home/glossary/Stateful inspection

Stateful inspection

nounid 4231·updated May 9, 2026
candidate

A firewall inspection technique that examines the claimed purpose of a communication for validity. For example, a communication claiming to respond to a request is compared to a table of outstanding requests.

MWE

Classifications

Entity Type

Control92%llm-generatedllm:claude-haiku-4-5

Sensitivity

unclassified

Information Class

unclassified

Variants

plural
Stateful inspections
possessive
Stateful inspection's
pluralpossessive
Stateful inspections'

Framework definitions

SANS Glossary of Security Terms1 senseview framework →
§1
Also referred to as dynamic packet filtering. Stateful inspection is a firewall architecture that works at the network layer. Unlike static packet filtering, which examines a packet based on the information in its header, stateful inspection examines not just the header information but also the contents of the packet up through the application layer in order to determine more about the packet than just information about its source and destination.
ISACA Cybersecurity Glossary1 senseview framework →
§1
A firewall architecture that tracks each connection traversing all interfaces of the firewall and makes sure they are valid.
Federal Financial Institutions Examination Council (FFIEC) IT Examination Handbook Infobase, Glossary1 senseview framework →
§1
A firewall inspection technique that examines the claimed purpose of a communication for validity. For example, a communication claiming to respond to a request is compared to a table of outstanding requests.

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.