Barracuda Cloud Generation Firewall

Scalable Security for Internet of Things Connectivity

Download PDF

Overview

Properly managing enterprise networks is critical to key business operations as more businesses adopt Internet of Things. As these networks grow larger and more complex, it’s important to implement robust security and performance of endpoint devices. Barracuda Cloud Generation Firewalls are an essential tool for optimizing the performance, security and availability of today's dispersed enterprise WANs.

The Barracuda Advantage

  • Quick rollout
  • Comprehensive reporting
  • Highly scalable
  • Fully compatible with Microsoft Azure, Amazon Web Services, and Google Cloud Platform

Product Spotlight

  • Powerful next-generation network firewall
  • Advanced Threat Protection (incl. sandboxing)
  • Built-in web security and IDS/IPS
  • Full application visibility and granular controls
  • Linux container for custom edge computing
  • Centralized management of all functionalities
  • Template-based and role-based configuration
  • Zero-Touch Deployment (for SC2 models)

Securing the Internet of Things

Barracuda Cloud Generation Firewalls are designed and built from the ground up to provide comprehensive, nextgeneration security while being simple to deploy and maintain, and highly scalable. Need to connect microoffices, point of sales and machine-to-machine business? With Barracuda Cloud Generation Firewalls you're all set!

Machine Access Security Broker

The Secure Access Controller acts as the connectivity and security enforcement hub for the data stream. The Secure Access Controller provides full next-generation firewall functionality and can be run on VMware, Hyper-V, XenServer, or KVM environments as well as directly in Microsoft Azure, Amazon Web Services, and Google Cloud Platform.

Easy to Setup and Maintain: Secure Connector

The Barracuda Secure Connector is a hardware appliance purpose-built to be an on-premises connectivity device that ensures high-performance and tamper-proof VPN connections to protect the data flow and, thus, guarantee data continuity.

Grows With Your Needs

Integration within the Barracuda Firewall Control Center architecture ensures that your deployment can grow with your needs without technical or financial trapdoors. The template-based configuration ensures easy rollout of additional devices and maintain compliance.

"With the Barracuda Secure Connectors the Wi-Fi access points on the public buses are secure, always connected to the datacenter and central management is no longer an issue"

- Frank van Tuyl, Consultant, ICT Vision B.V.

Technical Specs

Technical Specs

Firewall

  • Stateful packet inspection and forwarding
  • Full user-identity awareness
  • Intrusion Detection and Prevention System (IDS/IPS)
  • Application control and granular application enforcement
  • Interception and decryption of SSL/ TLS encrypted applications
  • Antivirus and web filtering in single pass mode
  • SafeSearch enforcement
  • Google accounts enforcement
  • Denial of Service protection (DoS/DDoS)
  • Spoofing and flooding protection
  • ARP spoofing and trashing protection
  • DNS reputation filtering
  • TCP stream reassembly
  • NAT (SNAT, DNAT), PAT
  • Dynamic rules / timer triggers
  • Single object-oriented rule set for routing, bridging, and routed bridging
  • Virtual rule test environment

Hypervisor and Public Cloud Support (for Secure Access Controller and Firewall Control Center)

  • VMware
  • Hyper-V
  • XenServer
  • KVM
  • Microsoft Azure
  • Amazon Web Services
  • Google Cloud Platform

Intrusion Detection and Prevention

  • Protection against exploits, threats and vulnerabilities
  • Packet anomaly and fragmentation protection
  • Advanced anti-evasion and obfuscation techniques
  • Automatic signature updates

Advanced Threat Protection

  • Dynamic, on-demand analysis of malware programs (sandboxing)
  • Dynamic analysis of documents with embedded exploits (PDF, Office, etc.)
  • Detailed forensics for both malware binaries and web threats (exploits)
  • Support for multiple operating systems (Windows, Android, etc.)
  • Flexible malware analysis in the cloud

High Availability

  • Active-passive
  • Transparent failover without session loss
  • Encrypted HA communication

VPN

  • Secure site-to-site
  • Supports AES-128/256, 3DES, DES, Blowfish, CAST, null ciphers

Central Management Options

  • Barracuda Firewall Control Center
    • Unlimited Secure Access Controller and Secure Connectors
    • Support for multi-tenancy
    • Multi-administrator support & RCS

Models & Options

Secure Connectors

SC1

  • Interfaces

  • 1x1 GbE WAN Copper NICs (PoE-recipient)1
  • 1x1 GbELAN Copper NICs (Switch)1
  • 1USB 2.0
  • 1Micro-USB OTG
  • WiFi (Access Point / Client Mode)
  • - 3G / UMTS support
  • Performance

  • 300 Mbps Firewall throughput (UDP)
  • 80 Mbps WiFi AP throughput (UDP)
  • 30 Mbps VPN throughput (AES-128, SHA)
  • Memory

  • 1 RAM [GB]
  • Mass Storage

  • Micro SD Type
  • 16 Size [GB]
  • Size, Weight, Dimensions

  • 0.35 Weight appliance [lbs]
  • 0.16Weight appliance [kg]
  • 1.11 x 5.2 x 3.73Appliance size (WxDxH) [in]
  • 28.3 x 132 x 94.7Appliance size (WxDxH) [mm]
  • Pocket SizeForm factor
  • Hardware

  • Fanless Cooling
  • Power supply

SC2.0

  • Interfaces

  • 1x1 GbE WAN Copper NICs (PoE-recipient)1
  • 3x1 GbELAN Copper NICs (Switch)1
  • 1USB 2.0
  • 1Micro-USB OTG
  • - WiFi (Access Point / Client Mode)
  • - 3G / UMTS support
  • Performance

  • 300 Mbps Firewall throughput (UDP)
  • - WiFi AP throughput (UDP)
  • 30 Mbps VPN throughput (AES-128, SHA)
  • Memory

  • 1 RAM [GB]
  • Mass Storage

  • Micro SD Type
  • 16 Size [GB]
  • Size, Weight, Dimensions

  • 1.21 Weight appliance [lbs]
  • 0.55Weight appliance [kg]
  • 1.5 x 5.5 x 5.9Appliance size (WxDxH) [in]
  • 37 x 140 x 150Appliance size (WxDxH) [mm]
  • Compact, Din railForm factor
  • Hardware

  • Fanless Cooling
  • Optional Power supply

SC2.1

  • Interfaces

  • 1x1 GbE WAN Copper NICs (PoE-recipient)1
  • 3x1 GbELAN Copper NICs (Switch)1
  • 1USB 2.0
  • 1Micro-USB OTG
  • WiFi (Access Point / Client Mode)
  • - 3G / UMTS support
  • Performance

  • 300 Mbps Firewall throughput (UDP)
  • 80 Mbps WiFi AP throughput (UDP)
  • 30 Mbps VPN throughput (AES-128, SHA)
  • Memory

  • 1 RAM [GB]
  • Mass Storage

  • Micro SD Type
  • 16 Size [GB]
  • Size, Weight, Dimensions

  • 1.31 Weight appliance [lbs]
  • 0.6Weight appliance [kg]
  • 1.5 x 5.5 x 5.9Appliance size (WxDxH) [in]
  • 37 x 140 x 150Appliance size (WxDxH) [mm]
  • Compact, Din railForm factor
  • Hardware

  • Fanless Cooling
  • Optional Power supply

SC2.2

  • Interfaces

  • 1x1 GbE WAN Copper NICs (PoE-recipient)1
  • 3x1 GbELAN Copper NICs (Switch)1
  • 1USB 2.0
  • 1Micro-USB OTG
  • - WiFi (Access Point / Client Mode)
  • 3G / UMTS support
  • Performance

  • 300 Mbps Firewall throughput (UDP)
  • - WiFi AP throughput (UDP)
  • 30 Mbps VPN throughput (AES-128, SHA)
  • Memory

  • 1 RAM [GB]
  • Mass Storage

  • Micro SD Type
  • 16 Size [GB]
  • Size, Weight, Dimensions

  • 1.31 Weight appliance [lbs]
  • 0.6Weight appliance [kg]
  • 1.5 x 5.5 x 5.9Appliance size (WxDxH) [in]
  • 37 x 140 x 150Appliance size (WxDxH) [mm]
  • Compact, Din railForm factor
  • Hardware

  • Fanless Cooling
  • Optional Power supply

SC2.3

  • Interfaces

  • 1x1 GbE WAN Copper NICs (PoE-recipient)1
  • 3x1 GbELAN Copper NICs (Switch)1
  • 1USB 2.0
  • 1Micro-USB OTG
  • WiFi (Access Point / Client Mode)
  • 3G / UMTS support
  • Performance

  • 300 Mbps Firewall throughput (UDP)
  • 80 Mbps WiFi AP throughput (UDP)
  • 30 Mbps VPN throughput (AES-128, SHA)
  • Memory

  • 1 RAM [GB]
  • Mass Storage

  • Micro SD Type
  • 16 Size [GB]
  • Size, Weight, Dimensions

  • 1.43 Weight appliance [lbs]
  • 0.65Weight appliance [kg]
  • 1.5 x 5.5 x 5.9Appliance size (WxDxH) [in]
  • 37 x 140 x 150Appliance size (WxDxH) [mm]
  • Compact, Din railForm factor
  • Hardware

  • Fanless Cooling
  • Optional Power supply

SAC - Edition2

SAC400

  • unlimited Number of Protected IPs
  • 2Allowed Cores
  • 500Max. number of VPN Connections
  • Firewall
  • Application Control3
  • IPS3
  • Dynamic Routing
  • VPN4
  • SSL Interception
  • Web Filter
  • OptionalMalware Protection5
  • OptionalAdvanced Threat Protection5

SAC400

  • unlimited Number of Protected IPs
  • 4Allowed Cores
  • 1,200Max. number of VPN Connections
  • Firewall
  • Application Control3
  • IPS3
  • Dynamic Routing
  • VPN4
  • SSL Interception
  • Web Filter
  • OptionalMalware Protection5
  • OptionalAdvanced Threat Protection5

SAC400

  • unlimited Number of Protected IPs
  • 8Allowed Cores
  • 2,500Max. number of VPN Connections
  • Firewall
  • Application Control3
  • IPS3
  • Dynamic Routing
  • VPN4
  • SSL Interception
  • Web Filter
  • OptionalMalware Protection5
  • OptionalAdvanced Threat Protection5
1. Notations “PoE-recipient” and “Switch” apply for SC2.x models only.
2. Barracuda Secure Access Controller virtual image covers all editions.
3. Requires a valid Energize Updates subscription.
4. Barracuda Secure Access Controller editions include as many VPN licenses as the number of protected IPs. VPN clients with an active connection to the SAC are counted towards the protected IP limits.
5. Including FTP, mail and Web protocols.

Support Options

Barracuda Energize Updates

  • Standard technical support
  • Firmware updates
  • IPS signature updates
  • Application control definition updates
  • Web filter updates