All stock codes associated to this product
BNGIF12a
Barracuda BNGIF12a CloudGen Firewall
F-Series
Overview
As you integrate a growing number of public-cloud platforms and environments
into your network, your firewalls have to do more than just secure your
perimeter. They also have to serve as the linchpin of your IT communications
flow, ensuring highly reliable and cost-effective connections. Barracuda
CloudGen Firewall F was designed to optimize performance, security, and
availability of today's dispersed enterprise SD-WANs.
The Barracuda Advantage
- Simple pricing with no per-application or per-user/group licensing fees.
- Unlimited site-to-site and client-to-site VPN included
- Deploy the way you want: hardware, virtual, or cloud
- Configuration and lifecycle management via one graphical user interface
without the need for a command-line interface
Product Spotlight
- Full user/group awareness
- Full application visibility and granular access control
- Advanced Threat Protection (incl. sandboxing)
- Built-in web security and IDS/IPS
- Full SD-WAN capabilities included
- Cloud-ready application-based provider selection
Full Next-Generation Security
Barracuda CloudGen Firewall is designed and built from the ground up to
provide comprehensive, next-generation firewall protection. Firewalling, IPS,
URL filtering, dual antivirus and application control take place directly in the
data path. More resource-intensive tasks like sandboxing — required for
protecting against ransomware—are seamlessly integrated in the cloud. All
CloudGen Firewall platforms and models provide the same level of security,
maintaining maximum security from branch offices to headquarters.
Full SD-WAN Capability
Barracuda CloudGen Firewall combines next-generation security and SD-WAN
capabilities in one product that that you can manage centrally using an
intuitive, singlepane-of-glass solution. This lets you access the benefits of
the cloud safely, and to optimize cloud access from anywhere in the network. Low
line costs and efficient administration help to reduce operating costs
significantly.
Connecting The Dots
In the cloud era, you need to connect branch offices with the cloud in a
direct and secure way. Backhauling traffic to the central Internet gateway using
MPLS can be very costintensive. Barracuda CloudGen Firewalls let you replace
costly MPLS connections with cost-efficient broadband connections. You can
utilize up to 24 broadband connections per VPN tunnel for increased bandwidth at
lower cost.
Specifications
Firewall
- Stateful packet inspection and forwarding
- Full user-identity awareness
- IDS/IPS
- Application control and granular application enforcement
- Interception and decryption of SSL/TLS encrypted applications
- Antivirus and web filtering in single pass mode
- Email security
- SafeSearch enforcement
- Google Accounts Enforcement
- Denial of Service protection (DoS/DDoS)
- Spoofing and flooding protection
- ARP spoofing and trashing protection
- DNS reputation filtering
- NAT (SNAT, DNAT), PAT
- Dynamic rules / timer triggers
- Single object-oriented rule set for routing, bridging, and routed bridging
- Virtual rule test environment
Protocol Support
- IPv4, IPv6
- BGP/OSPF/RIP
- VoIP (H.323, SIP, SCCP [skinny])
- RPC protocols (ONC-RPC, DCE-RPC)
- 802.1q VLAN
Intrusion Detection and Prevention
- Protection against exploits, threats and vulnerabilities
- Packet anomaly and fragmentation protection
- Advanced anti-evasion and obfuscation techniques
- Automatic signature updates
Advanced Threat Protection
- Dynamic, on-demand analysis of malware programs (sandboxing)
- Dynamic analysis of documents with embedded exploits (PDF, Office, etc.)
- Detailed forensic analysis
- Botnet and spyware protection
- TypoSquatting and link protection for email
Administration for unlimited firewalls
- Support for multi-tenancy
- Multi-administrator support & RCS
- Zero-Touch Deployment
- Enterprise/MSP licensing
- Template & repository-based management
- REST API
High Availability
- Active-passive
- Transparent failover without session loss
- Encrypted HA communication
Traffic Intelligence & SD-WAN
- Simultaneous use of multiple uplinks (transports) per VPN tunnel
- FIPS 140-2 certified cryptography
- Auto-VPN tunnel creation between remote spoke locations based on
application type
- Dynamic bandwidth detection
- Performance-based transport selection
- Application-aware traffic routing
- Adaptive session balancing across multiple uplinks
- Traffic Replication (forward error correction)
- Application-based provider selection
- Application-aware traffic routing (VPN)
- Traffic shaping and QoS
- Built-in data deduplication
VPN
- Drag & drop VPN tunnel configuration
- Network Access Control
- iOS and Android mobile device VPN support
- Multi-factor authentication for SSL VPN and CudaLaunch
Infrastructure Services
- DHCP server, relay
- SIP, HTTP, SSH, FTP proxies
- SNMP and IPFIX support
- DNS Cache
- Wi-Fi (802.11n) on selected models