How to configure and resolve Sprinto workflow check for setting up stateful inspection for Firewall technology

Stateful inspection, also called dynamic packet filtering, is a firewall method that monitors active connections. It decides which network packets to allow through by understanding the connection state. Unlike traditional methods, Stateful Inspection doesn't require opening a large range of ports, making it more secure and efficient. It provides better protection against Denial-of-Service (DoS) attacks and offers robust logging for detailed network activity records.

The following Sprinto workflow check helps you to collect evidence if you have enabled the stateful inspection on your cloud infrastructure services. This evidence is later submitted for compliance audit to meet the compliance requirement.

Before you begin

Log in on Sprinto as administrator.

Configuring workflow check

  1. Go to Security Hub > Workflow Checks.

  2. Click on Add Workflow Check.

  3. Locate Stateful inspection should be enabled for the Firewall technology in place in the workflow checklist, and click Enable.

  4. On the Add Workflow Check page, click Edit to adjust the check frequency and assign personnel or configure an evidence reviewer if necessary. Note: The default frequency for the workflow check is every six months. You can customize the frequency as per your requirements.

  5. Click Enable check.

Resolving Workflow Check

Once the check is activated, it will be in a "Due/Critical/Failing" status. To successfully pass the check, relevant evidence must be uploaded, and the status will be updated to "Passing."

Evidence: Most cloud infrastructure providers typically handle stateful inspection by default. You can upload a screen capture of your network firewall configuration or the cloud provider's report that documents the default stateful inspection on the service.

  • Log in to the Sprinto Admin portal and go to Security Hub > Workflow Checks > Active.

  • Select the Stateful inspection should be enabled for the Firewall technology in place check.

  • Click Upload Evidence.

  • Choose the Evidence Record Date and opt for either the File or Link attachment option.

    • File: Upload the file from your computer.

    • Link: If the evidence is stored online, provide the shareable link.

  • Click Finish.

Please contact Sprinto support if you need any assistance on the workflow check.

Last updated