AuthPoint, the obvious choice if you are already use WatchGuard in your tech stack!
Use Cases and Deployment Scope
Quick, efficient way to deploy MFA within WatchGuard tech stack. We primarily use for MFA enforcement onIKEv2 & SSL VPNs.
Pros
- Simple MFA deployment on VPNs
- Active directory integration for more complex deployments / lower admin overhead after implementation
- Ability to deploy with user id DB in cloud for smaller / simpler deployments
Cons
- Have had issues where Firebox comes "disconnected" from the cloud, which results in VPN functionality outage
- Mobile app does not always provide push notifications, even with sufficient device permissions - We train users to open the app when attempting to auth
- I am not sure if 3rd party authenticators are supported, possible they are and I'm unaware, but this would be a nice feature, occasionally receive objections to installation on personal devices
Return on Investment
- This has enabled us (as an MSP) to effectively market, and win solutions for MFA implementation on our WatchGuard VPNs. Simple enough to be easy to quote, and inexpensive enough to easily demonstrate value to clients.
Alternatives Considered
Cisco Duo














