Overview
The Barracuda CloudGen Firewall is a purpose-built Cloud Generation Firewall engineered for rapid deployment and operation within dispersed, highly dynamic, and security-critical network environments on AWS. As an AWS Security Competency certified solution, it allows customers to offer secure remote access, secure office-to-cloud connectivity, and cloud network segmentation. The Barracuda CloudGen Firewall also enables branch office direct internet schemes.
Beyond its powerful network firewall, IPS, and VPN technologies, the CloudGen Firewall integrates an extensive set of next generation firewall technologies including comprehensive application control, availability, and traffic flow optimization across the wide area network, web filtering, antivirus, and network access control enforcement
Note: Download the standalone Windows management application Firewall Admin from Barracuda Download portal (https://dlportal.barracudanetworks.com ) to administer your CloudGen Firewall. PAYG licenses are targeted at cloud-on ramp with SD-WAN and network segmentation based use cases and don't include Anti-Virus or Advanced Threat protection. Please use the BYOL version if the latter are required.
Highlights
- Secure Remote Access: Built-in state-of-the-art SD-WAN engine combines multiple remote access and WAN opt technologies to offer optimized and secure access to cloud resources for office and mobile users using any type of device.
- Granular Traffic Control and Visibility: Enterprise-grade firewalling allows segmentation and full visibility of network traffic within VPC and between locations based on application, static or dynamic ports, user identity and many others.
- Comprehensive Threat Protection: Integrated IPS engine provides complete and comprehensive real-time network protection against a broad range of network threats.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
|---|---|
c5n.large Recommended | $1.10 |
t3.medium | $1.10 |
c6a.12xlarge | $3.40 |
t2.2xlarge | $2.86 |
c5n.4xlarge | $5.72 |
c6in.8xlarge | $3.40 |
t2.medium | $1.10 |
c6in.large | $0.95 |
c7i.large | $0.95 |
c7i.8xlarge | $3.40 |
Vendor refund policy
Terminate the instance at any time to stop incurring charges.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
Use the Windows management tool Barracuda Firewall Admin available from the Barracuda Download Portal to connect. The username is "root" and default password is the instance ID. For more information visit https://campus.barracuda.com/doc/170821021/
Resources
Support
Vendor support
Email and Phone Support offered 24x7 without any phone trees. You will actually speak to a live person. Please have your AWS Account ID available when you contact Barracuda Support. Support Phone Numbers:North America - 408 342 5300 Europe - +44 (0) 1256 300 102 Australia - +612 8019 7254 China - +86 400 720 8200 Japan - +81 3 5436 6236 India - +91 804 904 8600 Germany, Austria, Switzerland - +43 (0) 508 100 800 Website:https://www.barracuda.com/support E-mail:support@barracuda.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Centralized console has improved real-time protection and prevents unauthorized remote access
What is our primary use case?
My main use case for Barracuda CloudGen Firewall is protection and preventing unauthorized access.
A specific example of how I use Barracuda CloudGen Firewall for protection and preventing unauthorized access involves contractors and subcontractors who require access to the main console. They mostly log in remotely, and each time it creates a new login. I maintain a list of verified, safe devices that I input into the system. If someone tries to log in with unauthorized devices, it automatically gets blocked. On my console, a pop-up question asks if this device can be verified for access. Most of the time, I have to physically call the contractor or subcontractor office and ask for the device ID before allowing them to log in. In the past, we had a few breaches, but we were able to rectify the situation in a timely manner. With Barracuda CloudGen Firewall, it is much easier because the question pops up on my console asking me to grant access or not.
Day-to-day, my use of Barracuda CloudGen Firewall is primarily protection, and I am able to watch incoming and outgoing traffic. Due to changes in upgrades and updates of hardware and software, I sometimes need to dynamically plug some ports. It is very easy to do with Barracuda CloudGen Firewall because I see everything on one console, enabling me to do it across the network in real time.
What is most valuable?
The best features Barracuda CloudGen Firewall offers include a centralized console where I am able to see all incoming and outgoing traffic as well as the size of the packets. By the size, I can easily see what is occurring. If someone has copied a device ID and credentials, by the size of the outgoing packets of information, I can easily determine if it should be allowed and automatically block the access in real time without worrying. I do not have to call back and forth for verification; I can just automatically block and stop all activities in real time to prevent unauthorized access. Because I see it on the main console, it is very easy to understand and analyze what is happening. Everything happens in real time without waiting or asking questions. As long as the rules are followed, everything is fine. If any rules are not properly followed, the system alerts me and automatically blocks access even before I click to block access. I do not have to worry because it shifts responsibility from me to Barracuda CloudGen Firewall since it is doing everything in real time to prevent unauthorized access or leakage of information if any device has been compromised or has stolen credentials used to log in.
The most important aspect of Barracuda CloudGen Firewall for me is its easy integration into the system. I do not have to jump through hoops. The integration is done in real time, and after upgrades and updates, it continues integrating without me needing to do much. Everything happens automatically, which saves lots of time and money ultimately, making it easy to operate and see.
Barracuda CloudGen Firewall has positively impacted my organization by saving us lots of time and man-hours, ultimately saving us lots of money. It is very efficient and offers a very high level of security. We have beefed up our security with Barracuda CloudGen Firewall, and I am able to see everything on one main console in real time without jumping around because Barracuda CloudGen Firewall does it for me. If any rules are not followed, Barracuda CloudGen Firewall blocks the traffic or user, and I just need to click one more time to deny access and remove an unauthorized user from the system.
What needs improvement?
To improve Barracuda CloudGen Firewall, I would like to receive worldwide updates of security breaches on the Barracuda CloudGen Firewall console, informing me of events such as something happening in Singapore and detailing how unauthorized access occurred so I can be aware and alert.
For needed improvements, I would like to see better, brighter color alerts on the console that say "Warning, warning, warning." It would also be nice to get a louder warning type. Additionally, I would appreciate an option when I connect some of my approved devices, such as an Apple Watch, for the warning to pop up on my Apple Watch saying "Warning, unauthorized access, unauthorized user, be aware." This way, if I am not at the console but somewhere in the office, I could return to the console and check the problem easily.
For how long have I used the solution?
I have been using Barracuda CloudGen Firewall for at least a year and a half.
What do I think about the stability of the solution?
Barracuda CloudGen Firewall is generally stable. I have experienced reliability issues sometimes after an update of the AI engine, but these issues are very temporary and minor.
What do I think about the scalability of the solution?
The scalability of Barracuda CloudGen Firewall is excellent. It can handle growth in traffic and users easily, particularly since we have acquired new companies, and we have been able to easily update and upgrade the license, which shows great scalability.
How are customer service and support?
Customer support for Barracuda CloudGen Firewall is timely and responsive. When needed, it can easily be changed from tier one to tier two for more advanced support. There were no problems that were not resolved to our satisfaction.
Which solution did I use previously and why did I switch?
I previously used Kaspersky, but because of security breaches and the fact that it originated from a Russian company, we decided not to trust it anymore. We were looking for different solutions when we came across Barracuda CloudGen Firewall.
What was our ROI?
Since using Barracuda CloudGen Firewall, the security incidents have decreased significantly by approximately 25 to 35 percent across our global network. Before, we used to spend at least five hours after upgrades and updates to integrate everything back. Now, we save five to ten hours of man-hours that would have been wasted on integration because it happens automatically on my console. It has saved me at least ten hours of man-hours that would have been necessary for sending technicians on-site to verify the handshake and the install, making sure everything is correct.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Barracuda CloudGen Firewall started with trying it on a sandbox. After which the pricing was approved by our accounting department and chief financial officer. Once approved, we implemented it, and compared to other solutions, it is fairly priced. Our higher-ups are happy with that.
Which other solutions did I evaluate?
Before choosing Barracuda CloudGen Firewall, I evaluated other options, specifically Nortel and Cisco Security.
What other advice do I have?
My advice for others considering Barracuda CloudGen Firewall is to get a trial, set it up in a sandbox, see how well it performs in your environment, and if you find it suitable, use it. Barracuda CloudGen Firewall is a good, reliable solution.
I think Barracuda CloudGen Firewall is a good, reliable, robust solution. I appreciate it because I am able to see everything in real time on one console without jumping through too many hoops.
Regarding Barracuda CloudGen Firewall's AI capabilities, I think it has good governance and security, but the AI needs to be smarter or have a better engine. It needs to be more advanced and predictive, performing preemptive strikes by blocking the port that an unauthorized device is trying to access even before it attempts to log in to the system.
Mostly, Barracuda CloudGen Firewall's AI has made correct decisions for me, but I would appreciate it to pick up the IP addresses of compromised devices and create an updated list in real time. If it could gather information from our security providers through the shared information log, it could notify me if a device with a specific IP address has been flagged as compromised. I would rate this product an 8 out of 10.
Integrated threat protection has secured remote access and now needs smoother monitoring integration
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
I do get a lot of use cases to contact the technical support. One is starting from the integration standpoint and starting from the initial deployment standpoint. The deployment strategy was quite complicated considering the nature of deployment strategy that we have chosen. During the integration phases, we do contact their technical support.
I'll rate the technical support at an average of seven. The reason is they are good at certain phases of the support, and not at certain phases of the support. When I say certain phases of the support, when you are buying the product and when you are deploying at the initial phase, they are quite supportive because they wanted to establish their mark in the organization. But once everything is done and once when we are trying to configure the use cases or probably the integration phase with other tools, the support we expect at that phase of the project is not bad, but quite average. There might be a lot of reasons behind it as well. I do understand that because the kind of customer service that we would have adopted, there are a lot of customer service options available, such as gold or silver. Probably the option that we have chosen as an organization might not be better. I am not sure. But during the integration phase, I would say it is quite average. On a scale of ten, I rate it seven.
How was the initial setup?
Which other solutions did I evaluate?
What other advice do I have?
Improved hybrid connectivity and centralized control have supported branch networks but need simpler UI and stronger AI security
What is our primary use case?
Barracuda CloudGen Firewall is for cloud security because cloud service providers like Azure , AWS , and GCP provide interfaces where organizations need to install different firewalls to secure their infrastructure. The normal security gateway or three-layer firewall they offer is not sufficient to control current threats. Barracuda CloudGen Firewall can protect infrastructure from Layer 7 aspects.
Barracuda CloudGen Firewall is designed for organizations with multiple branches and hybrid cloud environments. It provides strong SD-WAN capabilities including intelligent routing, failover, and link optimization. For example, if a company has offices in different locations such as Pune, Bangalore, and the US, and the MPLS link fails, the firewall automatically switches traffic to broadband without any downtime. Additionally, connecting AWS VPC to on-premises networks is straightforward and secure.
What is most valuable?
The support for distributed and hybrid environments is the best aspect I appreciate about Barracuda CloudGen Firewall. It provides strong SD-WAN capabilities including intelligent routing, failover, and link optimization. If a company has offices in different locations such as Pune, Bangalore, and the US, and the MPLS link fails, the firewall automatically switches traffic to broadband without any downtime. Connecting AWS VPC to on-premises networks is straightforward and secure.
Another valuable feature is easy centralized management. From one single console, I can manage multiple firewall policies, rules, and updates very easily. From a security coverage perspective, it provides good security coverage including firewalling, IPS, VPN, web filtering, and malware protection. The most important aspect is that while enabling these features, it works in real life and functions very well according to the defined policy.
For mid-size and small-size organizations, a cost-effective solution is the fourth and most important point. If I were to buy a similar solution from competitors such as Palo Alto, Cisco, or Check Point, they offer this solution at a higher cost. Where cost is a concern for an organization, Barracuda CloudGen Firewall is a good choice.
Strong hybrid SD-WAN capabilities are the best feature I have seen. The availability has increased significantly due to good SD-WAN capabilities that bring features including intelligent routing, failover, and link optimization. If anything fails in a disaster scenario, the failover is very smooth, so the end user will not realize what exactly happened at the perimeter. Additionally, good link optimization capabilities improve user experience when accessing different public resources. Since we are moving from browser segments to application segments, a good strong link is necessary. From that perspective, it is very much easier to configure link optimization and user experience is excellent.
What needs improvement?
From a user interface perspective, I do not see that much cleanliness compared with other vendors such as Palo Alto and Check Point. While creating policies, some settings are hidden inside multiple menus, which makes it slightly confusing, and a person who has never used Barracuda CloudGen Firewall may need some time to learn that. The user interface and learning curve need to be more simple.
From an advanced threat perspective, AI-driven detection and deep endpoint integration may need some more improvement. Nowadays, to enable advanced threat protection, organizations may require some additional tools for complete protection. That is another improvement area.
From a performance and scaling perspective, I have seen that performance can be impacted when all security features are enabled. That is why I recommend that this solution is not ideal for enterprise-grade environments or organizations. Additionally, from an ecosystem and integration point of view, there is a smaller ecosystem compared to leading firewall vendors. Integration with third-party tools requires additional efforts. For example, integration with SIEM tools such as Splunk works but needs some manual setup. These are the improvement areas for Barracuda CloudGen Firewall in my view.
Nowadays, AI is everywhere, and every solution infuses AI for product portfolio enhancement. However, when we infuse AI, we need to take care of other aspects as well because AI can help us enhance our cybersecurity posture, but at the same time, it can be a nightmare that brings attackers. We need to use caution while enabling any AI-driven features. From an overall rating perspective, I would say it is medium. I do not see anything exceptional with the AI.
For how long have I used the solution?
I have used Barracuda CloudGen Firewall since my TCS days, and I have been using it for almost four to five years.
What do I think about the stability of the solution?
Barracuda CloudGen Firewall is a stable solution. I have not experienced any crashes or downtime. However, when all features are enabled, there are some performance spikes that occur.
What do I think about the scalability of the solution?
I can handle growth and larger workloads easily with Barracuda CloudGen Firewall. I do not see any problem with the scalability aspect.
How are customer service and support?
From a customer support perspective, I would rate it at eight. The knowledge base is also good. Whenever I faced any issues and searched the knowledge base, I found many solutions in place.
Which solution did I use previously and why did I switch?
I have not switched from anything, as I work with various products in my portfolio. I have worked with Barracuda CloudGen Firewall, Fortinet, and Palo Alto, so I have worked with all these leading vendors. As required, I need to work with different vendor solutions. For me, it is about the technology and the firewall. The vendor may be different, and based on the project, I need to work on different tools.
What was our ROI?
From a money saved perspective, it is almost more than fifty percent money saved. Due to its feature set, the user experience also improved by around fifteen to twenty percent.
What's my experience with pricing, setup cost, and licensing?
Although I am not directly involved in that particular segment, from what I understood from the pricing information, it is a very cost-effective solution compared with other well-known firewall vendors that are in the market.
Which other solutions did I evaluate?
I evaluated Fortinet and Palo Alto as solutions.
What other advice do I have?
From a user interface perspective, I do not see that much cleanliness compared with other vendors such as Palo Alto and Check Point. While creating policies, some settings are hidden inside multiple menus, which makes it slightly confusing, and a person who has never used Barracuda CloudGen Firewall may need some time to learn that. My advice to others looking into using Barracuda CloudGen Firewall is that if an organization is mid-size or small-size, it can easily use Barracuda CloudGen Firewall. However, if it is a large or enterprise organization, you must think it through. If an organization is moving into the cloud and has a smaller footprint, Barracuda CloudGen Firewall can be used because in the cloud, organizations are getting a clean pipe solution. It is easy to use it in a cloud environment with minimal application solutions. My overall rating for this product is six.