We use cookies on our website to ensure we provide you with the best experience on our website. By using our website, you agree to the use of cookies for analytics and personalized content.This website uses cookies. More Information
It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda CloudGen Firewall

This Firmware Version Is End-Of-Support

Documentation for this product is no longer updated. Please see End-of-Support for CloudGen Firewall Firmware for further information on our EoS policy.

Public Cloud

  • Last updated on

The growth of cloud computing capabilities and services has driven more data into places where traditional IT security cannot reach - into the datacenters of public cloud providers. Cloud-based deployments can be in the form of a private cloud, in which the Barracuda NextGen Firewall F-Series acts as a gateway device, or in a public or hybrid cloud. You can secure instances in a public or hybrid cloud by deploying an F-Series Firewall as a virtual security device within your cloud environment. The F-Series Firewall uses application and user awareness combined with advanced bandwidth management to optimize WAN performance and reliability, thereby securely handling all incoming traffic for the backend server instances.

Microsoft Azure Cloud

Microsoft Azure is a public cloud service. The NextGen Firewall F-Series integrates into your Microsoft Azure virtual network by creating a network security gateway between Internet-facing endpoints and your virtual machines. Microsoft Azure Small and Medium instances use one virtual network interface with a dynamic IP address per virtual machine and can be deployed via web interface or a Microsoft PowerShell script. Large and Extra Large instances support two and four network interfaces, respectively, and must be deployed via PowerShell. There are two types of images available in the Marketplace: Bring-Your-Own-License (BYOL) and an hourly rate (PAYG). The NextGen Firewall F-Series Azure can be deployed on any Azure pricing tier. The F-Series license is bound to the number of CPU cores. Depending on the storage account type, you can add multiple data disks to the firewall VM to distribute I/O load. Barracuda Networks recommends the following Azure pricing tiers:

LicenseAzure Pricing TierNumber of CPU CoresNumber of NICs
NextGen Firewall F-Series Level 2A111
NextGen Firewall F-Series Level 4A221
NextGen Firewall F-Series Level 6A34up to 2
NextGen Firewall F-Series Level 8A48up to 4
Barracuda NextGen Control CenterA1 - A4n/a1

For more information, see Microsoft Azure Deployment.

Amazon Web Services (AWS)

Amazon AWS offers both virtual private and public cloud services. If you are deploying a virtual private cloud, the Barracuda NextGen Firewall F-Series AWS will act as a gateway device, just like in a traditional network. Internal IP addresses in the VPC can be static or dynamic; public IPs (Amazon Elastic IPs) are then mapped to the internal network interfaces. The AMI uses one dynamic network interface as a default configuration. Up to 9 additional Amazon network interfaces can be added, depending on the instance type, with a total of up to 100 network interfaces per VPC. These network interfaces can be connected to subnets in the virtual private cloud, with each subnet containing server instances hosted in a different availability zone of your choice. The F-Series Firewall also supports Amazon Enhanced Networking if deployed on Amazon instance types with support for this feature. There are two types of images available in the Marketplace: Bring-Your-Own-License (BYOL) and an hourly rate (PAYG). Starting with 6.1.1, both image types are available only in HVM virtualization type. The F-Series AWS is available in four different sizes:

NextGen Firewall F-Series LicenseAmazon Instance TypeNumber of vCPUsNumber of NICsIP per NICEnhanced Networking Support
Level 2m3.medium1up to 24No
Level 4m3.large2310No
 c3.large (recommended)2310Yes
Level 6m3.xlarge4410No
 c3.xlarge4415Yes
Level 8m3.2xlarge8430No
 c3.2xlarge8415Yes

For more information, see Amazon AWS Deployment.

Google Cloud Platform

Google Cloud Platform is a public cloud on Google's infrastructure. The F-Series Firewall can be deployed as a stand-alone Google Compute Engine instance to protect your cloud resources in the Google Cloud Platform. High availability clusters are not supported. The firewall is available as a BYOL image from the Barracuda Download Portal.

License typeNumber of vCPUsMinimum Memory (GB)
Level 212
Level 422
Level 642
Level 882

For more information, see How to Manually Upload and Deploy the F-Series Firewall in the Google Cloud.

Last updated on