home/dictionary/Stateful inspection

Stateful inspection

nouncandidate·updated May 9, 2026

A firewall inspection technique that examines the claimed purpose of a communication for validity. For example, a communication claiming to respond to a request is compared to a table of outstanding requests.

Framework senses

SANS Glossary of Security Terms1 senseview framework →
§1
Also referred to as dynamic packet filtering. Stateful inspection is a firewall architecture that works at the network layer. Unlike static packet filtering, which examines a packet based on the information in its header, stateful inspection examines not just the header information but also the contents of the packet up through the application layer in order to determine more about the packet than just information about its source and destination.
ISACA Cybersecurity Glossary1 senseview framework →
§1
A firewall architecture that tracks each connection traversing all interfaces of the firewall and makes sure they are valid.
Federal Financial Institutions Examination Council (FFIEC) IT Examination Handbook Infobase, Glossary1 senseview framework →
§1
A firewall inspection technique that examines the claimed purpose of a communication for validity. For example, a communication claiming to respond to a request is compared to a table of outstanding requests.