Microsoft Entra ID (formerly Microsoft Azure Active Directory or Azure AD) is a cloud-based identity and access management (IAM) solution supporting restricted access to applications with Azure Multi-Factor Authentication (MFA) built-in, single sign-on (SSO), B2B collaboration controls, self-service password, and integration with Microsoft productivity and cloud storage (Office 365, OneDrive, etc) as well as 3rd party services.
$6
per user/per month
WatchGuard AuthPoint
Score 8.9 out of 10
N/A
AuthPoint Total Identity Security provides businesses with a solution to protect user accounts and credentials. With
multi-factor authentication and dark web credential
monitoring, AuthPoint mitigates the risks associated with workforce credential
attacks. AuthPoint adds an extra layer of security by monitoring for
potential credential exposure in the dark web for both personal and corporate
accounts.
Although there can be issues with authentication conflicts that may cause account lock-outs, Microsoft Authenticator is simple and effective. One upside to WatchGuard AuthPoint is the longer timer for the authentication code time length, especially for users that aren't "fast …
I have used Authy, google authenticator, last pass, and a few others; the push notification is definitely more convenient than having to go look for the app and type the token every time.
AuthPoint has better integration with the product stack. Simpler to implement. Less complex of a setup. Easier to explain to customers and easier training for the engineering/support team. Licenses per user are good value and affordable for the majority of our small and …
AuthPoint was a clear choice when comparing these products. With a mixed OS environment, Cisco Duo did not seem to work well. Azure MFA does not work with MAC OS. Watchguard AuthPoint met what we needed.
We use the Microsoft MFA also and I have used the Google Authenticator (only prior to the MS version being released, however). They are similar in terms of functionality of course, but I have not attempted additional integrations using SAML 2.0 or anything like that so cannot …
We selected Authpoint as we already had WatchGuard security appliances in use at our organization. We also began to evaluate the product based on a recommendation from our MSP. They have several customers that use Authpoint, so it was recommended. It was also nice that they had …
It is only worth purchasing because of the cheap price and integration with WatchGuard VPN. The downside in trying to test a MFA product is having to configure your products (Tableau Online, Office365) to use it and therefore all users immediately will have issues unless using …
Entra ID is particularly suited in highly regulated environments where conditional access can be applied via device filters, app filters, locations, and groups. It is less suited in organizations seeking to secure a perimeter based on Zero-trust principles as the first line of Attack and that have not yet invested in a comprehensive endpoint security solution.
It's well suited for large and medium-sized companies looking to increase their security and comply with local regulations. Smaller companies probably wouldn't see the same benefit because the cost of convenience wouldn't be as attractive. Anyone handling credit card information, medical information, or secure customer information could greatly benefit from this solution.
The conditional access piece works really well for us. We in the past have had situations where, and you've seen it also in the news like SIM swaps that are happening, the attacks that are happening. We don't have to just solely rely on an application, a cloud application, having MFA, et cetera. We now have it applied to a larger number of applications and it effectively has stopped attacks the coming across.
Works well with the free Authpoint client and the OpenVPN clinet.
Token management is simple and hosted completely in the cloud to reduce overall complexity
Setup was simple and and staighforward
Suppports several authentication methods we have used both RADIUS and SAML effectively, but ADFS, IDP, RDWeb, and RESTful API, and other custom apps are supported.
Geofencing for RDP has been very useful as it is independant of our firewall geofencing. This is quite useful for organizations like us who do not Geofence at at the firewall level so as to provide global access to resources on the DMZ.
One of which is there is a very fast rate of UI changes which impacts users who need to use it on a daily basis and for users not to experience with Microsoft, it leads to many manuals being outdated too soon.
Integration with on-premise AD is not working, even after speaking with the support team, it could not get resolved. There is no better documentation on this topic as well
Integration with Azure AD is not supported without the presence of on-prem AD
Logs information is not precious, it provides a generic code in some cases, making it harder to troubleshoot.
The Watchguard AuthPoint App in AppStore has some issues, after it's activated there is no approval request being sent to the phone, and there is no way to troubleshoot this, the only way to make it work is by uninstalling the app and reinstalling it again.
MSFT Entra ID has been essential for managing our geographically dispersed team. We're confident that it will scale with us as grow, and we'll be able to take advantage of additional security and ID management features as they become necessary. Being able to centrally manage our user access from anywhere with a small support team is such a relief.
Today to ensure our ISO 27001 certification it is important that we maintain this solution. Today it is part of the way any employee within the organization works, we no longer have any other way of working and it is the simplest way to ensure that access to the workstation is done with MFA.
I think it can be hard to manage, but only because it is so big. Any time you have a lot you can do the management of it gets harder. They do a good job making it good to use and document the product very well.
After initial setup, it practically runs itself. Onboarding new users is fast and easy as it should be. The AuthPoint mobile app is small and simple to use. The only reason I do not give it a 10 is that I frequently get complaints from end users that the AuthPoint app is "constantly downloading". In fact, it's not downloading anything and that what the users are seeing in the app is a timer for the 6-digit code that changes every minute.
I have not needed to engage support for anything at this time. I have been able to find the answers either online or in a knowledgebase. I tried to skip the question but it would not let me, so I rated a 9 based on other interactions with Microsoft support I have had
WatchGuard support is always quick and reliable. They have urgency levels that you are able to select when creating your support ticket, and they respond in accordance to the severity that you have set. I have never had an issue with getting someone on the phone in the same business day, even for very low priority issues.
It was an Onsite demo at the ditributor with the benefits of Watchguard Authpoint. Was very nice to see the abilities of the product. This Demo was a few years back, since then Authpoint changed allot. It is very nice for partners that you can get this demo without any aditional cost.
We use the online training for all our employees. There are both sales and technical trainings available and there even is a technical certification. You can use this for the Watchguard Partner Program which can give you aditional benefits. Every now and then you have a webinar that discusses multiple Watchguard products.
Make sure you use a good partner. Our implementation was a bit longer and more problematic than we expected. Our partner got it done, but, in my opinion, some of their inexperience and staffing issues were evident.
the first time it takes more effort. It is helpful to already understand how each authentication type works. Then it's much easier to understand the MFA solution that you implement. It is useful to check the release notes from time to time and update the key parts of the Watchguard Authpoint. Authpoint Gateway, Logon App, RDWeb... Also, it's useful to set up notifications when something goes wrong or sometimes check the statistics of how many requests are being approved/denied, etc.
The Microsoft Entra ID reaches to height in comparison to other applications of Google cloud console and Amazon Web Services due to its amazing feature of provisioning and Microsoft Graph APIs. Plus ease of implementation of single sign on feature to different apps as an identity provider is a cherry on the cake
I would slot Authpoint (as a product) as better than ESET but not Duo. ESET has the same limitations as Watchguard in the OTP support. It also is an on-prem installed console rather than a cloud, which increases cost and maintenance requirements. The duo now supports standard OTP for admin accounts, so it can be managed by a team. Duo support however leaves a lot to be desired and gives Watchguard the edge
Microsoft Professional Services' technical knowledge is appreciable as consultants design the solution as per customer requirements. Mapping of features per user specifications and assisting Customer IT engineers to implement so they can manage and administer the services.
Our end uses found this product very easy to use. Using one overview session, I have not had to follow up with users to access the product.
Once deployed, other users in our environment heard about the ease of use. We then had a 25% increase in requests for the product.
This product has added to the overall satisfaction of users having to work offsite, attend conferences and other travel while still being able to stay connected to their work product.