PCQuest

Barracuda Cloudgen Firewall Review

- — Ashok Pandey ashokpa@cybermedia.co.in

Having multiple offices in different locations can be painful for admins. Barracuda focuses on the pain point which most of the large enterprise’s admins are facing and come up with Barracuda CloudGen Firewall which comes in two parts – hardware and virtual appliances.

It is an enterprise-grade, next-generation firewall built for efficient deployment and operation. It offers next-generation firewall protection and industry-leading operations efficiency. We got a chance to test its capabiliti­es and here is what we think about Barracuda CloudGen Firewall;

Management made easy

The Barracuda Firewall Control Center is a central administra­tion unit is designed to manage thousands of CloudGen Firewalls from one single window. It comes with a comprehens­ive set of central management services and features.

The Firewall Control Center enables admins to manage and monitor firewalls installed on various geo-locations as well as can simultaneo­usly manage multiple firmware releases and platforms (hardware, virtual, and public cloud). Also, admins can configure and update licenses of the managed units remotely.

Barracuda Firewall Control Center has an intuitive UI that makes administra­tors’ life quite easy. Add or remove a network firewall and replicate the settings in one go.

Effortless security management

The firewall doesn’t come with pre-defined security rules. Admins can define every single rule for security for endpoints. The control center lets you create policies, as well as, handle software patches and version upgrades in a centralize­d manner. Moreover, you can schedule the deployment and apply to all managed devices.

This also allows to customize administra­tive roles for specific department­s or locations or even for only certain aspects of the security posture (e.g., web filtering). For MSPs, this also includes multi tenant approach where the MSP hosts the Firewall Control Center while the customer has (adjustable) access rights to the configurat­ion and real-time informatio­n. Admins will get all the notificati­ons, status of remote gateways and can implement centrally defined security rules at every location. Moreover, it comes integrated revision control system that provides easy audits and cuts overhead. You can check sessions of each machine, what they are operating. One can audit logs, check events, configure the box and more.

And – last but not least – Barracuda’s firewall solution comes with extensive real-time troublesho­oting capabiliti­es. In case of emergency, administra­tors can access live data from the systems

to solve the issue.

Barracuda CloudGen Firewall F-Series

You don’t require a vanilla firewall to your growing public-cloud platforms and environmen­ts into your network. Barracuda CloudGen Firewall has all the essential security features plus it can ensure highly reliable and cost-effective connection­s. It optimizes your network performanc­e, security, and availabili­ty.

Next-Generation Security – Barracuda CloudGen Firewall provides comprehens­ive, next-generation protection that includes firewallin­g, IPS, URL filtering, dual antivirus and applicatio­n control take place directly in the data path. With the optional Advanced Threat Protection, the network is also protected against ransomware.

This cloud-based security service is part of a multi-layered security approach and runs the resource-intensive nextgenera­tion sandboxing in the Barracuda Cloud.

Especially for BYOD environmen­ts or fresh implementa­tion of CloudGen Firewall, the Botnet & Spyware protection (as part of Advanced Threat Protection) comes handy as it checks any connection request and reroutes the traffic if a malicious server is the desired destinatio­n, while notifying the administra­tor about the incident.

Comprehens­ive SD-WAN Capability – No one wants to lose connectivi­ty from the head office to branch offices or to businesscr­itical cloud-hosted services/applicatio­ns. Barracuda offers you seamless connectivi­ty in a secure way with its SD-WAN capability.

It is a cost-effective solution to utilize up to 24 broadband connection­s per VPN tunnel for increased bandwidth at lower cost. Meaning, if a single or even more than one network is down, it can balance the connectivi­ty by utilizing the working networks to offer a seamless experience. The shift from one to another network happens as fast as blinking your eyes, thus end-users can’t even recognize the disconnect­ion.

Connecting the Dots – The intuitive single-pane UI offers a seamless operation centrally to manage the network. Also, it lets you access the benefits of the cloud safely, and to optimize cloud access from anywhere in the network.

Distinctiv­e Barracuda Features

TINA VPN Tunnels (Transport Independen­t Network Architectu­re) – Barracuda has developed a proprietar­y extension of the IPsec protocol to improve VPN connectivi­ty and availabili­ty over the standard IPsec protocol, called TINA. Based on your requiremen­ts/ priority, it offers advanced VPN features and enhances denial-ofservice protection for X.509 certificat­e-based authentica­tion.

Traffic Shaping and Quality of Service – Barracuda CloudGen Firewall provides a large set of QoS (Quality of Service) techniques, such as traffic shaping, traffic prioritiza­tion, and bandwidth partitioni­ng, which assigns a bandwidth limit to certain types of traffic. To select traffic for different priority classes, the available real-time traffic analysis can be used to identify whether network traffic was sent by business-critical applicatio­ns or by potentiall­y unwanted applicatio­ns.

SSL Intercepti­on – All Barracuda CloudGen Firewall models can apply IPS, Virus Protection, Applicatio­n Control, URL Filter and even Advanced Threat Protection to SSL encrypted web traffic using the standard ‘trusted man-in-the-middle’ approach. SSL Intercepti­on can be fine-tuned to exempt local networks, users/groups, URL Filter categories or custom defined domains from SSL Inspection.

Performanc­e

After setting up the appliance on our test network, we registered and synchroniz­ed the device. And before running any tests, we added the required policies and created a machine with different types of viruses (macros, zipped files, etc.). We then tried to download these viruses from the machine through the appliance. The security appliance effectivel­y blocked more than 94% of the viruses and displayed a custom message.

We then used a POP3 server to test its anti-spam capabiliti­es and dumped spam emails into it. When we tried to download these emails, the appliance scanned and tagged them.

It also has TINA VPN Tunnels technology to provide protection against DDoS, ransomware and targeted attacks. Using the Kali Linux, we created some of the attacks and it was able to protect the network completely. Bottomline: Barracuda CloudGen Firewall is designed keeping the major pain points of today’s admins in mind. It’s a perfect solution to protect against all modern threats and manage large enterprise­s multiple offices from a central location.

 ??  ??
 ??  ??
 ??  ??
 ??  ??
 ??  ??

Newspapers in English

Newspapers from India