The Forcepoint ONE Secure Web Gateway (SWG) is one of the three foundational gateways of the Forcepoint ONE all-in-one cloud platform. Forcepoint ONE SWG monitors and controlsany interaction with any website, including blocking access to websites based on category and risk score, blocking download of malware, blocking upload of sensitive data to personal filesharing accounts, detecting shadow IT, and optionally providingRemote Browser Isolation (RBI) with Content Disarm andReconstruction (CDR).
N/A
WatchGuard DNSWatchGO
Score 9.7 out of 10
N/A
WatchGuard DNSWatchGO provides DNS-level protection and content filtering that keeps the user's business safe from phishing, ransomware, and other attacks even when a user is outside of the network, without requiring a VPN.
Over the years, [in our experience], the maintenance of the Forcepoint Web Security solution proved to be more cumbersome and troublesome with each version upgrade. In addition, it did not transition well to support the large increase of remote workers. We also experienced weird incompatibilities with the client. We have since replaced this solution with Zscaler Internet Access, a cloud-based secure web gateway solution with a client that behaves as expected, is more flexible, and requires significantly less administration.
We have a lot of salesman that everyday have to connect to the office from remote, different places. the problem was that vpn is not safe anymore, with DWatchGuard DNSWatchGO they can connect without vpn and in safe mode, all the traffic is control by dns request so the bad site request are immediately block and the network is safer. Sometimes a category can be faulty, some good website are mark as "bad", so until WatchGuard DNSWatchGO fix the category you cannot use the website. or you have to make a rule to enable the website.
This package is one of the few that offers a category, quota time, that allows us to limit certain categories and or websites for staff that would normally be blocked for customers and may not be something that is needed in their day to day job duties. We allow staff one hour a day, broken down into six 10 min increments, to visit sites for shopping, travel arrangement and other areas that are more of a personal need than a business need.
Forcepoint has a wide selection of categories that can be enabled, quota timed or restricted at a top-level or you can go more granular and drill down to subcategories to allow for only partial access.
The user access logs contain a lot of useless information. I understand this is very hard to tackle as I've seen this across any product that logs web activity.
I would like to see more customization options of website block pages.
It is very stable, the organisation has "locked in" the product and has no plans to change or try another product. We have already renewed our 2019-2020 licenses. It is user friendly and people catch on easily when they first use it. The only downtime is when we install Microsoft updates! It has excellent reporting which help in determining how the organisation's Internet is used and also during both internal and external IT audits.
We really need an extra layer of protection for our laptops. Choosing the DNSWatchGo makes sense as we have Watchguard firewall. If we had another brand of firewalls we would probably use anther product instead!
Despite the intimidating Linux CLI when you use the appliance for troubleshooting, the web security usability compensates as most of the Administration of the system is done there. It is GUI based and has an easy to use UI where one can navigate around rather easily like getting reports, checking alerts, looking the whole setup under deployment to check if all services are running in one place though there are other parts to the system.
The is a quick first response to acknowledge your issue and the Engineers never take more than two hours to fix an issue and we hardly get issues looking at the fact that the system is pretty stable. There is also a robust Knowledge Base in the site for known problems.
Research known issues with upgrading from the Support Knowledge base, this will enable you avoid road blocks along the way and reduce your dependence on Forcepoint Support
To be honest, once using Forcepoint for our Web Security, I have not wanted to look anywhere else. The dashboard gives me quick insight of threats, productivity, and bandwidth usage. Again, this is a layer in my security and it fills many holes. I feel safe and I do like I can just let it do its thing
At the time we were looking for a DNS based protection solution we had also tried "Blue Shield Umbrella". Both programs had similar behavior, but the main reason we eventually decided to go with DNSWatchGo was the fact the we have WatchGurd firewalls. So deploying DNSWatchGo was easy as we just copied the Application Control settings from our firewalls to the DNSWatchGo setup. Also Watchguard firewalls already have the DNSWatch service for the PCs that are connected to them while inside the company network, so it makes sense to equip them with the same shield while outside the company network.