WatchGuard AuthPoint - The potential is there however so is need for further improvements
Updated January 12, 2023

WatchGuard AuthPoint - The potential is there however so is need for further improvements

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with WatchGuard AuthPoint

WatchGuard AuthPoint is being used in all our company departments, for the authentication of all our users when they connect to our network remotely via SSL VPN. We also intend to use it in the future for granting access to specific applications via the WatchGuard Access Portal on our Fireboxes.
  • Only one device allowed to have each token.
  • Online token requirement for push notifications adds extra security.
  • Very fast authentication.
  • Firebox-DB users can't use AuthPoint as second form of authentication e.g., authenticate Firebox-DB users with their local password and then use AuthPoint push notification.
  • AuthPoint authentication responses are not bound to a specific authentication request. The correlation between the authentication response and the authentication request is purely time based. Any authentication response for a specific user that is received in a specific time frame since the request was made is accepted as a valid response, even if it belongs to another authentication attempt!!! This does leave room for error and exploits.
  • There are no AuthPoint password complexity policies that can be enforced to the AuthPoint users.
  • There is no setting for each company to enforce a password reset of all company AuthPoint users every xx days.
  • There is really no value that one can put on security!
  • Just think of what would happen if there was a breach into the company network...
  • There no too much when security is concerned!
The main reason why we selected WatchGuard AuthPoint is first of all the obvious one. We also have Firebox firewalls from WatchGuard. Aside form that they have very competitive pricing compared to the other available alternatives. Also they offer the online push notification that is way more secure than all those offline tokens.

Do you think WatchGuard AuthPoint delivers good value for the price?

Yes

Are you happy with WatchGuard AuthPoint's feature set?

Yes

Did WatchGuard AuthPoint live up to sales and marketing promises?

Yes

Did implementation of WatchGuard AuthPoint go as expected?

Yes

Would you buy WatchGuard AuthPoint again?

Yes

WatchGuard AuthPoint does work well for the authentication of SSL VPN users. It will probably also work fine if set up to be used for the user authentication on the Access Portal of the Firebox. It could probably also be used for other remote access scenarios like Citrix remote clients and so on.