Product and Support News

New AuthPoint Release: Unify Identity Management with Microsoft Entra ID Synchronization

Starting January 15, 2026, a new version of AuthPoint will be available introducing Unify Identity Management with Microsoft Entra ID Synchronization (DDS). This release advances our identity strategy in WatchGuard Cloud by using Directories and Domain Services (DDS) as the identity hub—beginning with Microsoft Entra ID synchronization—so partners can manage users and groups more consistently across services.

Why we’re doing this

Identity is the control plane for modern security. But when user and group management is fragmented across tools, it creates friction for IT teams and increases the risk of misaligned access decisions. With this release, WatchGuard is moving forward with DDS as the centralized identity foundation in WatchGuard Cloud, starting with Entra ID synchronization.

What’s changing

With this update, Entra ID users and groups are managed through WatchGuard Cloud DDS, allowing identity data to be used more consistently across WatchGuard Cloud services. Entra ID remains the authoritative source of truth; DDS reflects and organizes that identity data so services can stay aligned as Entra ID changes over time (user adds/removes, group updates).

Who is impacted

This update is especially relevant for partners who:

  • synchronize identities from Microsoft Entra ID for AuthPoint

What partners need to do

Impacted tenants should complete the required configuration updates to move to the DDS-based approach and validate expected results

Two implementation paths (pick the one that matches your tenant)

  • New configuration: You’re setting up Entra ID synchronization via DDS for the first time in a tenant.
  • Convert existing configuration: You have an existing Entra ID-related configuration and need to transition to the DDS-based approach.

Validation checklist (recommended)

After completing the updates, validate that:

  • the correct users and groups are present
  • group memberships match expectations
  • AuthPoint authentication flows and any identity-dependent behavior work as intended

Timeline and planning guidance

There is no required deadline for the rollout at this time. If you leave your current configuration as-is, it should continue to work until you are ready to migrate. That said, we strongly recommend planning the migration as soon as practical so you can benefit from the DDS-based synchronization improvements and ensure your configuration stays aligned with the latest supported approach. If a hard migration date is introduced in the future, WatchGuard will share a follow-up announcement in advance.

For MSPs, we recommend a phased rollout: start with a low-risk tenant, validate outcomes, then expand to additional tenants.

Official guidance and resources

Use the resources below to plan and execute the update:

Need help?

If you have questions or want help planning the update—especially across multiple tenants—contact your WatchGuard Account Manager or trusted Sales Representative, or use the Support resources above.

Gespeichert unter: Authentication