No reason not to add MFA to your WatchGuard Environment (and it's easy to do)
Updated May 02, 2022

No reason not to add MFA to your WatchGuard Environment (and it's easy to do)

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with WatchGuard AuthPoint

WatchGuard AuthPoint is our multi-factor authentication solution when connecting to our corporate network via VPN. We're a WatchGuard shop, so AuthPoint is a natural fit.
  • Multi-Factor Authentication - push and rotating key options.
  • Integration with WatchGuard Firebox.
  • We haven't encountered any issues or deficient areas; it works exactly as expected.
  • Positive - MFA increases confidence in user identification (a person is who they say they are).
  • Positive - MFA is a standard security mechanism that customers, insurers, auditors, etc. expect us to have in place.
We use DUO Mobile for our other MFA (i.e., Remote Desktop for Windows.) WatchGuard offers instructions on how to set up MFA with DUO, however, the WatchGuard AuthPoint setup was much simpler, so we opted to go that route. We are planning on looking into switching everything to WatchGuard AuthPoint, however, it's not a high priority at this time.
While it's designed as a cloud service which certainly makes it easier to manage from anywhere, we needed to install a gateway on an on-premises server to connect the WatchGuard AuthPoint cloud service with our LDAP directory. The gateway software is lightweight and hasn't impacted server performance in any meaningful way. This most likely won't be needed for cloud-based directory services.
We have iPhone and Android users, and the rapid activation has been well received by users. Compliance is enforced through settings, therefore users are required to use WatchGuard AuthPoint to connect to the corporate network via VPN.
Secure SSO was a requirement for selection. Only needing to know one password along with having MFA in place provides a seamless (and secure) transition from in-office to remote and hybrid work environments.

Do you think WatchGuard AuthPoint delivers good value for the price?

Yes

Are you happy with WatchGuard AuthPoint's feature set?

Yes

Did WatchGuard AuthPoint live up to sales and marketing promises?

Yes

Did implementation of WatchGuard AuthPoint go as expected?

Yes

Would you buy WatchGuard AuthPoint again?

Yes

I'd definitely recommend WatchGuard AuthPoint for organizations that use WatchGuard Firewalls and need MFA for their VPN. It was easy to set up (although we ran into an installation-blocking issue with the gateway software which took some time to solve,) easy to manage, and seamlessly integrates with the Firewall. We use LDAP-based authentication, however, it connects with other directory services. We have not used it for other scenarios.