It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda CloudGen Firewall

8.0.2 Migration Notes

  • Last updated on
Barracuda Firewall Admin

After updating a system, you must also download Firewall Admin with the same version. Firewall Admin is backward-compatible. That means you can manage 7.x and 8.x F-Series Firewalls and Control Centers with Firewall Admin 8.x.

Always use the latest version of Barracuda Firewall Admin.


Important Note for Users operating Firmware 7.2.5 or 7.2.6


Ensure that the partition layout of your firewall/Control Center applies to the values in the table of paragraph Disk Space Requirements of the article Migrating from 7.x - 8.0.0 to 8.0.2.

  1. If you operate a firewall that was shipped from the factory with firmware 7.2.6 or if you have already repartitioned the hard disk and performed a fresh install of firmware 7.2.6, then the hard disk already has a partition layout that is suitable for firmware 8.x.
    In this case you can upgrade directly to firmware 8.x without repartitioning the hard disk.
  2. If you operate a firewall with firmware version <= 7.2.5, you must repartition the hard disk with the layout listed in Migrating from 7.x - 8.0.0 to 8.0.2 and fresh install firmware 7.2.6. After that, you can update to 8.x without repartitioning.

If you are using the SCA Editor for your SCs and also operate VPN tunnels via GTI, do not migrate the Server-Service Node to the new Assigned Services Node!

This is because of a known issue that will be fixed in the next upcoming firmware release.

Read the Release Notes, especially the Known Issues section, for the firmware version that you want to update to.

For more information, see 8.0.2 Release Notes.

New Network Object "VPN Next Hop IPs"

Unlike firewalls that are running with a fresh 8.0.2 installation, upgraded boxes do not contain the new network object *VPN Next Hop IPs*.

Update the list of network objects as the last step after the migration and follow the instruction in the paragraph "Update List of Dynamic Network Objects" below.

Migration Path to 8.0.2

You can upgrade to firmware 8.0.2 from the following firmware versions.

Follow the instructions in the respective migration article in the table before continuing.
Current Version
Target Version 8.0.2
Follow Migration Instructions
7.0.0 - 7.0.4




Migrating from 7.x - 8.0.0 to 8.0.2

7.1.0 EA - 7.1.5Yes
7.2.0 - 7.2.5
8.0.1YesMigrating from 8.0.1 to 8.0.2

Update List of DYNAMIC Network Objects

In order to update the DYNAMIC object list, the network object VPN Next Hop IPs must be copied from the default set. This is done as follows:

  1. Log into your firewall.
  2. In the configuration tree, expand the node Box > Infrastructure Services.
  3. Right-click Host Firewall Rules.
  4. Click Lock.
  5. Right-click Host Firewall Rules.
  6. From the list, select Copy from Default.
  7. Send Changes / Activate.


This measurement will update the following:

  1. The list of DYNAMIC network objects at Box > Infrastructure Services > Host Firewall Rules > Networks:
  2. The Host Firewall ruleset:
Last updated on