Overview
A leader in cloud security and an AWS Preferred Security Competency Partner, businesses trust Barracuda's Cloud Generation Firewalls to secure their applications in the cloud. With dynamic profiling and application-aware technologies to minimize false positives, Barracuda CloudGen WAF protects against today's advanced, persistent and zero-day threats.
Trusted by the world's most security-conscious businesses, including financial institutions, government agencies and trading platforms; the Barracuda CloudGen WAF inspects all bi-directional web traffic, and guards against data loss by inspecting the HTTP responses from the back-end servers. Built-in access controls enable administrators to create granular policies for Authentication, Authorization & Accounting (AAA).
Support for CloudFormation Templates enables admins and devops to automatically bootstrap and cluster additional instances as needed, for higher throughput and easy deployment. Active DDoS Prevention stops volumetric and application DDoS attacks before they reach your firewall. The built-in Barracuda Vulnerability Remediation Service removes much of the administrative overhead associated with firewall maintenance by automatically configuring the firewall based on vulnerabilities found in a scan of your application.
How secure are your web applications?
NOTE: Only AMIs with version 10.x or higher version support the Elastic Network Adapters (ENA).
Highlights
- Detects and blocks SQL injections, cross-site scripting, malware uploads, application DDoS, or any other attacks against your application. Authentication and access control gives organizations strong authentication and user control.
- Scans outbound traffic to detect sensitive data, and can either mask or block the information from being leaked out.
- Application acceleration capabilities, including caching, compression, and connection pooling for faster application delivery of web application content.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
Please see Barracuda's website.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Additional details
Usage instructions
- By default, the Barracuda WAF listens on port 8000 for HTTP and port 443 for HTTPS, so make sure these ports are added in the Inbound Rule of the security group that will be associated with the Barracuda Web Application Firewall.
- Allow a few minutes before taking any further actions in the EC2 Portal after deploying the Barracuda Web Application Firewall. During this time, the Amazon Web Services Agent and the Barracuda WAF are booting.
- Now access the Barracuda Web Application Firewall using the associated Public IP/Public DNS with port 8000 over HTTP (i.e. http://<public IP>:8000)
- You will then see the Licensing page which displays the options 'I Already Have a License Token', 'I Would Like to Purchase a License', and 'I Would Like to Request a Free Evaluation'. Select the desired option, fill in the required info, and click 'Provision/Submit'. The Barracuda Web Application Firewall will connect to the Barracuda Networks servers to fetch the required information based on your license, after which the system will start the provisioning process. Once complete, you will be presented with the web administration login page. Log in as the user 'admin' to begin configurations. Your initial password is the EC2 instance ID, and can be changed when configuring your Barracuda Web Application Firewall.
For the Deployment Guide and other instructions, visit the Barracuda campus at https://campus.barracuda.com/product/webapplicationfirewall/article/WAF/AWS/
Support
Vendor support
Support Hours: Basic Support Hours: 8:00 AM - 5:00 PM PST, Monday through Friday. Email and Phone Support offered 24x7 without any phone trees. You will actually speak to a live person. Please have your AWS Account ID available when you contact Barracuda Support; it is required for the support technician to assist you North America - 408 342 5300 Europe - +44 (0) 1256 300 102 Australia - +612 8019 7254 China - +86 400 720 8200 Japan - +81 3 5436 6236 India - +91 804 904 8600 Germany, Austria, Switzerland - +43 (0) 508 100 800 Support Website: https://www.barracuda.com/support -- Support Email: support@barracuda.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products

Customer reviews
Secure branch connectivity has improved and traffic management now keeps business apps responsive
What is our primary use case?
My main use case with Barracuda CloudGen Firewall is securing branch offices with remote users and hybrid environments while maintaining stable connectivity. I used it for firewall perimeter security and site-to-site VPN between offices and remote users' VPN access, as well as for intrusion prevention and web filtering, and SD-WAN for branch connectivity and traffic visibility and control.
I mainly use Barracuda CloudGen Firewall for managing VPN users, monitoring branch office connectivity, and reviewing blocked traffic logs. I also handle web access control, IPS alerts review, and traffic prioritization.
What is most valuable?
The best feature of Barracuda CloudGen Firewall is its SD-WAN capability because it helps optimize branch connectivity, along with strong VPN and multi-site connectivity. It is very useful for multiple offices and remote users. Traffic and bandwidth control are also important, especially when business applications need priority. Security services being in one platform includes firewall, IPS, filtering, and VPN. The hybrid cloud feature works well with mixed on-premises and cloud environments. To me, the most valuable feature is VPN and branch connectivity management because it offers secure access across multiple offices and remote user teams.
The VPN and branch connectivity management features make my work easier by connecting branch offices and the head office, along with cloud resources over time. For example, currently, one of my biggest clients has their head office in Bangalore and branch offices in Mumbai, Hyderabad, and Pune, with users working remotely from home. They share ERP and a file server in the head office or Azure cloud, so instead of using one internet access between the offices, Barracuda CloudGen Firewall creates an encrypted VPN tunnel between these locations, such as from the Mumbai office to the Bangalore office and Hyderabad office to Bangalore office. Remote users connect securely to the computer network.
When branch offices face unstable internet connectivity and users complain that business applications are slow, I review the traffic through Barracuda CloudGen Firewall. I identified the bandwidth and heavy non-business traffic that affects critical applications. I also use traffic shaping policy control and prioritize business applications and VPN traffic, which improved performance quickly without requiring new hardware or extra internet service provider changes. The logs also help confirm the malicious traffic causing the issue.
What needs improvement?
Improvement areas for Barracuda CloudGen Firewall include addressing advanced setup complexity and needing in-depth documentation. Some advanced scenarios require clear examples, so they need to work more on documentation. Initial deployment also takes time, so if they address the initial deployment aspect, that advanced setup complexity would be another important area to improve.
For how long have I used the solution?
I worked with Barracuda CloudGen Firewall for approximately one and a half years, mainly from a network security and branch connectivity perspective.
What do I think about the stability of the solution?
Barracuda CloudGen Firewall offers very good stability.
What do I think about the scalability of the solution?
Its scalability is high, making it suitable for SMB, mid-size businesses, and distributed branch connectivity environments.
How are customer service and support?
The customer support for Barracuda CloudGen Firewall is good. I would rate customer support at seven point five out of ten.
Which solution did I use previously and why did I switch?
I previously used basic firewalls with separate VPN solutions before switching to Barracuda CloudGen Firewall.
How was the initial setup?
Initial deployment takes time, so if they address the initial deployment aspect, that advanced setup complexity would be another important area to improve.
What was our ROI?
For return on investment, if an organization has more than one office, they should consider this solution because it significantly improves branch productivity and reduces connectivity issues, providing strong, secure remote access. These are the main three points for return on investment that I have noticed.
What's my experience with pricing, setup cost, and licensing?
Overall, the pricing for Barracuda CloudGen Firewall is mid to premium depending on size, bandwidth, and security subscriptions.
Which other solutions did I evaluate?
Before choosing Barracuda CloudGen Firewall, I evaluated other options, including Fortinet FortiGate , SonicWall, Cisco Meraki, and WatchGuard Firebox .
What other advice do I have?
I had one branch where users reported that application access was slow. I checked the traffic and found bandwidth overused by streaming traffic, applied policy control, and prioritized VPN and business application traffic. The users saw an improvement on the same day. Overall, Barracuda CloudGen Firewall helped us securely connect with branch offices and remote users through encrypted VPN tunnels while managing bandwidth and failover links to keep business applications stable.
Since I started using Barracuda CloudGen Firewall, I have noticed stable branch connectivity, better secure remote access, and faster troubleshooting of network issues, along with reduced downtime for WAN issues and improved security visibility across offices. It provides better control of internet traffic. Regarding reduced downtime for WAN issues, it is around thirty to forty percent according to my experience.
For organizations considering Barracuda CloudGen Firewall, it is essential to evaluate not just firewall security but also WAN optimization and VPN experiences if they have multiple offices or remote users. Barracuda CloudGen Firewall is a very practical choice for organizations requiring both security and reliable branch connectivity. It is very useful where networking and security teams need one platform. I give this solution a rating of eight out of ten.
Security has protected our data centers but support gaps and limited expertise remain challenging
What is our primary use case?
Barracuda CloudGen Firewall is used to protect data in two data centers, including headquarters and data center H5O.
What is most valuable?
I am using calls functionality from DLP forwarding calls and SSL inspection in Barracuda CloudGen Firewall , and all of those are necessary to be used. I cannot qualify which is more important than others, but it is a complete product, and I am using all features.
What needs improvement?
I don't know about the centralized management console for managing policies in Barracuda CloudGen Firewall. We are not using it, and I don't know what that is. My vendor didn't provide me information about such a feature.
There are a lot of functionalities already present, but the problem is whether there is knowledge about the functionalities or stability.
Barracuda can make improvements for the next generation firewall product. In general, it is a very rare product in our market. More training and more learning for customers on how to use these products are needed. We are suffering from a lack of engineers in our market, so I am considering changing the product to a more popular one because it is not easy to recommend Barracuda, even this great product, but nobody uses it in Poland, and it is not easy to do anything. I know just one company which is supporting us.
Concerning the effectiveness of the filtering capabilities in Barracuda CloudGen Firewall, it happens sometimes that the classifications are misleading with wrong categorizations of what they use into the games or something into categories when it is definitely not in the category. I don't know from what reasons, but maybe it could be adjusted.
For how long have I used the solution?
I have been working with Barracuda CloudGen Firewall since 2016 in one location, and in the second one, it has been three years.
What do I think about the stability of the solution?
For stability, I would rate the next generation firewall stability of the product an eight.
What do I think about the scalability of the solution?
Regarding scalability and the ability to scale and expand with Barracuda CloudGen Firewall, there is no issue, so I would rate it a ten.
How are customer service and support?
I would rate the technical support for Barracuda CloudGen Firewall a six, as in the past, it was definitely better, but recently it has not been as good.
Which solution did I use previously and why did I switch?
I compared Barracuda CloudGen Firewall mainly with FortiGate.
How was the initial setup?
For the initial setup of Barracuda CloudGen Firewall, it was a bit more complex than simple; I would rate it at six on a scale from one to ten.
What about the implementation team?
I used a third-party company for the integration and setup of Barracuda CloudGen Firewall. I have some knowledge about the product and in-house capability, but I am relying on the third-party company for the purposes of integrations and new products.
Which other solutions did I evaluate?
The key reason I chose Barracuda over FortiGate is that I have been using Barracuda since 2016 or even 2015, and I am just used to it. It is stable, it is working, and there are no issues. However, to develop and use new features, I am lacking specialists, which is why it is not easy to expand with Barracuda CloudGen Firewall.
What other advice do I have?
I do not use the SD WAN capabilities of Barracuda CloudGen Firewall.
Threat protection feature in Barracuda CloudGen Firewall is working. I have not had much experience with other products, so I didn't support any issues with that module. It is working just fine.
I was a long-time strong fan of this product, but unfortunately, I will change the vendor for another one. Therefore, I cannot recommend it. If someone can set up things in-house with specialists, then it is quite a good product. There are not so many critical incidents, but probably mostly because it is not so popular. The pain point for me is support. In general, with a small scale, I was able to manage it myself, but with a wider scale, it is not possible to rely on in-house specialists, and there is no specialist available on the market. I would give this review an overall rating of seven.
Optimizes bandwidth with SD-WAN and threat protection but needs faster support and automation
How has it helped my organization?
Barracuda CloudGen Firewall SD-WAN capabilities have helped optimize our customers' bandwidth usage significantly because we are moving from MPLS to SD-WAN.
What is most valuable?
The most valuable features in Barracuda CloudGen Firewall are the functionality of DPI and IDS, ATP, and we also use it in an SD-WAN operation as well, so it works well in the SD-WAN feature.
In terms of our routing and VPN capabilities, Barracuda CloudGen Firewall performs well.
The threat protection features of Barracuda CloudGen Firewall are good, and I appreciate their reporting capabilities. It is a very good tool to have, especially when you are using IDS and IPS to block SQL injection, buffer overflow attacks, and similar threats in real-time.
We use the cloud centralized management console for managing security policies.
What needs improvement?
There is room for improvement in terms of response time and first-level support quality.
Barracuda CloudGen Firewall needs to learn from FortiManager and Palo Alto, as I see that they have automation and their reporting is easier to generate compared to Barracuda CloudGen Firewall.
I would like to see built-in endpoint integration in the next release of Barracuda CloudGen Firewall, including EDR. They need to improve or at least have an AI-assisted traffic analyzer alert. Their support can be improved as well.
What do I think about the stability of the solution?
We have not had any issues while integrating Barracuda CloudGen Firewall with third-party solutions because the professional support was really helpful with the integration.
How are customer service and support?
I rate the technical support by Barracuda a four out of ten.
How was the initial setup?
The initial setup for Barracuda CloudGen Firewall is quite easy.
What about the implementation team?
The integration of Barracuda CloudGen Firewall with other products is good because we required assistance and professional help from the Barracuda team to come and help us, which was beneficial.
We have not had any issues while integrating Barracuda CloudGen Firewall with third-party solutions because the professional support was really helpful with the process.
Which other solutions did I evaluate?
The pricing for Barracuda CloudGen Firewall is a bit pricey compared to Palo Alto or Fortinet.
Centralized firewall management has saved time and improved network security across locations
What is our primary use case?
My main use case for Barracuda CloudGen Firewall is to secure our company's main and backup internet connections, and we also use it for failover of our main internet to our backup. We recently replaced a WatchGuard Firebox with this firewall because the cost of maintenance was high on the WatchGuard, and the management of Barracuda CloudGen Firewall was much simpler and could be done without a locally installed client.
You can manage Barracuda CloudGen Firewall from anywhere with Barracuda Cloud Control, even running firmware updates from your phone on all your Barracuda devices. It makes my job so much easier.
A specific situation where Barracuda CloudGen Firewall helped me manage my internet connections and made my job easier is when we switched to Barracuda CloudGen Firewall model F400. Coming from an older command line managed firewall, the F400 has made management of our firewalls much easier, and it is our primary firewall solution.
We use Barracuda CloudGen Firewall to watch real-time traffic, which is easy to do when trying to troubleshoot user issues getting to a particular service. Ease of management is a significant advantage. You can remotely manage it from anywhere with cloud control.
What is most valuable?
The best features Barracuda CloudGen Firewall offers include extreme customization for any environment and support for all configuration with firewall rules. Security features such as hardware-level antivirus and advanced threat protection, as well as SSL inspection, ensure all traffic passes through the appliance.
Control Center is far superior to other products for globally managing numerous firewalls and creating and deploying templates on the fly.
These features have improved security and prevented any cybersecurity threats before they attack our system, making things easier for my team day-to-day.
The VPN connections have never been easier. Once configured within Control Center, drag and drop is all that is needed to connect to internet-connected firewalls easily.
Barracuda CloudGen Firewall has positively impacted my organization by allowing us to control the entire network from one location, hence saving a lot of time from moving from one location to another. All services and processes work very well and are reliable, with high uptime.
For MSPs looking to deploy and control numerous firewalls with ease, this is the best product available.
Since switching to Barracuda CloudGen Firewall, we have saved time of 30 to 40 percent because we are able to control the network from one location. We have also saved costs of 20 percent because we do not have to move from one location to another to control the network.
What needs improvement?
Barracuda CloudGen Firewall could be improved as it has a very high learning curve. It is definitely not a one and done firewall, as a one and done firewall requires a lot of dedicated time to get the machine running the way you want.
To improve Barracuda CloudGen Firewall, there should be a lot of tutorials and videos online to help new users. Multiple ways to configure for the same service or feature takes time to determine your customized build.
In addition to previous points, the interface can sometimes be clunky when trying to determine how it is organized or arranged.
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
How was the initial setup?
What was our ROI?
I have seen a return on investment with Barracuda CloudGen Firewall, as it makes our environment more secure through the robust security features it offers. It has drastically reduced the amount of infections from cybersecurity threats and makes managing close to 50 clients or more for our engineers much easier, hence saving a lot of time and cost.
Which other solutions did I evaluate?
What other advice do I have?
I deduct those two points because it has a very complex and steep learning curve to get started, but it is very highly customizable and can control the entire network from one location. That is what makes it receive a rating of eight, hence saving time and cost.
The security features such as hardware-level antivirus and advanced threat protection, as well as SSL inspection, ensure all traffic passes through the appliance to increase security and prevent cybersecurity threats on time.
Barracuda CloudGen Firewall is deployed in my organization using a hybrid cloud setup.
We purchased Barracuda CloudGen Firewall through the AWS Marketplace .
We do utilize the advanced threat features to provide the first layer for virus through malware detection and prevention before the traffic ever gets to the antivirus software that is used on each workstation.
My advice for others looking into using Barracuda CloudGen Firewall is that anyone that has a business or stores client's data must have a next-generation firewall with zero exemptions. If you have multiple sites, configuring a VPN between them takes less than a minute to configure. These devices have many more features than their competitors but often cost less. Barracuda CloudGen Firewall is very cost-effective, and I highly recommend it. I rate Barracuda CloudGen Firewall an eight out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Reliable security has boosted application performance and supports remote connectivity
What is our primary use case?
My main use case for Barracuda CloudGen Firewall is as a combined solution for application performance boost and secure SD-WAN, which I typically rely on to boost application performance by ensuring reliable connectivity to remote sites and users.
There are rush hours where traffic from cloud apps and off-network users increases and crowds the network. With Barracuda CloudGen Firewall , we are able to boost performance of crucial apps and high-priority projects in a very secure manner. This way, my top-priority ports do not experience downtimes.
Barracuda CloudGen Firewall helps me boost application performance specifically by being capable of directly sending internet traffic with appropriate security inspection within no backhauls, whether it is SaaS or internet-bound traffic.
In my department, we have achieved consistent network link pooling and data caching optimization for both handling critical workloads, thereby saving a lot of work. There is always enough bandwidth for applications with Barracuda CloudGen Firewall optimization. We are, however, not completely satisfied with their link redundancy handling capabilities.
I use Barracuda CloudGen Firewall as a router and firewall in all of our organization globally, which is to terminate all management VPN tunnels to our organization and within the same country to avoid problems with long-distance internet connections.
What is most valuable?
The best features Barracuda CloudGen Firewall offers, in my experience, include its ability to scale dynamically, dispatch traffic to match workloads, utilize next-gen firewalls to assure data security, and provide great routing, firewall, and network management.
Barracuda CloudGen Firewall's next-gen firewall capabilities increase the level of network protection against threats, visibility, and control of applications that users access. I also appreciate the URL filtering to block unauthorized or prohibited websites on the internal corporate network, protection against diverse malware at the edge of the network, and firewall redundancy with another backup appliance.
Barracuda CloudGen Firewall has positively impacted my organization by increasing the level of network protection against threats from twenty percent to forty-five percent. It has enhanced visibility and control of applications that users access. It prevents cyberattacks and optimizes network and user management, making security more reliable over the past years.
I measured the improvement from twenty percent to forty-five percent based on fewer incidents of data breaches and also robust hardware that supports more than eighty thousand simultaneous connections, thereby being very stable.
What needs improvement?
To improve Barracuda CloudGen Firewall, it would be great to manage all firewalls in one pane of glass without charging more for this, get better push notifications, and also have better online documentation to make the learning curve much easier and smooth.
Barracuda CloudGen Firewall still cannot combat link redundancy speedily. One time a network link failed, and it took a while before restoring traffic from the backup link, so this should be highly improved.
I chose an eight out of ten because Barracuda CloudGen Firewall cannot combat link redundancy speedily, while a ten rating is warranted as it has mainly boosted our application performance by ensuring reliable connectivity to remote sites and users.
For how long have I used the solution?
I have been using Barracuda CloudGen Firewall for almost five years.
What do I think about the stability of the solution?
In my experience, Barracuda CloudGen Firewall has been reliable and very high performing. I have not noticed any lagging or downtime.
What do I think about the scalability of the solution?
Barracuda CloudGen Firewall's scalability is great, as it can handle growth easily.
How are customer service and support?
I have reached out to the customer support team a few times, and they have been very responsive and proactive.
Which solution did I use previously and why did I switch?
I previously used a different solution called Smoothwall SWG.
I decided to switch from Smoothwall SWG to Barracuda CloudGen Firewall because Smoothwall SWG was more costly compared to Barracuda CloudGen Firewall, and it had many complicated features.
How was the initial setup?
Barracuda CloudGen Firewall is very easy to set up and manage VPN connections, and it has great customization options.
It is very easy to manage Barracuda CloudGen Firewall. The dashboard allows us to configure all our need-to-see options, and the user interface is easily navigated and customized.
What was our ROI?
Since we started using Barracuda CloudGen Firewall, security has greatly improved, which is a notable return on investment.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing is that while the licensing cost can be reduced and is somewhat costly, the price is good and affordable.
Which other solutions did I evaluate?
Before choosing Barracuda CloudGen Firewall, I evaluated other options, including Panda Adaptive Defense 360 .
What other advice do I have?
My advice to others looking into using Barracuda CloudGen Firewall is that it is perfect for any size of organization to help remote workers connect seamlessly with the VPN product, boosting security and preventing data breaches, so the network is made stable. I gave this product a rating of eight out of ten.