On NGFW FortiGate Intrusion Prevention System (IPS) security profile is there which detects network attacks and prevents threats from compromising the network, including protected devices.
IPS utilizes signatures, protocol decoders, heuristics (or behavioral monitoring), threat intelligence (such as FortiGuard Labs), and advanced threat detection in order to prevent the exploitation of known and unknown zero-day threats. FortiGate IPS is even capable of performing deep packet inspection to scan encrypted payloads in order to detect and prevent threats from attackers.
Please find the below link to configure the IPS on the NGFW firewall:-
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.