Chapter 18 Troubleshooting : Life of a Packet : Packet flow : Flow-based inspection engine
  
Flow-based inspection engine
Flow-based inspection is responsible for IPS, application control, flow-based antivirus scanning and VoIP inspection. Packets are sent to flow-based inspection if the security policy that accepts the packets includes one or more of these security features.
 
Flow-based antivirus scanning is only available on some FortiGate models.
Once the packet has passed the flow-based engine, it can be sent to the proxy inspection engine or egress.