates an output signal indicating whether one or more matches occurred. The response policy unit is coupled to the CAM to receive the output signal from the CAM and to execute a policy action in response to the output signal.

Inventors:
Issue Date:
Research Org.:
Sandia National Lab. (SNL-NM), Albuquerque, NM (United States)
Sponsoring Org.:
USDOE
OSTI Identifier:
1130455
Patent Number(s):
8,719,925
Application Number:
12/546,740
Assignee:
Sandia Corporation (Albuquerque, NM)
DOE Contract Number:  
AC04-94AL85000
Resource Type:
Patent
Resource Relation:
Patent File Date: 2009 Aug 25
Country of Publication:
United States
Language:
English
Subject:
97 MATHEMATICS AND COMPUTING

Citation Formats

Berg, Michael J. Content-addressable memory based enforcement of configurable policies. United States: N. p., 2014. Web.
Berg, Michael J. Content-addressable memory based enforcement of configurable policies. United States.
Berg, Michael J. Tue . "Content-addressable memory based enforcement of configurable policies". United States. https://www.osti.gov/servlets/purl/1130455.
@article{osti_1130455,
title = {Content-addressable memory based enforcement of configurable policies},
author = {Berg, Michael J},
abstractNote = {A monitoring device for monitoring transactions on a bus includes content-addressable memory ("CAM") and a response policy unit. The CAM includes an input coupled to receive a bus transaction tag based on bus traffic on the bus. The CAM stores data tags associated with rules of a security policy to compare the bus transaction tag to the data tags. The CAM generates an output signal indicating whether one or more matches occurred. The response policy unit is coupled to the CAM to receive the output signal from the CAM and to execute a policy action in response to the output signal.},
doi = {},
journal = {},
number = ,
volume = ,
place = {United States},
year = {2014},
month = {5}
}

Patent:

Save / Share:

Works referenced in this record:

Integrating cache coherence protocols for heterogeneous multiprocessor system. Part 2
journal, September 2004

  • Suh, T.; Lee, H. -H. S.; Blough, D. M.
  • IEEE Micro, Vol. 24, Issue 5
  • DOI: 10.1109/MM.2004.50

Packet classification on multiple fields
journal, October 1999

  • Gupta, Pankaj; McKeown, Nick
  • ACM SIGCOMM Computer Communication Review, Vol. 29, Issue 4
  • DOI: 10.1145/316194.316217

A hardware-based memory acquisition procedure for digital investigations
journal, February 2004