It seems like your browser didn't download the required fonts. Please revise your security settings and try again.


As of March 1, 2022, the legacy Barracuda Essentials Security, Compliance, and Complete editions are no longer available for purchase. Only existing customers can renew or add users to these plans.

Following October 30, 2022, the documentation and trainings will no longer be updated and will contain outdated information.

For more information on the latest Email Protection plans, see Barracuda Email Protection.

To update your bookmarks, see the following for the latest documentation and trainings:

Note that MSP customers should continue to follow Barracuda Essentials for MSPs.

How to Configure the Barracuda Email Security Service App in Azure AD

  • Last updated on

With Azure Active Directory (AD) Single Sign-On (SSO), users sign in once using their primary organizational account to securely access web and SaaS applications. SSO enables users to authenticate to applications using their single organizational account.

The SSO environment protects defined resources (websites and applications) by requiring the following steps before granting access:

  1. Authentication: Authentication verifies the identity of a user using login credentials.
  2. Authorization: Authorization applies permissions to determine if this user may access the requested resource.

Adding the Barracuda Email Security Service (ESS) app to Azure AD allows end-users to sign in using their Azure AD credentials. Once logged in, users can view their quarantine messages.

Add the ESS App 

To add the ESS app in Azure AD:

  1. Log into the Azure portal as an admin for the directory.
  2. Select Azure Active Directory under Azure services.
  3. Select Enterprise applications in the left-hand menu.
  4. On the Enterprise applications - All applications pane, select New application.
  5. Type in "Barracuda" in the search box. Select Barracuda Email Security Service.
  6. Click Sign up for Barracuda Email Security Service.
    Note: The Add button is disabled by default. Clicking the link adds the ESS app to your enterprise applications.



  7. Check the Consent on behalf of your organization box. Click Accept.  



    You are redirected to the ESS end user page where you are logged into ESS.

    Errors such as "Unable to log in. Domain does not exist." and "Invalid client" might appear if your domain does not yet exist on ESS. The ESS app is still added successfully into your enterprise applications.

  8. To check that the ESS app is added to your enterprise applications, go back to the Enterprise applications - All applications page and refresh the page. You should now see the ESS app in the list.

Assign a User to the ESS App

To assign a user to the ESS app in Azure AD:

  1. Log into the Azure portal as an admin for the directory.
  2. Select Azure Active Directory under Azure services.
  3. Select Enterprise applications in the left-hand menu.
  4. On the  Enterprise applications - All applications  pane, you see a list of the apps you can manage. Select Barracuda Email Security Service.
  5. On the Barracuda Email Security Service - Overview pane, select Assign users and groups
  6. On the Barracuda Email Security Service - Users and groups  pane, select Add User.
  7. On the Add Assignment pane, select Users

  8. On the Users pane, select one or more users and then click Select at the bottom.
  9. On the Add Assignment pane, click Assign. The assigned users now have the permissions to sign into the ESS app on their Azure account.

Users with permissions to access the ESS app can now log in and see the app in the My Apps portal. 

Access the ESS App

To access the ESS app in the Microsoft My Apps portal:

  1. Log into with your Azure AD credentials. 
    The  Apps page appears with the apps available for your account, including the ESS app. 

  2. Click the Barracuda Email Security Service app. 
  3. If prompted, click Accept to consent for the app to access your details.

    You are now logged into ESS and can see your Message Log page.