<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Application Control Functionality - Custom rules / application whitelisting in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263671#M11053</link>
    <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32208i35057F1D5B2537EA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I managed to solve it this way. If anyone comes across this topic with the same issue, the configuration done like this will block the app and all older and updated versions.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 26 Nov 2025 12:36:25 GMT</pubDate>
    <dc:creator>MARCO-ROCHA</dc:creator>
    <dc:date>2025-11-26T12:36:25Z</dc:date>
    <item>
      <title>Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/198361#M7811</link>
      <description>&lt;P&gt;Within Harmony Endpoint there are two alternative mechanisms for application control&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;App Rules: Configuration based on the Applications that were uploaded within the Appscan XML file&lt;/LI&gt;
&lt;LI&gt;Custom Rules: Flexible sets of custom rules that are defined by the administrator&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;In recent Windows endpoint releases the following enhancements were made for Custom Rules&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Wildcards can be specified in rules. For example can define all versions of a specific application rather than multiple rules each based on a specific hash&lt;/LI&gt;
&lt;LI&gt;Rules can be defined based on values in certificates. For example all application signed by certificate with specific name&lt;/LI&gt;
&lt;LI&gt;Application whitelisting. Allows the default action to be defined &amp;nbsp;“Terminate”. This capability effectively enables “Application Whitelisting” where can specify all the applications that are allowed to run and then ensure that all others are terminated. Note that processes associated with O/S and Harmony Endpoint are implicitly defined and allowed to run and do not need to be defined in the configuration&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Application whitelisting is available in E87.60 as EA (Early Availability) functionality. Moving forward custom rules are recommended for customers new to application control and can also be assessed for customers with existing configuration using app rules to replace these definitions&lt;/P&gt;
&lt;P&gt;If there is anyone who wants to assess the full capabilities of the custom rules, and also use for whitelisting with latest enhancements, please reach out to me directly and can assess enabling the EA functionality&lt;/P&gt;
&lt;P&gt;Also feel free to contact me if looking for additional details on application control&lt;/P&gt;</description>
      <pubDate>Mon, 20 Nov 2023 08:11:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/198361#M7811</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2023-11-20T08:11:32Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263637#M11048</link>
      <description>&lt;P&gt;&lt;STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32205i86961ECF7C544EBC/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;I need help blocking Opera and Opera GX in my environment, but it must be done in a way that blocks &lt;EM&gt;all&lt;/EM&gt; versions — past, current, and future — without depending on version numbers or file hashes.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;I want a method that completely prevents the browser from running, regardless of updates or new releases.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Nov 2025 18:42:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263637#M11048</guid>
      <dc:creator>MARCO-ROCHA</dc:creator>
      <dc:date>2025-11-25T18:42:27Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263668#M11051</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/92109"&gt;@JonnyRabinowitz&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That's right, I've had problems with different versions of an application before. Even using AppScan, it only retrieves the specific version's hash. How is it possible to block an application, for example, by tracking the executable path?&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 11:35:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263668#M11051</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-11-26T11:35:21Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263671#M11053</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32208i35057F1D5B2537EA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I managed to solve it this way. If anyone comes across this topic with the same issue, the configuration done like this will block the app and all older and updated versions.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 12:36:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263671#M11053</guid>
      <dc:creator>MARCO-ROCHA</dc:creator>
      <dc:date>2025-11-26T12:36:25Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263687#M11055</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/136764"&gt;@MARCO-ROCHA&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It didn't work, as you described.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AP3.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32210i4D43BBC94560E891/image-size/large?v=v2&amp;amp;px=999" role="button" title="AP3.png" alt="AP3.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AP2.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32211iB0FE6B42ADC37B59/image-size/large?v=v2&amp;amp;px=999" role="button" title="AP2.png" alt="AP2.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AP.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32212i0D4FDCA5A96032CC/image-size/large?v=v2&amp;amp;px=999" role="button" title="AP.png" alt="AP.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 14:03:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263687#M11055</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-11-26T14:03:33Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263693#M11059</link>
      <description>&lt;P&gt;The block is for usage — in my case, it prevents the person from browsing the internet using the Opera browser. This happens because of the ‘BLOCK’ option. Try using ‘TERMINATE’ in your case; it might solve the issue.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 14:20:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263693#M11059</guid>
      <dc:creator>MARCO-ROCHA</dc:creator>
      <dc:date>2025-11-26T14:20:36Z</dc:date>
    </item>
    <item>
      <title>Re: Application Control Functionality - Custom rules / application whitelisting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263701#M11065</link>
      <description>&lt;P&gt;It didn't work with terminate.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="san4.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32213i7C3D665D3C6A8859/image-size/large?v=v2&amp;amp;px=999" role="button" title="san4.png" alt="san4.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 16:28:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Application-Control-Functionality-Custom-rules-application/m-p/263701#M11065</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-11-26T16:28:40Z</dc:date>
    </item>
  </channel>
</rss>

