A Next Generation Firewall (NGFW) is expected to classify traffic based on applications so security policies can be applied at "application layer" (L7) instead of at "network layer" (L3/L4)

Each application has a single button that will trigger a zip file download with either a PDF or Virus content. This way you can test your DUT (Device Under Test) is a truly "Application-Based Next Generation Firewall"

Application 1 Application 2

More on EICAR test file at