From the Firebox appliance and the Total Security Suite to AuthPoint MFA for VPN and Windows sign-ins: we plan, deliver and operate your WatchGuard environment – keeping attackers out and your business running.

WatchGuard Technologies is one of the world’s leading network security vendors. The platform combines firewall, security services, endpoint protection and multi-factor authentication under one central management – comprehensive protection with minimal administration effort.
Firebox appliances combine firewall, VPN gateway and all security services in one device – from the compact T Series to the M Series for the data centre. See the model families →
The complete protection package: intrusion prevention, sandboxing, DNS filtering, AI-based antivirus and XDR – fully integrated and centrally managed. View all services →
Cloud-based multi-factor authentication: secures VPN access, the Windows logon and cloud applications with a second factor. AuthPoint in detail →
Central management of all WatchGuard devices and services: clear dashboards, reporting and easy administration – even across multiple sites.
WatchGuard Endpoint Protection, Detection & Response protects all endpoints with behaviour-based detection and the Zero-Trust Application Service.
As a certified WatchGuard partner we size the right solution, handle implementation and rule sets – and run the environment as part of our managed services if you wish.
All Firebox models run the same operating system and the same security services – the difference lies in throughput, ports and form factor. That means even the smallest site gets the same protection as headquarters.
Compact appliances (e.g. T25, T45, T85) for small offices, branches, practices and the home office – quiet, quickly installed and, depending on the model, with integrated Wi-Fi and PoE ports.
Rack appliances (M290 to M5800) for mid-sized companies up to the data centre: high throughput even with all security services enabled, with modular network ports on the larger models.
The same firewall as a virtual appliance for VMware and Hyper-V – or as Firebox Cloud directly in AWS and Microsoft Azure. Ideal for virtualised environments and hybrid infrastructures.
A Firebox is only as good as its enabled services. The Basic Security Suite covers classic protection – the Total Security Suite adds advanced defence against ransomware, zero-day malware and phishing. For most companies we recommend Total Security.
Detects and blocks exploits, port scans and network attacks in real time.
Scans traffic at the gateway for malware before it reaches your network.
URL and content filtering by category – protects users and enforces your policies.
Fends off spam and phishing waves right at the gateway.
Controls which applications may access the internet – block file sharing or remote-access tools selectively.
Cloud-based reputation check of web addresses before the connection is established.
Inventories all devices on the network and exposes shadow IT.
Cloud sandbox against zero-day malware and ransomware: suspicious files are detonated and analysed in a safe environment.
Blocks connections to phishing and command-and-control domains at DNS level – before any payload is downloaded.
AI-powered malware detection that identifies previously unknown threats without signatures.
Correlates events from firewall and endpoints (XDR) and responds to threats automatically.
Central management, dashboards and reports for all Fireboxes and services – across multiple sites.
Services without a label are part of the Basic Security Suite (and also included in Total) · TOTAL = additionally included in the Total Security Suite.
Stolen credentials are the number-one attack vector – a password alone no longer protects anyone. WatchGuard AuthPoint adds a second factor to every sign-in via your employees’ smartphones. No server of your own required – fully managed through the WatchGuard Cloud.
Home-office and field-staff VPN only with a second factor: AuthPoint integrates directly with the Firebox mobile VPN (SSL and IKEv2) and, via RADIUS, with virtually any other VPN gateway. Stolen or guessed VPN passwords become worthless.
The AuthPoint Logon App protects sign-ins to Windows PCs, notebooks and servers (macOS too) with a second factor – including RDP sessions if desired. And if a notebook is offline on the road, approval works via one-time password from the app.
Approval is as easy as tapping the push notification in the AuthPoint app – alternatively via time-based one-time password or QR code. Hardware tokens are available for employees without a smartphone.
Via the SAML portal your employees sign in securely once and then reach Microsoft 365 and other cloud services without re-entering passwords – centrally controlled, centrally logged.
Whether a new Firebox, a migration from another vendor or AuthPoint MFA for VPN and Windows logon: we find the right solution, implement it and make sure your network stays secure and fast.