Before You Begin
Syslog Streaming from Managed Boxes to the Control Center using TLS
As of firmware release 10.0, if you are using syslog streaming, you no longer can use SSLv3. You must use TLS 1.2 instead.
To continue syslog streaming from managed 8.x/9.x boxes to the Control Center, you must perform the following steps for each managed box:
Log into your Control Center at CC level.
Create a 2048-bit box certificate for every managed box that is using syslog streaming with TLS.
Copy the new box certificate to the clipboard.
Log into the Control Center at box level.
Go to CONFIGURATION > Config Tree > your range > your cluster > your box > Assigned Service > CC-Syslog-Service > CC Syslog Service > Trusted Data Reception.
Click Lock.
For TLS Protocol, select TLS 1.2 from the menu list.
For Trusted Clients, replace the old box certificate with the new one in your clipboard.
Click Send Changes/Activate.
Barracuda Firewall Admin
After updating a system, you must also download Firewall Admin with the same version. Firewall Admin is backward-compatible. That means you can manage 8.x and 9.x F-Series Firewalls and Control Centers with Firewall Admin 10.x.
For downloading Barracuda Firewall Admin for release 10.0.0, use this link: https://dlportal.barracudanetworks.com/#/packages/6190/FirewallAdmin_10.0.0-138.exe.
Supported Models for Firmware Version 10.0.0
The following models are capable of running firmware version 10.0.0:
Barracuda CloudGen F-Series and Control Center Models | |
---|---|
Hardware Systems | F12 Rev A, F18 Rev A/B, F80 Rev A/B, F82 Rev A, F93 Rev A, F180 Rev A/B, F183 Rev A, F183R Rev A, F193 Rev A, F280 Rev B/C, F380 Rev A/B, F400 Rev B/C, F600 Rev C/D, F800 Rev C/D, F900 Rev B/C, F1000 Rev A/B |
Virtual Systems | VF10, VF25, VF50, VF100, VF250, VF500, VF1000, VF2000, VF4000, VF8000, VC400, VC610, VC820 |
Virtual and Cloud Systems | VFC1, VFC2, VFC4, VFC6, VFC8, VFC16, VFC48 (model number represents number of supported cores) |
WWAN USB Modems | M40, M41, M42 |
Secure Connectors | SC20a, SC21a, SC22a, SC23a, SC24a/b, SC25a/b, SC26a, SC27a, SC28a, SC29a, SC30a, SC31a, SC34a, SC35a FSC20A, FSC21A, FSC24B, FSC25B, FSC30A, FSC31A, FSC34A, FSC35A |
Public Cloud | AWS, Azure, Google Cloud |
Virtual Platforms | VM-Ware, Hyper-V, XEN, KVM (Proxmox running with KVM images) |
Standard Hardware Systems | ||
---|---|---|
Standard Hardware | A standard hardware system is a Barracuda CloudGen Firewall F-Series running on 3rd-party server hardware using an SF license. Consult Barracuda Networks Technical Support to find out if your specific standard hardware is supported. |
Disk Space Requirements
Upgrading to version 10.0.0 requires your disk partitions to have enough free disk space. Firmware 10.0.0 requires the following partition spaces:
Disk Space Requirements FIREWALL
Hard Drive Partition | Disk Space Required |
swap | 2 GB |
boot | 1 GB |
/ | 15 GB |
/phion0 | 4 GB |
/art | 3 GB |
Disk Space Requirements CONTROL CENTER
Hard Drive Partition | Disk Space Required |
swap | 2 GB |
boot | 1 GB |
/ | 15 GB |
/phion0 | 4 GB |
/art | 10 GB |
Migration Path to 10.0.0
Depending on your current firmware version, there are 2 options for migrating to firmware version 10.0.0:
Current Operating Firmware | Update via | Target Firmware |
---|---|---|
8.x | 9.0.4 | 10.0.0 |
9.0.x | -> DIRECTLY -> | 10.0.0 |
If you are running firmware version 8.x on your appliance, you must first migrate to version 9.0.4.
For more information on how to migrate to firmware 9.0.4, see 9.0.4 Migration Notes.
Important Note before Upgrading to Release 10.0.0
The migration process to firmware version 10.0.0 will perform a large number of checks before the upgrade starts.
Migration Instructions for 10.0.0
If Migrating from Version 8.x
First migrate your firmware to 9.0.4 according to 9.0.4 Migration Notes.
Afterwards, continue as follows:
Migrate to Version 10.0.0
Download the appropriate download file.
If Migrating from Version 9.0.4 to 10.0.0
Go to the download portal https://dlportal.barracudanetworks.com/#/packages/6189/update.GWAY-10.0.0-0993.tgz.
Download the update package.
Start the Update
You can now update the CloudGen Firewall or Control Center.
For more information, see Updating CloudGen Firewalls and Control Centers.