WatchGuard Firebox can burn risks down
December 14, 2020

WatchGuard Firebox can burn risks down

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with WatchGuard Network Security

We use 2 WatchGuard Clusters. One for segmenting the internal VLANs and one additional in front of our internal Network for managing the external traffic and the DMZ access.

We just started to implement the WatchGuard AD SSO feature to build user-based policies and maybe migrate our existing Hardware webproxy solution to the Fireboxes.
  • DNS Watch.
  • Dimension.
  • AD SSO.
  • Support.
  • Read/write access splittable.
  • WOL not working, because ARP entries will not be saved for enough time.
  • Guided review of configuration after upgrade to new fire os (when something is changed).
  • We are able to check and prove configuration changes.
  • We are able to check and prove denied packets.
We bought our Fireboxes at Netzplan.
We also have a support contract with them.
They are checking the boxes and the logs once a week for everything unnormal operation or unseen attacks.

Netzplan also did the initial Firebox installation some years ago.
The migration from the old boxes to the new boxes was done by ourselves.
We chose Total Security on all of our boxes. It's more comfortable to have only one license with end date to renewal than a lot with maybe different dates.
The hardware is stable and have enough power for the security features.
The security features are also stable and give us a good feeling.
The Logging via Dimension is great. We are able to look for errors or blocked packages in the past and filter them well.

Something we are missing is that WatchGuard isn't interested to get certified by the "BSI." For this reason we will have to buy an extra firewall for a specific VLAN that needs special security requirements.

WatchGuard Network Security Feature Ratings

Identification Technologies
10
Visualization Tools
10
Content Inspection
8
Policy-based Controls
9
Active Directory and LDAP
10
Firewall Management Console
9
Reporting and Logging
10
High Availability
10
Stateful Inspection
9
Proxy Server
9

WatchGuard Network Security Support

There was nothing I got no answer for.
No - The SLA inside of Total Security is enough for us.
Yes - Yes it was fixed by the support and I think later it was fixed with a newer release.
I had a call from technician within one hour and instant remote session were the problem was solved.
ProsCons
Quick Resolution
Good followup
Knowledgeable team
Problems get solved
Kept well informed
No escalation required
Immediate help available
Support cares about my success
Quick Initial Response
None