Professional Documents
Culture Documents
Security
The growth in cloud computing capabilities and services has driven more data into Data Protection
Application Delivery
places where traditional IT security measures cannot reach - into data centers not
owned by your corporate IT group. Beyond its powerful network firewall, IPS, and VPN
technologies, the Barracuda NextGen Firewall F-Series integrates a comprehensive set
of next-generation firewall technologies, including comprehensive application
control, availability, and quality-of-services (QoS) features.
Integrated Next-Generation
Security and Connectivity
The Barracuda NextGen Firewall F-Series Intrusion Detection
and Prevention System (IDS/IPS) strongly enhances network
security by providing complete and comprehensive real-
time network protection against a broad range of network
threats, vulnerabilities, exploits, and exposures in operating
systems, applications, and databases preventing network
attacks such as SQL injections and arbitrary code executions. The Barracuda NextGen Firewall F-Series dashboard provides real-time
information and summaries of what is going on in an organization's network.
The F-Series incorporates advanced site-to-site and
client-to-site VPN capabilities, using both SSL and
IPsec protocols to ensure remote users can easily
and securely access network resources without
ADVANCED
complex client configuration and management. THREAT DETECTION
We are using the Barracuda NextGen Firewalls, provisioned through the AWS Marketplace, to effectively guard
Max Longin
our application against web-based attacks and application layer attacks. The Barracuda solution plugs in
Founding Partner
seamlessly to our AWS environment, and it is doing its job of minimizing the attack surface area and helping
Club Automation
our customers keep club member cardholder data protected.
Barracuda Networks • Barracuda NextGen Firewall F: Protecting Your Digital Assets in Amazon Web Services
Technical Specs
Firewall Intrusion Detection and Prevention Traffic Intelligence & SD-WAN
• Stateful packet inspection and forwarding • Protection against exploits, • Simultaneous use of multiple uplinks
• Full user-identity awareness threats and vulnerabilities (transports) per VPN tunnel
• IDS/IPS • Packet anomaly and fragmentation protection • FIPS 140-2 certified cryptography
• Application control and granular • Advanced anti-evasion and obfuscation techniques • Auto-VPN tunnel creation between remote
application enforcement • Automatic signature updates spoke locations based on application type
• Interception and decryption of SSL/ • Dynamic bandwidth detection
TLS encrypted applications Advanced Threat Protection • Performance-based transport selection
• Antivirus and web filtering in single pass mode • Dynamic, on-demand analysis of • Adaptive session balancing across multiple uplinks
• Email security malware programs (sandboxing) • Traffic Replication (forward error correction)
• SafeSearch enforcement • Dynamic analysis of documents with • Application-based provider selection
• Google Accounts Enforcement embedded exploits (PDF, Office, etc.) • Application-aware traffic routing (VPN, Direct Connect)
• Denial of Service protection (DoS/DDoS) • Detailed forensic analysis • Traffic shaping and QoS
• Spoofing and flooding protection • Botnet and spyware protection • Built-in data deduplication
• ARP spoofing and trashing protection • TypoSquatting and link protection for email
• DNS reputation filtering VPN
Central Management Options via • Drag & drop VPN tunnel configuration
• NAT (SNAT, DNAT), PAT Barracuda NextGen Control Center • Network Access Control
• Dynamic rules / timer triggers • Administration for unlimited number of firewalls
• Single object-oriented rule set for routing, • iOS and Android mobile device VPN support
• Support for multi-tenancy
bridging, and routed bridging • Multi-factor authentication for SSL
• Multi-administrator support & RCS
• Virtual rule test environment VPN and CudaLaunch
• Enterprise/MSP licensing
Protocol Support • Template & repository-based management Barracuda Energize Updates
• REST API • Standard technical support
• IPv4, IPv6
• BGP/OSPF/RIP • Firmware updates
Infrastructure Services • IPS signature updates
• VoIP (H.323, SIP, SCCP [skinny]) • DHCP server, relay
• RPC protocols (ONC-RPC, DCE-RPC) • Application control definition updates
• SIP, HTTP, SSH, FTP proxies
• 802.1q VLAN • Web filter updates
• SNMP and IPFIX support
• DNS Cache
Security Options
• Advanced Threat Protection prevents from • Malware Protection provides gateway- • Advanced Remote Access provides a
network breaches, identifies zero-day malware based protection against malware, viruses, customizable and easy-to-use portal-based SSL VPN
exploits, targeted attacks, advanced persistent spyware, and other unwanted programs as well as sophisticated Network Access Control
threats and other advanced malware. inside SMTP/S, HTTP/S, and FTP traffic. (NAC) functionality and CudaLaunch support.
Datasheet US 2.9 • Copyright 2015-2017 Barracuda Networks, Inc. • 3175 S. Winchester Blvd., Campbell, CA 95008 • 408-342-5400/888-268-4772 (US & Canada) • barracuda.com
Barracuda Networks and the Barracuda Networks logo are registered trademarks of Barracuda Networks, Inc. in the United States. All other names are the property of their respective owners.