It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda SecureEdge

Barracuda Campus is getting an upgrade!

We are excited to announce that Barracuda Campus will migrate to a new platform around mid-January 2026. Please see the announcement on the Campus Dashboard to find out more.

How to Configure a SecureEdge Access Agent Network

  • Last updated on

Barracuda SecureEdge Access allows administrators to configure custom Access Agent networks with respect to each Private Point of Presence. The Barracuda SecureEdge Access Agent running on the client connects to the SecureEdge unified cloud UI. In addition, you can enforce agent web filtering policies to the web traffic that the clients connect to via the SecureEdge Access Agent in order to establish a secure connection to access internal and external company resources.

It is recommended to provide a larger or more suitable client network range in the Access Agent Network configuration. Failing to do so may result in the network pool not being assigned. In addition, it is important to note that even though SecureEdge devices such as Sites or Edge Services are not explicitly configured as Private Point of Presence (PoE), they are still included in the pool calculations.

Configure Access Agent Network 

  1. Go to https://se.barracudanetworks.com and log in with your existing Barracuda Cloud Control account.

  2. The chosen Tenant/Workspace is displayed in the top menu bar.

    workspace-tenant.png
  3. From the drop-down menu, select the workspace your SecureEdge Access should be configured for.

  4. Go to Infrastructure > Settings

  5. Expand the Settings menu on the left and select Access Agent Network.

    sea-network.png

  6. The Access Agent Network page opens.

  7. In the Access Agent Network Configuration section, specify a value for the following:

    • Network DNS Suffix – Enter a DNS suffix to be used for your client network. 

    • Use Manual Configuration – Click to enable/disable.

      • If Use Manual Configuration is enabled, specify values for the following:

        • Device IP Range – Enter the device IP range. Note: If you enter 100.64.0.0/10 as your device IP range, or if you enter any public range, you will get an error.

        • Pool Bitmask – Enter the bitmask of the network pool to allocate each agent access point.

      • If Use Manual Configuration is disabled, you are not allowed to set any values.

        sea01-network.png

  8. Click Save.

  9. In the CloudGen Firewall Client Certificate section, click Download certificate.

    cgf-clientcert.png

  10. Install this root certificate on all your clients to assure parallel operations with CloudGen Firewall client-to-site and SecureEdge Access Agent.