Does what it says on the tin
June 19, 2024

Does what it says on the tin

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Modules Used

  • WatchGuard AuthPoint

Overall Satisfaction with WatchGuard AuthPoint

WatchGuard AuthPoint provides our organization with robust two factor authentication for our remote VPN users that gives an added security layer while keeping individual user deployment complexity low. After setup by our consultant, new user configuration is simple, and the added complexity of a hardware token or smartphone app is offset by the convenience of SSO with our AD Domain.

Pros

  • New user addition is relatively easy.
  • Choice between hardware or app based tokens.

Cons

  • Push authentication is clumsy.
  • User based token transfer to a new device does not always work smoothly.
  • Added security is always difficult to measure, because the cost is real but the protection is only visible in what doesn't happen.
Since implementing WatchGuard AuthPoint, we have had no adverse security incidents. On the other hand, we had no adverse incidents before WatchGuard AuthPoint either.
WatchGuard AuthPoint was our first SSO/MFA implementation for our VPN solution, so we have no comparison to anything else; we maintained no MFA and separate VPN passwords in our prior setup.

We consider the added protection of WatchGuard AuthPoint to be worth the added cost.

Do you think WatchGuard AuthPoint delivers good value for the price?

Yes

Are you happy with WatchGuard AuthPoint's feature set?

Yes

Did WatchGuard AuthPoint live up to sales and marketing promises?

Yes

Did implementation of WatchGuard AuthPoint go as expected?

Yes

Would you buy WatchGuard AuthPoint again?

Yes

As an added security layer for a remote VPN scenario in a small office, WatchGuard AuthPoint does its job as well as can be expected. It gives a good variety of options for token authentication and has a relatively simple client set up.

I don't know how well it would scale to a larger deployment than a dozen or so users, however.

Using WatchGuard AuthPoint

8 - WatchGuard AuthPoint is used by several different classes of employees in our organization.

Several users are full-time remote workers. The connect via WatchGuard AuthPoint every day to do their ordinary daily work.

Several more users are regular users, who connect when on field assignment, or when working from home as they may occasionally do.

A small number of users have rate needs to connect when at a conference or trade show or other similar rare case.
1 - We have a consultant for any complext WatchGuard AuthPoint support tasks, and a single in-house IT person for basic needs. Most setup and troubleshooting can be conducted in-house.
  • Access to local license servers.
  • Access to local fileshares.
WatchGuard AuthPoint is part of our natural workflow, and we are unlikely to move to another product unless it fails to meet our needs in the future.

Evaluating WatchGuard AuthPoint and Competitors

  • Integration with Other Systems
We already had Watchguard hardware as firewall/gateway devices, so adding WatchGuard AuthPoint to expand the VPN capabilities was an obvious expansion path.
I don't think there is anything we would do differently. We were presented with an upgrade path by our consultant which used our existing gateway/firewall hardware, and we agreed that it was a good upgrade to make.

WatchGuard AuthPoint Implementation

After a few speedbumps thinking that a moment was the switchover when it was not, everything pretty much worked as it should.
  • Third-party professional services
Implementation was done by [...], as part of an ongoing IT Services agreement.
  • Communication of exactly when the switchover would happen and when the old methods would stop working was challenging

Using WatchGuard AuthPoint

ProsCons
Easy to use
Quick to learn
None
  • Once configured, the user has little to worry about and few surprises.
  • SSO syncing is awkward and inconsistent.
Adding a new user inevitably requires a manual synchronization with the AD Domain, despite claims that it is automatically synchronizing. When you don't use the interface very often, this means hunting around for the appropriate tools every time.

Comments

More Reviews of WatchGuard AuthPoint