Silver identity security environment showing multifactor authentication with a phone, laptop, hardware token, cloud services, and protected systems

Protect every sign-in

Strong authenticationwithout unnecessary friction.

WatchGuard AuthPoint MFA protects supported cloud applications, computers, VPNs, and business resources with flexible authentication methods and centrally managed access policy.

Why it matters

Passwords alone cannot reliably prove who is signing in.

Credential theft, phishing, password reuse, and automated attacks make single-factor access unsafe. AuthPoint adds an independent verification step and gives Kenmie a central way to manage enrollment, policy, recovery, and access changes.

Core capabilities

Protection with a defined purpose.

Each capability addresses a specific part of the risk while sharing useful visibility with the broader WatchGuard ecosystem.

Flexible MFA methods

Push approvals, one-time codes, QR-based workflows, passkeys, and supported hardware tokens can be aligned with user and operational requirements.

Computer protection

Supported Windows and macOS sign-ins can require AuthPoint authentication when that design fits the environment.

VPN and RADIUS access

AuthPoint can strengthen supported Firebox VPN, wireless, and third-party RADIUS authentication workflows.

Cloud application access

SAML and OIDC integrations extend strong authentication and single sign-on to supported business applications.

Hardware-token options

Purpose-built hardware tokens support users who cannot rely on a smartphone or require a dedicated authentication device.

Central identity operations

WatchGuard Cloud supports policy, user lifecycle, token management, reporting, and troubleshooting across managed accounts.

Extend identity protection

Total Identity Security adds credential exposure monitoring.

Organizations that need both strong authentication and awareness of exposed workforce credentials can extend AuthPoint with dark-web credential monitoring.

Explore Total Identity Security

The accountable layer

What Kenmie brings to the solution.

Technology becomes an operating security service when it is scoped, configured, monitored, maintained, and supported around the customer’s environment.

Identify applications, users, and authentication paths
Select appropriate authentication and recovery methods
Configure directory, SAML, OIDC, VPN, or RADIUS integrations
Guide user enrollment and adoption
Document support, recovery, and emergency-access procedures
Maintain access through onboarding, role changes, and offboarding

Business outcomes

Security that is easier to understand and operate.

Stronger protection against stolen passwordsConsistent authentication across supported resourcesFlexible options for different usersCentralized identity administration
Official WatchGuard product information
ONE CONNECTED ECOSYSTEMProtect · Detect · Respond

Connected technologies

Explore the rest of the ecosystem.