I think this one is better
I agree.
It is more convenient for user: User will need to respond to much less alerts and create far fewer rules.
* * * * *
Here is basic infos for those that do not know how it works...
SpyShelter Firewall High-Security (create generic Allow rules for built-in\user-defined Trusted vendors) is similar to COMODO HIPS in Safe Mode.
SpyShelter Firewall Ask User (built-in Trusted vendors list disabled\user must create all rules) is similar to COMODO HIPS in Paranoid Mode.
The difference between SpyShelter and COMODO is that SpyShelter will create a generic Allow rule for the action whereas COMODO will create a specific Allow rule for the action.
For example,
SpyShelter Firewall will create an Allow rule for
all registry access\modification; file can access and modify the registry.
COMODO will create an Allow rule for only the
specific registry key access\modification; file can access and modify a specific registry key.