Chapter 10 IPsec VPN : Phase 2 parameters : Advanced Phase 2 settings : Replay Detection
  
Replay Detection
IPsec tunnels can be vulnerable to replay attacks. Replay Detection enables the FortiGate unit to check all IPsec packets to see if they have been received before. If any encrypted packets arrive out of order, the FortiGate unit discards them.