Flow-based and proxy-based inspection explanation needed
Hello,
I have a number of questions regarding flow and proxy-based inspection on the Fortigate firewall. As far as I understand, the inspection modes can be set at both the policy and security profile levels (for some profiles).
1. Why should I opt for flow-based inspection within a policy, instead of proxy-based?
2. Why is it possible to set flow-based inspection at the policy level and then set a proxy-based inspection at the security profile level and add t his profile to the flow-based policy?
3. Which SSL inspection (Certificate inspection / DPI) should be used for the specific security profiles?
I've done some research on the various inspection possibilities, but it's still not clear to me how it works. Does anyone have tips and/or answers to my questions?
Thank you in advance,
Jeffrey
