Joe,
With Endpoint on servers, with the version E80.71.0232, we run the following blades.
Anti-Malware
Sandblast Forensics, Remidiation and Anti-Ransomware
Sandblast Agent Anti-bot
Sandblast Agent Treat Extraction and Emulation
We have in the first place disabled the firewall, because we not able to control the firewall rules like in the secure gateway. We had create one policy with all the needed open ports or create one policy per server.
It is something we will dig into in the near future if time allow us to do so 🙂
Thanks
Kim
Best Regards
Kim