SlideShare a Scribd company logo
1 of 2
Download to read offline
Enterprise networks grow larger and more complex every day - and more critical
to key business operations. The Barracuda NG Firewall is an essential tool to
optimize the performance, security, and availability of today's dispersed
enterprise WANs.
Barracuda NG Firewall
The Barracuda Advantage
Effective WAN Management
•	Application-based traffic prioritization across the WAN
•	Intelligent uplink balancing
•	Intelligent traffic re-prioritization on uplink loss
Enterprise Readiness
•	Industry-leading centralized management
•	WAN optimization
•	Global WAN monitoring with Barracuda NG Earth
Scalable Security
•	Cloud Enablement and secure WAN Virtualization
•	Drag-and-drop VPN graphical tunnel interface
Product Spotlight
•	Powerful next-generation network firewall
•	Advanced Threat Detection
•	Built-in web security and IDS/IPS
•	Dynamic mesh site-to-site VPN
•	Full application visibility and granular control
•	Intelligent traffic regulation including
application-based provider selection
•	Tightly integrated Quality of Service (QoS) and link balancing
•	Centralized management of all functionality
•	Template-based and role-based configuration
Recently I tried one of these dedicated products to protect of advanced persistent threats. After one month of extensive
monitoring it turned out that our Barracuda NG Firewalls protect our infrastructures so well, that we can continue to
focus on actual business problems. Having chosen the right firewall still saves us money and time every day.
Chief Information Officer
Union of Turkish Bar Associations
Scalable Security for the Enterprise
Integrated Next-Generation Security
The Barracuda NG Firewall is designed and built from the
ground up to provide comprehensive, next-generation
firewall capabilities. Cloud-hosted content filtering and
reporting offload compute-intensive tasks to the cloud
for greater resource efficiency and throughput. Based on
application visibility, user-identity awareness, intrusion
prevention, and centralized management, the Barracuda NG
Firewall is the ideal solution for today’s dynamic enterprises.
Regaining Control of User Activity
The Barracuda NG Firewall restores control to networks
made opaque and unmanageable by mobile devices at
work, Web 2.0 applications, increasing dispersion, and
the growing integration and dependence on cloud-
based resources. It extends security coverage beyond
network boundaries, and makes it easy to monitor and
regulate everything the network and its users are doing.
True Enterprise Readiness
The Barracuda NG Firewall meets the enterprise requirements
for massive scalability and efficient management across
distributed networks. Integrated WAN optimization
and dedicated centralized management appliances
enable organizations to increase system availability while
keeping administrative time and operation costs low.
The Barracuda NG Firewall dashboard provides real-time information
and summaries of what is going on in an organization's network.
Security
Storage
Application Delivery
Productivity
Barracuda Networks • Barracuda NG Firewall: Scalable Security for the Enterprise
Datasheet US 3.3 • Copyright © Barracuda Networks, Inc. • 3175 S. Winchester Blvd., Campbell, CA 95008 • 408-342-5400/888-268-4772 (US & Canada) • www.barracuda.com
Barracuda Networks and the Barracuda Networks logo are registered trademarks of Barracuda Networks, Inc. in the United States. All other names are the property of their respective owners.
Technical Specs
Firewall
•	 Stateful packet inspection and forwarding
•	 Full user-identity awareness
•	 Intrusion Detection and
Prevention System (IDS/IPS)
•	 Application control and granular
application enforcement
•	 Interception and decryption of SSL/
TLS encrypted applications
•	 Antivirus and web filtering
in single pass mode
•	 SafeSearch enforcement
•	 YouTube for Schools support
•	 Denial of Service protection (DoS/DDoS)
•	 Spoofing and flooding protection
•	 ARP spoofing and trashing protection
•	 DNS reputation filtering
•	 TCP stream reassembly
•	 Transparent proxying (TCP)
•	 NAT (SNAT, DNAT), PAT
•	 Dynamic rules / timer triggers
•	 Single object-oriented rule set for
routing, bridging, and routed bridging
•	 Virtual rule test environment
User Identity Awareness
•	 Terminal Server Agent
•	 Domain Controller Agent
•	 Authentication – supports x.509, NTLM,
RADIUS, RSA SecurID, LDAP/LDAPS,
Active Directory, TACACS+, SMS Passcode
(VPN), local authentication database
•	 WiFi Access Point Authentication support
Intrusion Detection and Prevention
•	 Protection against exploits,
threats and vulnerabilities
•	 Packet anomaly and
fragmentation protection
•	 Advanced anti-evasion and
obfuscation techniques
•	 Automatic signature updates
Traffic Optimization
•	 Link monitoring, aggregation, and failover
•	 Dynamic routing
•	 Application-based provider selection
•	 Traffic shaping and QoS
•	 On-the-fly flow reprioritization
•	 Stream and packet compression
•	 Byte-level data deduplication
•	 Protocol optimization (SMBv2)
Advanced Threat Detection
•	 Dynamic, on-demand analysis of
malware programs (sandboxing)
•	 Dynamic analysis of documents with
embedded exploits (PDF, Office, etc.)
•	 Detailed forensics for both, malware
binaries and web threats (exploits)
•	 Support for multiple operating
systems (Windows, Android, etc.)
•	 Flexible malware analysis in the cloud
VPN
•	 Drag & drop VPN tunnel configuration
•	 Secure site-to-site, client-to-site VPN
•	 Dynamic mesh site-to-site VPN
•	 Supports AES-128/256, 3DES, DES,
Blowfish, CAST, null ciphers
•	 Private CA or external PKI
•	 VPNC certified (basic interoperability)
•	 Application-aware traffic routing
•	 IPsec VPN / SSL VPN / TINA
VPN/ L2TP / PPTP
•	 Network Access Control
•	 iOS and Android mobile
device VPN support
High Availability
•	 Active-active (requires external
load balancer) or active-passive
•	 Transparent failover without session loss
•	 Network notification of failover
•	 Encrypted HA communication
Central Management Options
•	 Barracuda NG Control Center
–– Unlimited firewalls
–– Support for multi-tenancy
–– Multi-administrator support & RCS
Infrastructure Services
•	 DHCP server, relay
•	 SIP, HTTP, SSH, FTP proxies
•	 SNMP and IPFIX support
•	 DNS Cache
•	 SMTP gateway and SPAM filter
•	 Wi-Fi (802.11n) access point
on selected models
Protocol Support
•	 IPv4, IPv6
•	 BGP/OSPF/RIP
•	 VoIP (H.323, SIP, SCCP [skinny])
•	 RPC protocols (ONC-RPC, DCE-RPC)
•	 802.1q VLAN
Support Options
Barracuda Energize Updates
•	 Standard technical support
•	 Firmware updates
•	 IPS signature updates
•	 Application control definition updates
•	 Web filter updates
Instant Replacement Service
•	 Replacement unit shipped
next business day
•	 24/7 technical support
•	 Free hardware refresh every four years
Security Options
•	 Advanced Threat Detection
•	 Web Filter
•	 Malware Protection
•	 Clientless SSL VPN
•	 Network Access Control (NAC) clients
validating client's workstation health status
MODEL
COMPARISON
F10
F100
F101
F200
F201
F280
F300
F301
F380
F400 F600 F800 F900 F1000
SUBMODELS SUBMODELS SUBMODELS SUBMODELS SUBMODELS
STD F20
C10
C20
F10
F20
E20 CCC CCF CCE CCC CCE CFE CE0 CE2 CFE
CAPACITY
Firewall Throughput1
300 Mbps 300 Mbps 650 Mbps 1.6 Gbps 680 Mbps 3.8 Gbps 5.0 Gbps 16.3 Gbps5
19.6 Gbps5
22.2 Gbps5
40 Gbps5
VPN Throughput2
85 Mbps 85 Mbps 120 Mbps 310 Mbps 370 Mbps 750 Mbps 960 Mbps 2.3 Gbps5
6.8 Gbps5
7.6 Gbps5
10 Gbps5
IPS Throughput1
60 Mbps 60 Mbps 115 Mbps 450 Mbps 125 Mbps 1.1 Gbps 1.5 Gbps 3.9 Gbps5
4.8 Gbps5
5.4 Gbps5
10 Gbps5
Concurrent Sessions 2,000 8,000 35,000 100,000 70,000 200,000 310,000 2,000,0005
2,500,0005
2,800,0005
4,000,0005
New Session/s 1,000 1,500 2,500 9,000 2,500 9,500 16,000 110,0005
150,0005
160,0005
200,0005
HARDWARE
Form Factor Desktop mini Desktop 1U rack mount 2U rack mount
Copper Ethernet NICs
4x1
GbE
4x1
GbE
4x1
GbE
4x1
GbE
4x1 GbE+
4x1 10/100
8x1
GbE
8x1
GbE
8x1
GbE
12x1
GbE
8x1
GbE
8x1
GbE
20x1
GbE
12x1
GbE
12x1
GbE
24x1
GbE
16x1
GbE
8x1
GbE
16x1
GbE
32x1
GbE
16x1
GbE
1 GbE Fiber NICs (SFP)
4x1
GbE
4x1
GbE
4x1
GbE
8x1
GbE
16x1
GbE
10 GbE Fiber NICs (SFP+)
2x10
GbE
4x10
GbE
4x10
GbE
4x10
GbE
4x10
GbE
8x10
GbE
8x10
GbE
Power Supply Single (ext.) Single Dual6
Single7
Dual6
FEATURES
Firewall • • • • • • • • • • •
Application Control3
• • • • • • • • • • •
IPS3
• • • • • • • • • • •
Dynamic Routing • • • • • • • • • • •
VPN • • • • • • • • • • •
SSL Interception • • • • • • • • •
WAN Optimization • • • • • • • • •
Spam Filter • • • • • • • • •
Web Filter • • • • • • • • • •
Malware Protection Optional Optional Optional Optional Optional Optional Optional Optional Optional Optional
Advanced Threat
Detection4
Optional Optional Optional Optional Optional Optional Optional Optional Optional
Clientless SSL VPN Optional Optional Optional Optional Optional Optional Optional Optional Optional
Network Access Control Optional Optional Optional Optional Optional Optional Optional Optional Optional
1
Measured with large packets (MTU1500) 2
VPN throughput using AES128 NOHASH 3
Requires Energize Updates subscription. 4
Requires Malware Protection subscription. 5
Measured with 10GbE fiber ports
6
Internal dual hot swap power supply 7
Internal dual hot swap power supply optional. Specifications subject to change without notice.

More Related Content

What's hot

Silver peak acceleration, agility and velocity
Silver peak   acceleration, agility and velocitySilver peak   acceleration, agility and velocity
Silver peak acceleration, agility and velocityresponsedatacomms
 
Senior network security engineer
Senior network  security  engineerSenior network  security  engineer
Senior network security engineerDWARAGANATH VJ
 
Technical overview of new cisco catalyst multigigabit switches
Technical overview of new cisco catalyst multigigabit switchesTechnical overview of new cisco catalyst multigigabit switches
Technical overview of new cisco catalyst multigigabit switchesCisco Mobility
 
Garance 100% dostupnosti dat! Kdo z vás to má?
Garance 100% dostupnosti dat! Kdo z vás to má?Garance 100% dostupnosti dat! Kdo z vás to má?
Garance 100% dostupnosti dat! Kdo z vás to má?MarketingArrowECS_CZ
 
Putting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallPutting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallCisco Canada
 
Brocade Ethernet Fabrics and the ODDC
Brocade Ethernet Fabrics and the ODDCBrocade Ethernet Fabrics and the ODDC
Brocade Ethernet Fabrics and the ODDCEMC Nederland
 
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...Cisco Canada
 
Enterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANEnterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANToshal Dudhwala
 
SDN in the Enterprise
SDN in the EnterpriseSDN in the Enterprise
SDN in the EnterpriseCisco Canada
 
Maximize Application Performance and Bandwidth Efficiency with WAN Optimization
Maximize Application Performance and Bandwidth Efficiency with WAN OptimizationMaximize Application Performance and Bandwidth Efficiency with WAN Optimization
Maximize Application Performance and Bandwidth Efficiency with WAN OptimizationCisco Enterprise Networks
 
High-performance 32G Fibre Channel Module on MDS 9700 Directors:
High-performance 32G Fibre Channel Module on MDS 9700 Directors:High-performance 32G Fibre Channel Module on MDS 9700 Directors:
High-performance 32G Fibre Channel Module on MDS 9700 Directors:Tony Antony
 
Presentation network design and security for your v mware view deployment w...
Presentation   network design and security for your v mware view deployment w...Presentation   network design and security for your v mware view deployment w...
Presentation network design and security for your v mware view deployment w...solarisyourep
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StoryCisco Enterprise Networks
 
Cisco storage networking protect scale-simplify_dec_2016
Cisco storage networking   protect scale-simplify_dec_2016Cisco storage networking   protect scale-simplify_dec_2016
Cisco storage networking protect scale-simplify_dec_2016Tony Antony
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016ADVA
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)Cisco Canada
 

What's hot (20)

Silver peak acceleration, agility and velocity
Silver peak   acceleration, agility and velocitySilver peak   acceleration, agility and velocity
Silver peak acceleration, agility and velocity
 
Senior network security engineer
Senior network  security  engineerSenior network  security  engineer
Senior network security engineer
 
Technical overview of new cisco catalyst multigigabit switches
Technical overview of new cisco catalyst multigigabit switchesTechnical overview of new cisco catalyst multigigabit switches
Technical overview of new cisco catalyst multigigabit switches
 
Garance 100% dostupnosti dat! Kdo z vás to má?
Garance 100% dostupnosti dat! Kdo z vás to má?Garance 100% dostupnosti dat! Kdo z vás to má?
Garance 100% dostupnosti dat! Kdo z vás to má?
 
Putting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation FirewallPutting Firepower Into The Next Generation Firewall
Putting Firepower Into The Next Generation Firewall
 
Brocade Ethernet Fabrics and the ODDC
Brocade Ethernet Fabrics and the ODDCBrocade Ethernet Fabrics and the ODDC
Brocade Ethernet Fabrics and the ODDC
 
Protection and Visibitlity of Encrypted Traffic by F5
Protection and Visibitlity of Encrypted Traffic by F5Protection and Visibitlity of Encrypted Traffic by F5
Protection and Visibitlity of Encrypted Traffic by F5
 
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
 
Enterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANEnterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WAN
 
SDN in the Enterprise
SDN in the EnterpriseSDN in the Enterprise
SDN in the Enterprise
 
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WANMoving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
 
Maximize Application Performance and Bandwidth Efficiency with WAN Optimization
Maximize Application Performance and Bandwidth Efficiency with WAN OptimizationMaximize Application Performance and Bandwidth Efficiency with WAN Optimization
Maximize Application Performance and Bandwidth Efficiency with WAN Optimization
 
High-performance 32G Fibre Channel Module on MDS 9700 Directors:
High-performance 32G Fibre Channel Module on MDS 9700 Directors:High-performance 32G Fibre Channel Module on MDS 9700 Directors:
High-performance 32G Fibre Channel Module on MDS 9700 Directors:
 
Presentation network design and security for your v mware view deployment w...
Presentation   network design and security for your v mware view deployment w...Presentation   network design and security for your v mware view deployment w...
Presentation network design and security for your v mware view deployment w...
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success Story
 
Cisco storage networking protect scale-simplify_dec_2016
Cisco storage networking   protect scale-simplify_dec_2016Cisco storage networking   protect scale-simplify_dec_2016
Cisco storage networking protect scale-simplify_dec_2016
 
Vx9000 datasheet
Vx9000 datasheetVx9000 datasheet
Vx9000 datasheet
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016
 
SD WAN
SD WANSD WAN
SD WAN
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 

Similar to Barracuda_NG_Firewall_Profile

Web filterdatasheet us
Web filterdatasheet usWeb filterdatasheet us
Web filterdatasheet uskizado
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANRobb Boyd
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...SWITCHPOINT NV/SA
 
Putting Firepower into the Next Generation Firewall
Putting Firepower into the Next Generation FirewallPutting Firepower into the Next Generation Firewall
Putting Firepower into the Next Generation FirewallCisco Canada
 
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Canada
 
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
Cisco connect winnipeg 2018   putting firepower into the next generation fire...Cisco connect winnipeg 2018   putting firepower into the next generation fire...
Cisco connect winnipeg 2018 putting firepower into the next generation fire...Cisco Canada
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'OpenStack Korea Community
 
Barracuda ng firewall
Barracuda ng firewallBarracuda ng firewall
Barracuda ng firewallKappa Data
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Aliza Ayub
 
Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Iqra Hameed
 
Banv meetup-contrail
Banv meetup-contrailBanv meetup-contrail
Banv meetup-contrailnvirters
 
Building the SD-Branch using uCPE
Building the SD-Branch using uCPEBuilding the SD-Branch using uCPE
Building the SD-Branch using uCPEMichelle Holley
 
Cisco Connect Halifax 2018 Putting firepower into the next generation firewall
Cisco Connect Halifax 2018   Putting firepower into the next generation firewallCisco Connect Halifax 2018   Putting firepower into the next generation firewall
Cisco Connect Halifax 2018 Putting firepower into the next generation firewallCisco Canada
 
Barracuda Web Filter Ip 20100629
Barracuda Web Filter Ip 20100629Barracuda Web Filter Ip 20100629
Barracuda Web Filter Ip 20100629Carolynrahn
 
Banv meetup 04162014
Banv meetup 04162014Banv meetup 04162014
Banv meetup 04162014ozkan01
 
Riverbed Within Local Gov
Riverbed Within Local GovRiverbed Within Local Gov
Riverbed Within Local Govmichaelking
 
Wx Customer Preso
Wx Customer PresoWx Customer Preso
Wx Customer Presofaiiqb
 
Zero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeZero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeRebekah Rodriguez
 

Similar to Barracuda_NG_Firewall_Profile (20)

Web filterdatasheet us
Web filterdatasheet usWeb filterdatasheet us
Web filterdatasheet us
 
2500 controller
2500 controller2500 controller
2500 controller
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
Putting Firepower into the Next Generation Firewall
Putting Firepower into the Next Generation FirewallPutting Firepower into the Next Generation Firewall
Putting Firepower into the Next Generation Firewall
 
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
 
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
Cisco connect winnipeg 2018   putting firepower into the next generation fire...Cisco connect winnipeg 2018   putting firepower into the next generation fire...
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
Barracuda ng firewall
Barracuda ng firewallBarracuda ng firewall
Barracuda ng firewall
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-
 
Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-Barracuda_Spam_Firewall_profile-
Barracuda_Spam_Firewall_profile-
 
Banv meetup-contrail
Banv meetup-contrailBanv meetup-contrail
Banv meetup-contrail
 
Building the SD-Branch using uCPE
Building the SD-Branch using uCPEBuilding the SD-Branch using uCPE
Building the SD-Branch using uCPE
 
Cisco Connect Halifax 2018 Putting firepower into the next generation firewall
Cisco Connect Halifax 2018   Putting firepower into the next generation firewallCisco Connect Halifax 2018   Putting firepower into the next generation firewall
Cisco Connect Halifax 2018 Putting firepower into the next generation firewall
 
Barracuda Web Filter Ip 20100629
Barracuda Web Filter Ip 20100629Barracuda Web Filter Ip 20100629
Barracuda Web Filter Ip 20100629
 
Banv meetup 04162014
Banv meetup 04162014Banv meetup 04162014
Banv meetup 04162014
 
Riverbed Within Local Gov
Riverbed Within Local GovRiverbed Within Local Gov
Riverbed Within Local Gov
 
Wx Customer Preso
Wx Customer PresoWx Customer Preso
Wx Customer Preso
 
Zero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeZero Trust for Private 5G and Edge
Zero Trust for Private 5G and Edge
 

Barracuda_NG_Firewall_Profile

  • 1. Enterprise networks grow larger and more complex every day - and more critical to key business operations. The Barracuda NG Firewall is an essential tool to optimize the performance, security, and availability of today's dispersed enterprise WANs. Barracuda NG Firewall The Barracuda Advantage Effective WAN Management • Application-based traffic prioritization across the WAN • Intelligent uplink balancing • Intelligent traffic re-prioritization on uplink loss Enterprise Readiness • Industry-leading centralized management • WAN optimization • Global WAN monitoring with Barracuda NG Earth Scalable Security • Cloud Enablement and secure WAN Virtualization • Drag-and-drop VPN graphical tunnel interface Product Spotlight • Powerful next-generation network firewall • Advanced Threat Detection • Built-in web security and IDS/IPS • Dynamic mesh site-to-site VPN • Full application visibility and granular control • Intelligent traffic regulation including application-based provider selection • Tightly integrated Quality of Service (QoS) and link balancing • Centralized management of all functionality • Template-based and role-based configuration Recently I tried one of these dedicated products to protect of advanced persistent threats. After one month of extensive monitoring it turned out that our Barracuda NG Firewalls protect our infrastructures so well, that we can continue to focus on actual business problems. Having chosen the right firewall still saves us money and time every day. Chief Information Officer Union of Turkish Bar Associations Scalable Security for the Enterprise Integrated Next-Generation Security The Barracuda NG Firewall is designed and built from the ground up to provide comprehensive, next-generation firewall capabilities. Cloud-hosted content filtering and reporting offload compute-intensive tasks to the cloud for greater resource efficiency and throughput. Based on application visibility, user-identity awareness, intrusion prevention, and centralized management, the Barracuda NG Firewall is the ideal solution for today’s dynamic enterprises. Regaining Control of User Activity The Barracuda NG Firewall restores control to networks made opaque and unmanageable by mobile devices at work, Web 2.0 applications, increasing dispersion, and the growing integration and dependence on cloud- based resources. It extends security coverage beyond network boundaries, and makes it easy to monitor and regulate everything the network and its users are doing. True Enterprise Readiness The Barracuda NG Firewall meets the enterprise requirements for massive scalability and efficient management across distributed networks. Integrated WAN optimization and dedicated centralized management appliances enable organizations to increase system availability while keeping administrative time and operation costs low. The Barracuda NG Firewall dashboard provides real-time information and summaries of what is going on in an organization's network. Security Storage Application Delivery Productivity
  • 2. Barracuda Networks • Barracuda NG Firewall: Scalable Security for the Enterprise Datasheet US 3.3 • Copyright © Barracuda Networks, Inc. • 3175 S. Winchester Blvd., Campbell, CA 95008 • 408-342-5400/888-268-4772 (US & Canada) • www.barracuda.com Barracuda Networks and the Barracuda Networks logo are registered trademarks of Barracuda Networks, Inc. in the United States. All other names are the property of their respective owners. Technical Specs Firewall • Stateful packet inspection and forwarding • Full user-identity awareness • Intrusion Detection and Prevention System (IDS/IPS) • Application control and granular application enforcement • Interception and decryption of SSL/ TLS encrypted applications • Antivirus and web filtering in single pass mode • SafeSearch enforcement • YouTube for Schools support • Denial of Service protection (DoS/DDoS) • Spoofing and flooding protection • ARP spoofing and trashing protection • DNS reputation filtering • TCP stream reassembly • Transparent proxying (TCP) • NAT (SNAT, DNAT), PAT • Dynamic rules / timer triggers • Single object-oriented rule set for routing, bridging, and routed bridging • Virtual rule test environment User Identity Awareness • Terminal Server Agent • Domain Controller Agent • Authentication – supports x.509, NTLM, RADIUS, RSA SecurID, LDAP/LDAPS, Active Directory, TACACS+, SMS Passcode (VPN), local authentication database • WiFi Access Point Authentication support Intrusion Detection and Prevention • Protection against exploits, threats and vulnerabilities • Packet anomaly and fragmentation protection • Advanced anti-evasion and obfuscation techniques • Automatic signature updates Traffic Optimization • Link monitoring, aggregation, and failover • Dynamic routing • Application-based provider selection • Traffic shaping and QoS • On-the-fly flow reprioritization • Stream and packet compression • Byte-level data deduplication • Protocol optimization (SMBv2) Advanced Threat Detection • Dynamic, on-demand analysis of malware programs (sandboxing) • Dynamic analysis of documents with embedded exploits (PDF, Office, etc.) • Detailed forensics for both, malware binaries and web threats (exploits) • Support for multiple operating systems (Windows, Android, etc.) • Flexible malware analysis in the cloud VPN • Drag & drop VPN tunnel configuration • Secure site-to-site, client-to-site VPN • Dynamic mesh site-to-site VPN • Supports AES-128/256, 3DES, DES, Blowfish, CAST, null ciphers • Private CA or external PKI • VPNC certified (basic interoperability) • Application-aware traffic routing • IPsec VPN / SSL VPN / TINA VPN/ L2TP / PPTP • Network Access Control • iOS and Android mobile device VPN support High Availability • Active-active (requires external load balancer) or active-passive • Transparent failover without session loss • Network notification of failover • Encrypted HA communication Central Management Options • Barracuda NG Control Center –– Unlimited firewalls –– Support for multi-tenancy –– Multi-administrator support & RCS Infrastructure Services • DHCP server, relay • SIP, HTTP, SSH, FTP proxies • SNMP and IPFIX support • DNS Cache • SMTP gateway and SPAM filter • Wi-Fi (802.11n) access point on selected models Protocol Support • IPv4, IPv6 • BGP/OSPF/RIP • VoIP (H.323, SIP, SCCP [skinny]) • RPC protocols (ONC-RPC, DCE-RPC) • 802.1q VLAN Support Options Barracuda Energize Updates • Standard technical support • Firmware updates • IPS signature updates • Application control definition updates • Web filter updates Instant Replacement Service • Replacement unit shipped next business day • 24/7 technical support • Free hardware refresh every four years Security Options • Advanced Threat Detection • Web Filter • Malware Protection • Clientless SSL VPN • Network Access Control (NAC) clients validating client's workstation health status MODEL COMPARISON F10 F100 F101 F200 F201 F280 F300 F301 F380 F400 F600 F800 F900 F1000 SUBMODELS SUBMODELS SUBMODELS SUBMODELS SUBMODELS STD F20 C10 C20 F10 F20 E20 CCC CCF CCE CCC CCE CFE CE0 CE2 CFE CAPACITY Firewall Throughput1 300 Mbps 300 Mbps 650 Mbps 1.6 Gbps 680 Mbps 3.8 Gbps 5.0 Gbps 16.3 Gbps5 19.6 Gbps5 22.2 Gbps5 40 Gbps5 VPN Throughput2 85 Mbps 85 Mbps 120 Mbps 310 Mbps 370 Mbps 750 Mbps 960 Mbps 2.3 Gbps5 6.8 Gbps5 7.6 Gbps5 10 Gbps5 IPS Throughput1 60 Mbps 60 Mbps 115 Mbps 450 Mbps 125 Mbps 1.1 Gbps 1.5 Gbps 3.9 Gbps5 4.8 Gbps5 5.4 Gbps5 10 Gbps5 Concurrent Sessions 2,000 8,000 35,000 100,000 70,000 200,000 310,000 2,000,0005 2,500,0005 2,800,0005 4,000,0005 New Session/s 1,000 1,500 2,500 9,000 2,500 9,500 16,000 110,0005 150,0005 160,0005 200,0005 HARDWARE Form Factor Desktop mini Desktop 1U rack mount 2U rack mount Copper Ethernet NICs 4x1 GbE 4x1 GbE 4x1 GbE 4x1 GbE 4x1 GbE+ 4x1 10/100 8x1 GbE 8x1 GbE 8x1 GbE 12x1 GbE 8x1 GbE 8x1 GbE 20x1 GbE 12x1 GbE 12x1 GbE 24x1 GbE 16x1 GbE 8x1 GbE 16x1 GbE 32x1 GbE 16x1 GbE 1 GbE Fiber NICs (SFP) 4x1 GbE 4x1 GbE 4x1 GbE 8x1 GbE 16x1 GbE 10 GbE Fiber NICs (SFP+) 2x10 GbE 4x10 GbE 4x10 GbE 4x10 GbE 4x10 GbE 8x10 GbE 8x10 GbE Power Supply Single (ext.) Single Dual6 Single7 Dual6 FEATURES Firewall • • • • • • • • • • • Application Control3 • • • • • • • • • • • IPS3 • • • • • • • • • • • Dynamic Routing • • • • • • • • • • • VPN • • • • • • • • • • • SSL Interception • • • • • • • • • WAN Optimization • • • • • • • • • Spam Filter • • • • • • • • • Web Filter • • • • • • • • • • Malware Protection Optional Optional Optional Optional Optional Optional Optional Optional Optional Optional Advanced Threat Detection4 Optional Optional Optional Optional Optional Optional Optional Optional Optional Clientless SSL VPN Optional Optional Optional Optional Optional Optional Optional Optional Optional Network Access Control Optional Optional Optional Optional Optional Optional Optional Optional Optional 1 Measured with large packets (MTU1500) 2 VPN throughput using AES128 NOHASH 3 Requires Energize Updates subscription. 4 Requires Malware Protection subscription. 5 Measured with 10GbE fiber ports 6 Internal dual hot swap power supply 7 Internal dual hot swap power supply optional. Specifications subject to change without notice.