- Jun 21, 2014
- 1,044
Hello,
I wanted to write a guide about my favorite way to protect my system using Comodo Internet Security.
I install Comodo with Cloud Lookup enabled, I don't need other options. After the install, I make a few changes.
Firewall Config
From Firewall Task, stealth ports I select block all incoming connections.
Open Advance Settings > Firewall Settings > On Do NOT show popups Alerts [Block Request]. In the same tab, under Advanced check [Filter IPv6 traffic] [Filter loopback traffic] [Block fragmented IP traffic] [Do a protocol analysis] [Enable anti-ARP spoofing]
Defense + Config
From HIPS > HIPS Settings check [Enable enhanced protection mode] only if you have 64bit OS.
For Sandbox > Auto-Sandbox > click on the first Run Virtually and edit in: Change from Internet to any in the source tab. In the Reputation tab select File is rated as [unrecognized]. In the Option tab select Set Restriction Level [Untrusted]
This setup is the best for 0-Day Protection. A small warning is that if the file is "safe" and it still doesn't work you need to make a custom firewall rule to allow it to the web (I had this issue with a few files)
I wanted to write a guide about my favorite way to protect my system using Comodo Internet Security.
I install Comodo with Cloud Lookup enabled, I don't need other options. After the install, I make a few changes.
Firewall Config
From Firewall Task, stealth ports I select block all incoming connections.
Open Advance Settings > Firewall Settings > On Do NOT show popups Alerts [Block Request]. In the same tab, under Advanced check [Filter IPv6 traffic] [Filter loopback traffic] [Block fragmented IP traffic] [Do a protocol analysis] [Enable anti-ARP spoofing]
Defense + Config
From HIPS > HIPS Settings check [Enable enhanced protection mode] only if you have 64bit OS.
For Sandbox > Auto-Sandbox > click on the first Run Virtually and edit in: Change from Internet to any in the source tab. In the Reputation tab select File is rated as [unrecognized]. In the Option tab select Set Restriction Level [Untrusted]
This setup is the best for 0-Day Protection. A small warning is that if the file is "safe" and it still doesn't work you need to make a custom firewall rule to allow it to the web (I had this issue with a few files)
Last edited: