1. Fortinet FortiOS 7.0.0 Administration Guide: In the "Security Profiles" section
under "Application Control
" it is stated that "Application control uses IPS protocol decoders and signatures to identify the applications that generate network traffic." (p. 689).
2. Fortinet FortiOS 7.0.0 Handbook - Architecture: The "Life of a Packet" chapter details the packet flow. In the flow-based inspection path
the diagram and accompanying text show that the ipsengine is responsible for processing IPS
Application Control
flow-based Web Filtering
and flow-based Antivirus. (Section: "Flow-based inspection").
3. Fortinet FortiOS 7.0.0 Handbook - Security Profiles: The "Antivirus" chapter explains
"In flow-based inspection
the FortiGate uses the IPS engine to scan content as it passes through the FortiGate without any buffering." This same principle is described for flow-based Web Filtering. (Section: "Inspection modes").