Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
hexe
New Contributor

Flow Mode versus Proxy Mode

When Anti-maleware is deployed in the Flow Mode (versus Proxy Mode), what happens to the detection rate? - It dramatically decreases - it decreases slightly - stays the same - increases
1 Solution
AndreaSoliva
Contributor III

Hi all

 

it is of sure a document which does not give all answers but some will be answered.

 

My favour mode is still proxy mode which means as long as I do not have any performance issue I would use proxy mode. If you have problems with performance I would change to flow.

 

Search in google for following file:

 

Fortios-scanning-of-archive-compressed-files

 

You will find a Fortinet Document Fortios-scanning-of-archive-compressed-files.pdf. As mentioned it gives some answeres in some discussed stuff here.

 

have fun....

 

Andrea

View solution in original post

21 REPLIES 21
sebastan_bach

Hi, 

I am new to Fortinet and wanted to know have we stopped publishing the flow based AV throughput on datasheets like earlier. I am sure the Flow Based AV performance nos. would be higher than the proxy based AV nos. which are present in the datasheets. 

 

We have positioned a FG-900D to our customer and talked about enhanced performance with new Flow based scanning method so they have asked for the performance nos. 

 

Can somebody please guide me on this. 

 

Regards

 

Sebastan

ede_pfau

Flow based AV is handled by the IPS engine so you could take the IPS throughput figures as a first estimate. Check some older datasheets (100D, 200D) which show both figures to verify this.

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors