It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda CloudGen Firewall

This Firmware Version Is End-Of-Support

Documentation for this product is no longer updated. Please see End-of-Support for CloudGen Firewall Firmware for further information on our EoS policy.

Getting Started - Control Center for Microsoft Azure

  • Last updated on

The Barracuda NextGen Control Center for Microsoft Azure is available as a Bring Your Own License (BYOL) image from the Azure Marketplace or as a VHD from the Barracuda Download Portal. It includes two preconfigured ranges. By default, the Azure range is configured with a cluster for each Azure datacenter. The Control Center can manage both on-premise hardware and virtual units, as well as F-Series Firewalls in the public cloud. It is not possible to use the Azure Control Center in a high availability cluster.

In this article

Before you Begin

Step 1. Set a Static IP Address for the Control Center VM

You must reserve the internal IP address of your Control Center VM because managed F-Series Firewalls expect the IP address of the Control Center to be static. For deployments using Azure Service Manager, see Reserved, Static and Public IP Addresses in the Azure Cloud using ASM.

Step 2. Export the Base License on Box Layer

  1. Log into the box layer of the Control Center.
  2. Open the CONFIGURATION > Configuration Tree > Box > Box Licenses page.
  3. Click Lock.
  4. In the Licenses table, select the Base License and click Im/ Export and select Export to clipboard or Export to File.

Step 3. Configure CC Identification Settings

The CC Identification settings are required to secure communication between the Control Center and the F-Series Firewalls it manages.

  1. Log into the Control Center.
  2. Click Trust.
  3. Go to CONFIGURATION > Configuration Tree > Multi-Range > Global Settings > CC Identity. The This Connection is Untrusted popup opens.
  4. Click No.
  5. Click Lock.
  6. In the CC Identification section, click Import and select Import from Clipboard or Import from File to import the base license exported in step 3.
  7. In the Organization field, enter your organization name.
  8. In the left menu, click Trust Chain.
  9. Define the keys and certificates required for secure communication between the Control Center and the F-Series Firewalls that it will manage:
  • CC Private Key – Click New Key and specify the key length.
  • CC Certificate – Click Edit and specify the certificate settings.
  • CC SSH Key – Click New Key and specify the key length.
  • Click Send Changes and Activate.
  • Step 4. (optional) Complete the Auto Activation Form

    To automatically activate managed F-Series Firewall licenses, you must enter the data for the auto-activation form once.

    1. Log into the Control Center.
    2. Go to CONFIGURATION > Configuration Tree > Multi-Range > Global Settings > CC Parameters.
    3. In the left menu, select Activation Template.
    4. Click Lock.
    5. Enter the Owner and Purchase Information.
    6. Click Send Changes and Activate.

    Next Steps

    Continue with the steps below to set up the Control Center in Microsoft Azure according to your needs.

    Create AdminsControl Center Admins
    Configure Central Management
    Add Managed F-Series Firewalls
    License Managed F-Series Firewalls

    Revision Control System (RCS)

    Revision Control System (RCS)
    Modify Azure Route tables for VIP networkAzure Networking
    Last updated on