DRAM & Memory Design · All levels
Patrol Scrub and RAS Policy: Software and Programmer View
Software and Programmer View for Patrol Scrub and RAS Policy.
Firmware / controller / software view
RAS policy must adapt to observed CE slope and threat patterns without destabilizing performance.
Software and firmware behavior directly shape DRAM outcomes. Address mapping, traffic shaping, scheduler policy, training flow, and QoS decisions determine whether silicon sees stable command flow or repeated conflicts, bubbles, and margin churn.
What teams feel first
unstable p99 latency across workload phases
unexpected row-miss bursts or turnaround bubbles
training instability after DVFS or thermal transitions
API and runtime impact
memory-controller register policy
firmware training and retrain flow
NoC QoS and initiator throttling contracts
Compiler and tool interaction
allocator and page-coloring effects on bank locality
traffic-shaping effects on read/write burst clustering
Mitigations
enforce counter-tagged CI gates for memory SLAs
stabilize boot telemetry and timing profile capture
gate risky policy changes by workload class and corner proof
FIRMWARE + SCHEDULER VIEW - Patrol Scrub and RAS Policy
// connect policy toggles to command trace movementController and firmware lens
CONTROLLER QUEUE VIEW - Patrol Scrub and RAS Policy
read queue : [R12 bank0 row88] [R13 bank2 row88] [R14 bank0 row12]
write queue: [W44 bank3 row90] [W45 bank3 row90]
scheduler tick:
1) prioritize ready row hits
2) cap write-drain burst
3) age outstanding reads
issue stream:
cycle 40 -> RD bank0 row88 (hit)
cycle 41 -> RD bank2 row88 (parallel bank group)
cycle 42 -> ACT bank0 row12 (miss prepare)DRAM deep dive
Reliability closure combines ECC policy, scrub cadence, and disturbance mitigation like row-hammer controls.
Concept diagram
RELIABILITY LOOP
error detect -> ECC correct/report -> scrub/retire policy -> monitor recurrenceMetric graph
ERROR MANAGEMENT TREND
correctable events ███████
silent-data-risk ██
unrecoverable events █Reports and artifacts
correctable/uncorrectable error trend
scrub interval effectiveness report
row-hammer monitor log
fault-injection coverage summary
Mini case study
Relaxed scrub interval improved bandwidth in test but allowed burst correctables to cluster into service-visible latency spikes.
Debug branches
Segment ECC events by bank, rank, and temperature
Tune scrub cadence with workload-aware idle windows
Verify row-hammer mitigation using adversarial patterns
Senior review question
Ask: which latency, bandwidth, and reliability evidence proves this DRAM topic is closed under real traffic?
Key takeaways
Always tie controller and PHY counter shifts to application latency and throughput outcomes.
Lock firmware timing profile, thermal condition, and DIMM state before comparing DRAM captures.
Common pitfalls
Chasing peak bandwidth while ignoring p99 latency and fairness tails.
Changing timing guardbands without separating SI noise from scheduling issues.
Declaring closure without reliability gates, fault injection, and regression replay.
Principal DRAM review addendum
Patrol Scrub and RAS Policy should be read as an end-to-end memory behavior, not as a single block definition. A production DRAM subsystem reflects interactions between array physics, command legality, scheduler policy, PHY margin, and reliability controls before software experiences final latency or bandwidth.
Patrol scrub proactively reads and rewrites DRAM lines so single-bit faults are corrected before accumulating into multi-bit uncorrectable events; RAS policy balances scrub aggressiveness against bandwidth and power overhead. DRAM inefficiency is multiplicative: one extra ACTIVATE, one unnecessary turnaround, one weak lane margin, or one refresh collision repeated across billions of accesses can dominate product tail latency and power.
Use scrub interval coverage, latent fault dwell time, corrected-before-failure ratio as the opening signal, not the conclusion. A metric move only becomes actionable when paired with workload context, command traces, training telemetry, and evidence artifacts such as scrub scheduler log, CE aging report, patrol coverage audit.
Reliability closure requires combining ECC telemetry, disturb mitigation, and thermal policy into one operating contract. Senior review quality comes from proving a complete chain: request pattern -> memory-state transition -> bottleneck mechanism -> smallest owner fix -> regression-safe validation.
Review discipline should enforce a single causal chain: traffic pattern -> command-level behavior -> array/PHY effect -> measured product impact. That chain prevents tuning folklore from replacing evidence.