IP Library Granted Patent US 7,979,658
Granted Patent B2
US 7,979,658 · App. 12/054,740 · Granted Jul 12, 2011

Secure management of memory regions in a memory

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,979,658
App. No.
12/054,740
Granted
Jul 12, 2011
Kind
B2
Abstract

Systems and/or methods that facilitate controlling access to memory regions in a memory component(s) are presented. A memory component can comprise an access management component that can facilitate controlling access to memory regions that can be respectively associated with authentication credentials. The access control component can facilitate access of a memory region when received authentication information matches authentication information contained in a security record associated with the memory region. The access management component can facilitate a wipe erase of a memory region(s) to facilitate secure removal of information from the memory region when predetermined criteria is satisfied. The access management component can facilitate locking a memory region when a maximum number of attempts to access a memory region are unsuccessful to facilitate security of the memory regions and/or data associated therewith, where a locked memory region remains locked until a reset is performed.

Claims (70)

1. A system that facilitates control of access to at least one memory, comprising:

the at least one memory that contains a plurality of memory regions to facilitate storage of data; and

an access management component that facilitates control of access to the plurality memory regions based in part on a predetermined access criteria, the access management component:

compares received authentication data and compares the received authentication data to authentication data associated with a memory region and makes a determination regarding whether the received authentication data matches the authentication data associated with the memory region;

facilitates a wipe erase of a memory region when the received authentication data matches the authentication data associated with the memory region; and

facilitates creation of a new security record that contains a default authentication credential.

2. The system of claim 1 , the predetermined access criteria is based in part on a type of operation being performed, a predetermined number of times a proper authentication credential is to be presented in order to grant access, a predetermined number or type(s) of disparate authentication credentials to be presented to be granted access to a memory region, a predetermined maximum number of attempts to gain access to a memory region, or a type of user, or a combination thereof.

3. The system of claim 2 , the access management component facilitates creation of an authentication credential based in part on received information associated with an authentication set command.

4. The system of claim 2 , the access management component facilitates access to the memory region when the received authentication data matches the authentication data associated with the memory region.

5. The system of claim 2 , the access management component facilitates locking access to a memory region when the predetermined access criteria is not satisfied.

6. An electronic device comprising the system of claim 2 .

7. The system of claim 1 , the access management component facilitates creation of an authentication credential based in part on received information associated with an authentication set command.

8. The system of claim 1 , the access management component facilitates access to the memory region when the received authentication data matches the authentication data associated with the memory region.

9. The system of claim 1 , the plurality of memory regions are respectively associated with disparate authentication credentials, and each of the memory regions are respectively associated with a security record that contains at least one of a authentication credential, a start memory address, an end memory address, a size of a memory region, or hint information, or a combination thereof, wherein the security record is stored in a authentication memory location in the at least one memory component.

10. The system of claim 1 , the access management component facilitates locking access to a memory region when the predetermined access criteria is not satisfied.

11. The system of claim 10 , the memory region is unlocked when there is a reset of the at least one memory component.

12. An electronic device comprising the system of claim 1 .

13. The electronic device of claim 12 , the electronic device is one of a computer, a cellular phone, a digital phone, a video device, a smart card, a personal digital assistant, a television, an electronic game, a digital camera, an electronic organizer, an audio player, an audio recorder, an electronic device associated with digital rights management, a Personal Computer Memory Card International Association (PCMCIA) card, a trusted platform module (TPM), an electronic control unit associated with a motor vehicle, a global positioning satellite (GPS) device, an electronic device associated with an airplane, an electronic device associated with an industrial control system, a Hardware Security Module (HSM), a set-top box, a secure memory device with computational capabilities, or an electronic device with at least one tamper-resistant chip.

14. A method that facilitates controlling access to at least one memory, comprising:

forming one or more memory regions in the at least one memory; and

enabling access to the one or more memory regions based in part on an access criteria;

generating an authentication set command;

receiving a first set of authentication information;

receiving at least one other set of authentication information;

comparing the first set of authentication information to the at least one other set of authentication information;

setting an authentication credential associated with a memory region based in part on the received first set of authentication information when the first set of authentication information matches the at least one other set of authentication information, the authentication credential is a subset of the authentication information;

generating a new security record based in part on the authentication information;

updating the count associated with security records; and

erasing a previous security record associated with the memory region.

15. The method of claim 14 , further comprising:

generating an enable command;

receiving authentication information;

retrieving authentication information associated with a memory region; and

comparing the received authentication information with the authentication information associated with the memory region.

16. The method of claim 15 , further comprising:

incrementing a count if the received authentication information does not match the authentication information associated with the memory region;

at least one of:

receiving additional authentication information if the number of attempts to gain access to the memory region is less than the predetermined maximum number, or

locking access to the memory region if a predetermined maximum number of attempts to gain access to the memory region have been made unsuccessfully.

17. The method of claim 15 , further comprising:

resetting a count;

enabling access to the memory region;

performing at least one operation associated with the memory region;

receiving a close command; and

disabling access to the memory region.

18. The method of claim 14 , further comprising:

generating a wipe erase command;

receiving authentication information;

retrieving authentication information associated with a memory region; and

comparing the received authentication information with the authentication information associated with the memory region.

19. The method of claim 18 , further comprising:

resetting a count associated with attempts to gain access to the memory region;

wipe erasing the memory region;

resetting an authentication credential to a default authentication credential;

creating a new security record associated with the memory region;

storing the new security record;

updating a count associated with security records;

erasing a previous security record associated with the memory region; and

disabling access to the memory region.

20. A method that facilitates controlling access to at least one memory, comprising:

forming one or more memory regions in the at least one memory; and

enabling access to the one or more memory regions based in part on an access criteria;

generating a wipe erase command;

receiving authentication information;

retrieving authentication information associated with a memory region;

comparing the received authentication information with the authentication information associated with the memory region;

incrementing a count if the received authentication information does not match the authentication information associated with the memory region;

at least one of:

receiving additional authentication information if the number of attempts to gain access to the memory region is less than a predetermined maximum number to gain access to the memory region that is associated with a wipe command, or

locking access to the memory region if the predetermined maximum number of attempts have been made unsuccessfully.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE 8647899 PREVIOUSLY RECORDED ON REEL 035240 FRAME 0429. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTERST. Recorded Nov 3, 2020
From: CYPRESS SEMICONDUCTOR CORPORATION; SPANSION LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 058002/0470 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 14, 2016
From: CYPRESS SEMICONDUCTOR CORPORATION
To: MONTEREY RESEARCH, LLC
Reel/Frame 040911/0238 →
PARTIAL RELEASE OF SECURITY INTEREST IN PATENTS Recorded Aug 11, 2016
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: CYPRESS SEMICONDUCTOR CORPORATION; SPANSION LLC
Reel/Frame 039708/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 2, 2015
From: SPANSION, LLC
To: CYPRESS SEMICONDUCTOR CORPORATION
Reel/Frame 036050/0337 →
SECURITY INTEREST Recorded Mar 21, 2015
From: CYPRESS SEMICONDUCTOR CORPORATION; SPANSION LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 035240/0429 →
RELEASE OF SECURITY INTEREST Recorded Mar 13, 2015
From: BARCLAYS BANK PLC
To: SPANSION LLC; SPANSION INC.; SPANSION TECHNOLOGY LLC
Reel/Frame 035201/0159 →
SECURITY AGREEMENT Recorded Jun 4, 2010
From: SPANSION LLC; SPANSION INC.; SPANSION TECHNOLOGY INC.; SPANSION TECHNOLOGY LLC
To: BARCLAYS BANK PLC
Reel/Frame 024522/0338 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2008
From: OBEREINER, WILLY; GRAULUS, HENDRIK
To: SPANSION LLC
Reel/Frame 020697/0325 →