internal web proxy server
** A network intermediary deployed within an organization's trust boundary that terminates and re-originates outbound HTTP/HTTPS requests on behalf of internal clients, making it the sole authorized source of web traffic leaving the enterprise perimeter. It breaks the direct connection between client and server, accepting and forwarding traffic while closing the straight path between internal and external networks, which prevents external parties from observing internal addressing and topology details. In information flow enforcement practice, flow control restrictions include restricting requests to the Internet that are not from the internal web proxy server — meaning the server functions as a mandatory chokepoint: any outbound web request that did not originate from it is treated as a policy violation and blocked. Enforcement occurs in boundary protection devices such as gateways, routers, guards, and firewalls that employ rule sets or configuration settings to restrict system services and provide packet- or message-filtering capability. **VERDICT:** TERM_OF_ART --- **Sources cited:** - NIST SP 800-171 Rev. 2, §3.1.3 — *Control the flow of CUI in accordance with approved aut
Framework senses
- §1 · attested_usage_reviewer_confirmed
- No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.Increment 2: attested in 800-171r3 without a glossary definition.
- §1 · web_lookup_draft
- ** A network intermediary deployed within an organization's trust boundary that terminates and re-originates outbound HTTP/HTTPS requests on behalf of internal clients, making it the sole authorized source of web traffic leaving the enterprise perimeter. It breaks the direct connection between client and server, accepting and forwarding traffic while closing the straight path between internal and external networks, which prevents external parties from observing internal addressing and topology details. In information flow enforcement practice, flow control restrictions include restricting requests to the Internet that are not from the internal web proxy server — meaning the server functions as a mandatory chokepoint: any outbound web request that did not originate from it is treated as a policy violation and blocked. Enforcement occurs in boundary protection devices such as gateways, routers, guards, and firewalls that employ rule sets or configuration settings to restrict system services and provide packet- or message-filtering capability. **VERDICT:** TERM_OF_ART --- **Sources cited:** - NIST SP 800-171 Rev. 2, §3.1.3 — *Control the flow of CUI in accordance with approved autDR-088 backfill from the noun definition column