I installed ZoneAlarm NextGen Beta and will try it over the next few days.
Few observations:
URL Filtering: to enable URL filtering, the following checkmark needs to be activated (not done by default).
The edge browser (if configured to always stay active in memory) will need to be terminated using
taskkill /f /im msedge.exe.
View attachment 284404
The system instantly and automatically updates Sophos and Behavioural Guard, but certain signatures and engines update is delayed until next start.
To instantly force update, either restart or run this:
"C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Updater\Updater\SBASignatureUpdater.exe"
This updates the static analysis models as well.
Firewall: settings are still reduced down to the absolute minimum, but the firewall is only intended to protect users from internal threats (devices connected on the home network), as well as unexpected inbound connections (port control). The rest, including blocking of network-spread viruses, exploits and C&C communication is handled by anti-bot.
The inclusion of protection names is nice.
View attachment 284406
Emulation now automatically inspects every file created. As an experiment, copy a malicious URL from somewhere, paste in a document and format URL as a link. DocLink Defender (part of emulation) emulates all files linked within a document and deletes the document shortly after creation.