It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda SecureEdge

How to Create an Inline Bridge on a Stand-Alone Site

  • Last updated on

Barracuda SecureEdge Manager allows you to create an inline bridge setup for a new stand-alone site by bridging a WAN with a LAN during initial deployment via the setup wizard.  You can also edit or configure an inline bridge deployment later through the Sites tab. Inline bridges are available only for stand-alone sites, which includes both HA and non-HA. 

If you have virtual appliances hosted on VMWare ESXi, interfaces used for a bridge must be configured in the Security policies to allow promiscuous mode at the portgroup level.

Create an Inline Bridge 

  1. Go to https://se.barracudanetworks.com and log in with your existing Barracuda Cloud Control account.

  2. In the left menu, click the Tenants/Workspaces icon and select the workspace your appliance should be assigned to.
  3. Go to Infrastructure > Sites. The Sites page opens.
  4. To create a new site configuration, click New Site.
    NewSite.png
  5. The New Site Basic Information blade opens. Enter values for the following:
    • Name – Enter the name of the site.
    • Edge Service – Select (None).
    • Root Password – Enter the root password.
    • Confirm Root Password – Retype the root password to confirm.
      Basic-Info.png
  6. Click Next. The Site Appliances blade opens.
    Site-Appliance.png

    If your appliance is not listed, you can add it by using the serial number and the linking code found on the back of the Quick Start Guide delivered with your appliance.

  7. Select your appliance from the list of appliances linked to your account. For a high availability cluster, select two appliances. For more information on high availability, see High Availability. Note: After ordering, it might take up to 3 hours before your device is listed.

  8. Click Add missing site appliance by serial and linking code/license token
  9. Then, specify values for the following:
    • Serial – Enter the serial number of your appliance.
    • Code/Token – Enter the linking code (located on the back of the Quick Start Guide shipped with your hardware appliance), or the token of your VTx appliance.
      serial_token_gw90.png
  10. Click Add to add the device to your account.
  11. Click Next. The WANs blade opens.
  12. Select the number of desired WAN connections from the drop-down list.
    WANs.png
  13. Click Next. The Configure WAN link blade opens.
  14. Specify values for the following:
    • Name – Enter a unique name for your WAN link.
    • Type – Select Bridge from the drop-down list.
    • WAN Port – Select the WAN port from the drop-down list. Note: Port 1 is reserved for High Availability. For example, in this case, the selected WAN port = P2.
    • IP Address – Enter the network IP address assigned to the appliance.
    • Netmask – Enter the CIDR netmask suffix.

    • Gateway – Enter the gateway IP address.

    • LAN Ports – Enter the LAN ports this interface is connected to. For example, in this case, the selected LAN port = P6.
    • Provider Pinning – Select a provider classification from the drop-down list.
      InlineBridge-conf.png
  15. Click Next. The LANs blade opens.
  16. Select the number of desired LAN connections from the drop-down list. 
    LANs.png
  17. Click Next. The Advanced Settings blade opens.
  18. Specify values for the following:
    • Update Window Timezone – Select Dynamic from the drop-down list, or select the time zone where the box is located.
    • Primary DNS – Enter the IP address of the primary DNS server.
    • Secondary DNS – Enter the IP address of the secondary DNS server.
      AdvSettings.png
  19. Click Next. The Summary blade opens.
    Summary.png
  20. Review your specifications. If everything is correct, click Save.
  21. After your site configuration has been created successfully, click Finish.

The appliance will automatically apply the configuration upon its first boot.

To allow network traffic to pass between the bridged interfaces, you must define a Policy Profiles rule for every bridged interface group. After configuration is complete, you can see a bridge is created across selected ports P2 (WAN) and P6 (LAN), and the network traffic flows between your client(s) and the internet. Bridges can now be used in the same way as LANs are used in security policies.