The tables in this section show how different security functions map to different inspection types.
The table below lists FortiOS security functions and shows whether they are applied by the kernel, flow-based inspection or proxy-based inspection.
|Flow-based inspection||Proxy-based inspection|
The three inspection methods each have their own strengths and weaknesses. The following table looks at all three methods side-by-side.
|Inspection unit per session||first packet||selected packets, single pass architecture, simultaneous application of configured inspection methods||complete content, configured inspection methods applied in order|
|Memory, CPU required||low||medium||high|
|Level of threat protection||good||better||best|
|IPsec and SSL VPN||yes|
|Data Leak Protection (DLP)||yes||yes|
|Delay in traffic||minor||no||small|
|Reconstruct entire content||no||yes|