MLchartDataset catalogue

Stateful protocol analysis

Term · Cybersecurity · MLC-T-CYB-004076

A firewalling capability that improves upon standard stateful inspection by adding basic intrusion detection technology. This technology consists of an inspection engine that analyzes protocols at the application layer to compare vendor-developed profiles of benign protocol activity against observed events to identify deviations, allowing a firewall to allow or deny access based on how an application is running over a network.

Table 1. Record
IdentifierMLC-T-CYB-004076
FieldCybersecurity
ReferencesNIST SP 800-41 Rev. 1; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-004076",
  "term": "Stateful protocol analysis",
  "field": "Cybersecurity",
  "term_source": "Stateful Protocol Analysis",
  "definition": "A firewalling capability that improves upon standard stateful inspection by adding basic intrusion detection technology. This technology consists of an inspection engine that analyzes protocols at the application layer to compare vendor-developed profiles of benign protocol activity against observed events to identify deviations, allowing a firewall to allow or deny access based on how an application is running over a network.",
  "references": [
    "NIST SP 800-41 Rev. 1",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/stateful-protocol-analysis/"
}

Record 4,054 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.