Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

11 AWS reviews

External reviews

16 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Robert Mills

Secure gateway has protected remote healthcare data and now supports compliant mobile access

  • April 06, 2026
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Barracuda Application Protection is for our mobile apps, and I use it for the remote users we have. I use this as the secure gateway to protect the app's integrity as well as the data going from the hospital campus to the users remotely, as well as the ones in-house.

A quick specific example of how Barracuda Application Protection helps with our mobile apps and remote users is that it has helped us to manage customer's security and documents in their phones, and also to reach those who are in remote areas.

I used to work on this technology for a lot of customers, and it has been used from numerous healthcare institutions to financial sectors, and it has provided a lot of compliance features related to the different security models, so I have more to add about my main use case with Barracuda Application Protection.

What is most valuable?

The best features Barracuda Application Protection offers in my experience are full-spectrum security and DoD-level protection, which is a big help for us for security of our data, ease of setup on the firewall for security for VPN users, and the configuration is easy to do and use for the security team with its features and pictures of instructions.

The feature that has made the biggest difference for my team is that it has helped us as a secure gateway to protection apps' integrity, as well as the data going from the hospital campus to users remotely, as well as the one in-house.

Barracuda Application Protection has positively impacted my organization by lessening threats from the outside and providing ease of use for the security team to be able to use templates and configure to our specs. Being able to set up as many rules as I would like is a big plus, and it also has a positive impact on our organization.

We have seen an improvement of 45% in security since Barracuda Application Protection has been securing our customers' privacy, which is a specific metric demonstrating our benefits.

What needs improvement?

To improve Barracuda Application Protection, it would be beneficial to have the advanced ability to close off ports when they could be getting tested from hackers for intrusion.

For how long have I used the solution?

I have been using Barracuda Application Protection for four years and eight months.

What do I think about the stability of the solution?

Barracuda Application Protection is stable.

What do I think about the scalability of the solution?

Barracuda Application Protection's scalability is very scalable.

How are customer service and support?

The customer support for Barracuda Application Protection is very responsive and supportive. I would rate the customer support for Barracuda Application Protection a nine out of ten.

Which solution did I use previously and why did I switch?

I previously used a different solution, specifically HP Juniper Access Points, and I switched from HP Juniper Access Points to Barracuda Application Protection since it was easy to deploy, less costly, support is extraordinary, and it provides granular controls. It provides good compliances and is less prone to false positives.

What was our ROI?

Implementing Barracuda Application Protection has had a measurable and strategic impact on our overall business objectives, and within the first six months of deployment, I saw a 45% reduction in security incidents affecting the web applications.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing was that it was very affordable.

Which other solutions did I evaluate?

Before choosing Barracuda Application Protection, I evaluated other options such as Palo Alto Networks Next-Generation Firewalls, PA-Series, and Fortinet FortiGate.

What other advice do I have?

My advice to others looking into using Barracuda Application Protection is that it is good in providing threat protection, especially for our emails that come in from the outside. I would rate this product a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Iv Yo

Security gateway has protected remote hospital apps and has enabled faster AWS web access

  • April 06, 2026
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Barracuda Application Protection is for mobile apps we use and for the remote users we have, using it as a secure gateway to protect app integration as well as the data going from the hospital campus to the users remotely, as well as the ones in-house.

A quick specific example of how I use Barracuda Application Protection in a real-world scenario is for security protection for several web applications hosted in AWS. We were looking to deploy a WAF out-of-the-box with not too much maintenance that would work right away. One of the key elements was the WAF support for the load balancers, as we were looking to distribute the load of the web applications.

What is most valuable?

The best features Barracuda Application Protection offers include client fingerprinting, bot identification, mitigation of false positives, and easy deployment in seconds.

Client fingerprinting has helped my organization in ways that ensure you cannot access a client's information without using fingerprints as the main element that we use to access the inside and all the information of a client.

Barracuda Application Protection has positively impacted my organization by helping us save time since it is easy to use. This has helped us tremendously since we no longer need to travel to remote areas, enabling us to reach those people in remote areas more efficiently.

We have saved our time by 40 to 65% with Barracuda Application Protection. The time we were using to travel to those remote areas to reach our clients has been saved since Barracuda Application Protection is helping in that sector, allowing us to save time and also witness some profit increase from those customers in remote areas.

What needs improvement?

Barracuda Application Protection can be improved by integrating more bot categories, including more mitigations in client-side integrity, and adding a feature where you can achieve out-of-the-box requirements, meaning the features that are not available can be included by writing code.

For how long have I used the solution?

I have been using Barracuda Application Protection for four years and eleven months.

What other advice do I have?

On a scale of one to ten, I rate Barracuda Application Protection an eight out of ten.

I rate it an eight out of ten because the issue of client-side integrity needing more inclusion in mitigation techniques has hindered it from being a perfect ten, and I believe they should invest in that.

My advice to others looking into using Barracuda Application Protection is that it is good in providing threat protection, especially for emails that come in from the outside. Capturing potential spam and malware from emails from outside our network has been excellent, keeping us alert for anything coming in from the outside that could compromise our network. I recommend the simple Barracuda WAF as a service where an out-of-the-box standard policy can be applied, making this Barracuda WAF as a service perfect for a basic environment and protection, particularly if you already have other Barracuda infrastructure elements in your network.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Pavan Ingaleshwar

Improved SOC visibility has blocked web attacks and supports faster investigations

  • April 06, 2026
  • Review provided by PeerSpot

What is our primary use case?

I work with Barracuda Application Protection as part of SOC monitoring and web application security, which helped me to detect and block web-based attacks such as SQL injection, suspicious requests, and abnormal traffic patterns from a SOC perspective. It also provides good visibility to the web attacks and helps with faster investigation. The pattern is stable and scalable, but I think the UI and fine-tuning policies can be improved overall.

In my current company, for one of the clients which we are using, Barracuda Application Protection was mainly used to protect the web applications and monitor incoming traffic from external sources. From our SOC perspective, I work on analyzing alerts related to suspicious HTTP requests, possible SQL injection, abnormal traffic spikes, and blocking malicious IPs. Whenever the alerts were triggered, we validated whether it was a real attack or a false positive and took appropriate action accordingly.

In one scenario, we observed multiple requests from a single IP that was targeting the login for our client endpoints with unusual parameters. We suspected and started an investigation. Then we saw that Barracuda Application Protection had detected this suspicious behavior and blocked the IP already. On the SOC side, what we did was verify the logs and confirmed it. We even assumed that it might be a brute-force or injection attempt. After that, what we suspected became true, and that helped me in preventing unauthorized access attempts and reducing investigation.

What is most valuable?

The best features of Barracuda Application Protection are that it has good visibility. Log usability is very good, and the support for investigation is also good. These are the main features. One of the best key features I have seen is that it mainly detects and blocks web-based attacks. As I previously mentioned, SQL injection, cross-site scripting, and suspicious HTTP requests are detected in real-time.

The log visibility in Barracuda Application Protection is very useful from the SOC perspective. It provides detailed information such as the source IP address, the request type, what kind of request type was detected, the targeted URL, and the attack type. During investigations, these logs help to understand the pattern of the attack and the intention of the attack, and whether the activity is really malicious or normal activity. It also helps in identifying repeated attacks from the same IP and analyzing the traffic behavior. Overall, the logs make it easier to investigate web-based threats and correlate them with other security alerts in a SIEM solution. It gives detailed logs such as source IP, request details, and attack type, which help in quick investigation and identifying patterns.

Barracuda Application Protection is helping our current organization in a meaningful way by reducing web-based security incidents through blocking malicious traffic before it reaches the application and end-user machines. It improved visibility into the web attacks and made investigation easier for the SOC employees, especially since we could quickly identify suspicious IPs and attack patterns. It also reduces the manual effort since many attacks were automatically detected and blocked, allowing our SOC team to focus more on analysis rather than basic filtering.

What needs improvement?

I have one thing to share about the features. I did not observe any major stability issues. The platform works reliably during monitoring. If I want to tell what needs improvement, policy tuning requires effort. Policy fine-tuning because it requires a lot of effort and time from the employees, such as the senior SOC analyst. For us, it requires a lot of manual effort. Also, sometimes it gives a lot of false positives that also require manual effort. These two main things need improvement.

Another area for improvement is the visualization of the attack data. Barracuda Application Protection has better visualization of attack data, but it can make it even better. It should be very accessible because nowadays, employees from the data engineer team, the network team, or other departments should be able to easily understand it. I personally feel that is how the user interface should be for all applications. The current trending applications should be built with better UI and UX design for better visualization of the attack data. That would be very helpful for SOC analysts as well as other department employees and colleagues.

For how long have I used the solution?

I have been using Barracuda Application Protection for the past one point two years.

What do I think about the stability of the solution?

I did not observe any stability issues with Barracuda Application Protection in the past.

What do I think about the scalability of the solution?

Barracuda Application Protection is scalable and can even handle the traffic for multiple applications. It is a very good solution in the current market.

Which other solutions did I evaluate?

Cloudflare WAF is another tool I have seen. Cloudflare is also more user-friendly and has a strong CDN and DDoS capabilities, and it is easier to use. However, I would still go with Barracuda Application Protection.

What other advice do I have?

Barracuda Application Protection is a very fantastic tool and a very good solution, especially when talking about web application attacks, particularly from external attacks. Currently in the market, there are very few solutions, and few solution providers are there, but comparatively, they are the best. That is why I rate Barracuda Application Protection eight out of ten.

For example, in day-to-day work, I have observed a repeated request pattern from a particular IP that was targeting the login endpoints with unusual parameters that I noticed. Barracuda Application Protection already detected that suspicious activity and gave notifications on our SIEM solution as well. It even blocked that IP automatically on a temporary basis. We have set up and fine-tuned our SIEM solution so that if any such IPs are detected, they need to be blocked for one to two days because we are not sure about the IP's reputation. With fine-tuning, we have it set to block for two days. That is how we did it. That helped us quickly validate the alert, and we confirmed the potential attack and avoided further impact. It also reduces the manual effort, as many such threats have been handled automatically.

Barracuda Application Protection is a good solution for protecting the web application from external attacks. From my SOC perspective, it provides good visibility to the SOC analyst, and the logs it generates are very comprehensive. That helps us with the investigation and correlating all such logs to the SIEM solution and other things. In our organization, we have a public-facing application, so that is where I can tell this will provide the best benefit from this solution. Compared to other perspectives, Barracuda Application Protection is a very good one, and from my experience, I am really impressed with it. I would rate Barracuda Application Protection eight out of ten.


    Mohak Christine

Secure gateway has strengthened mobile access and consistently reduced web security incidents

  • February 15, 2026
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Barracuda Application Protection is for our mobile apps and for the remote users we have, as I use this as the secure gateway to protect the application integrity as well as the data going from our organization to our users remotely as well as the ones in-house.

What is most valuable?

Barracuda Application Protection specifically helps with securing our mobile apps and remote users by providing full-spectrum security DOD-level protection, which is a big help for us for the security of our data. Implementing Barracuda Application Protection has had a measurable and strategic impact on our overall business objectives. Within the first six to seven months of deployment, I saw a 60% reduction in security incidents, incidents affecting the web application which directly translated into fewer service interruptions and less time spent on incident response.

Overall, Barracuda Application Protection has made it so easy to manage all our applications.

The best features Barracuda Application Protection offers include ease of setup on a firewall for security for VPN users, and configuration is easy to do and use for our security team with its features and pictures of instruction. Additionally, ease of deployment, less costly, easy to manage application, scalability is good, and security features are strong. It contains a lot of granularity, especially with URL profiles, protection, and JSON security.

Granular controls and JSON security have helped our team by providing a secure gateway to protect application integrity as well as the data going from our organization to the users remotely, as well as the ones in the offices.

I would also add that it has been good in lessening threats from the outside, and being able to set as many rules as needed is a big plus for us.

What needs improvement?

I do not have much to say about the improvement, but a more innovative solution for sniffing more on the network would be great, and having the advanced ability to close off ports when they could be getting tested from hackers for intrusion would be helpful.

I would also add that the user interface should be improved to be more user-friendly and customizable.

For how long have I used the solution?

I have been using Barracuda Application Protection for five years.

What do I think about the stability of the solution?

Barracuda Application Protection is fast and reliable, so it is very stable.

What do I think about the scalability of the solution?

Barracuda Application Protection's scalability is very good; it handles my organization's growth perfectly.

How are customer service and support?

The customer support is quick to respond and very solution-oriented.

Which solution did I use previously and why did I switch?

Previously, I was using Cloudflare.

I decided to switch from Cloudflare to Barracuda Application Protection because it is very easy to use, the cost is very cost-effective, it has simplicity to configure and deploy in my current environment, and it has automated standard policies, which is easy to maintain.

What was our ROI?

I have seen a return on investment; it lessens threats from the outside. Ease of use for our security team to be able to use templates and configure to our specs, combined with its high-level security protection features such as DOD-level protection, shows its readiness to secure our data and network lines, which is brilliant.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing is that it is a very cost-effective tool.

Which other solutions did I evaluate?

Before choosing Barracuda Application Protection, I evaluated other options including AWS WAF.

What other advice do I have?

My advice to others looking into using Barracuda Application Protection is that it is simple, very simple, cost-effective, easy to set up and use, and easy to configure and deploy in any environment. It lessens threats from outside or from within.

I have additional thoughts about Barracuda Application Protection; it is a good tool for providing threat protection, especially for our email that comes in from the outside. Capturing potential spam and malware from emails from outside our network has been good, keeping us alert for anything coming in from the outside that could compromise our network.

I rate this product a 9 out of 10.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    TarunKumar7

Advanced protection has reduced web threats and now keeps our remote users and data secure

  • December 07, 2025
  • Review provided by PeerSpot

What is our primary use case?

My main use case for Barracuda Application Protection is that it is a very exceptional piece of security in a virtual and remote world. It provides full-spectrum security DOD-level protection, which is a big help for us for the security of our data. It also provides ease of setup on the firewall for security for all our VPN users. Additionally, configuration is easy to do and use for our security team, which benefits from its features and instructional pictures.

What is most valuable?

The best features that Barracuda Application Protection offers are DOD-level protection and its readiness to secure our data and network lines. Built-in templates are easy to use and good to customize to make them work how we do things. Overall, it keeps us alert for anything coming in from the outside that could compromise our network.

Barracuda Application Protection has positively impacted my organization by lessening threats from outside. The ease of use for our security team to be able to use templates and configure to our own specs has also been a benefit. Being able to set as many rules as you like is also a big advantage to our side.

What needs improvement?

Barracuda Application Protection could be improved with a more user-friendly interface to enable all types of people to be able to use it, especially the less technical users. More support categories should be integrated.

For how long have I used the solution?

I have been using Barracuda Application Protection for three years.

What do I think about the stability of the solution?

I find Barracuda Application Protection to be very stable.

What do I think about the scalability of the solution?

Barracuda Application Protection is very scalable. It grows with our needs in my organization.

How are customer service and support?

The customer support for Barracuda Application Protection has been very responsive and helpful in resolving all our issues on time. My user experience with them has been great and phenomenal.

Which solution did I use previously and why did I switch?

I previously used the Palo Alto Networks Next-Generation Firewalls PA-Series before switching to Barracuda Application Protection.

What was our ROI?

I have seen a return on investment from Barracuda Application Protection. Implementing it has had a measurable and strategic impact on our overall business objective. Within the first six months of deployment, we have seen a 60% reduction in security incidents affecting the web application, which directly translated into fewer service interruptions and less time spent on incident response.

What's my experience with pricing, setup cost, and licensing?

My experience with the pricing, setup cost, and licensing is that the setup was straightforward and easy with no hassle. The cost is relevant, pocket-friendly, and cost-effective.

Which other solutions did I evaluate?

Before choosing Barracuda Application Protection, I evaluated other options like HP and Juniper Access Points.

What other advice do I have?

My advice to others looking into using Barracuda Application Protection is that it is a great tool to have in your organization to prevent attacks from outside. It is a great tool that helps in bot identification and protecting all our applications in any organization. It is also cost-effective to provide zero-day vulnerabilities.

Barracuda Application Protection is the next-generation tool to protect all our organization apps and is very cost-effective.

I found this interview to be straightforward, very easy, and overall, great. I would rate this review a 9.


    Shivam M.

Best Web application firewall service from Barracuda

  • February 07, 2023
  • Review provided by G2

What do you like best about the product?
Easy integration and deployment, Able to work well as a layer 7 network protection device, Custom filtering rules are supported which brings WAf to advance level.
What do you dislike about the product?
Doesn't support SSL offloading, Reporting and dashboard can be improved further, Support services SLA should be improved. Device capabilities can be improved further.
What problems is the product solving and how is that benefiting you?
It is helping us in protecting our web application with OWASP top 3.2 top rules, we able to detect and prevent most of external attack using Barracuda WAF. This improved our business application performance as well as revenue.


    Information Technology and Services

Great way to protect web applications via an as-a-service platform

  • January 20, 2023
  • Review provided by G2

What do you like best about the product?
Barracuda WAF-as-a-Service offers a complete package as you would expect from a WAF, but everything is SaaS-based. The WAF-as-a-Service offers very detailed configuration possibilities.
What do you dislike about the product?
Sometimes it is difficult to configure the WAF to be fully proof. It takes some time before all the false positives are gone. But this is the case with every WAF.
What problems is the product solving and how is that benefiting you?
We use the WAF-as-a-Service to protect all our public facing web applications. In the past we had to install a WAF on premise but now everything is updated and maintained in the cloud


    Deepak S.

Barracuda WAF-as-a-Service

  • October 13, 2021
  • Review provided by G2

What do you like best about the product?
Configuring traditional web application firewalls can take days of effort. But Barracuda WAF-as-a-Service—a full-featured, cloud-delivered application security service—breaks the mold
What do you dislike about the product?
It gives you a lot of time to relax as the deployment is completed well before your deadline :)
What problems is the product solving and how is that benefiting you?
Barracuda WAF-as-a-Service offerred us Advanced Bot Protection that uses machine learning to continually improve its ability to spot and block bad bots and human-mimicking bots — while allowing legitimate human and bot traffic to proceed with minimal impact.
Recommendations to others considering the product:
Go-for-it. It leverages Azure’s extensive global presence and resource flexibility to meet data residency and availability needs at all times


    Accounting

Good Web Application firewalls to restrict most of Injection kind of attacks (Eg: XSS ,SQLI)

  • June 20, 2021
  • Review provided by G2

What do you like best about the product?
Most of the bypassing techniques as well our customized payload is perfecting intercepting form WAF side , it's very good to see
What do you dislike about the product?
Nothing i feel dislike in the web application firewall as a Service
What problems is the product solving and how is that benefiting you?
Most of the time Injection attacks , RateLimiting etc


    Retail

Great WAF tool for Applications Protection

  • May 17, 2021
  • Review provided by G2

What do you like best about the product?
It's give you advance protection in term of Application Security which will include OWASP, Bot and Malware protection
What do you dislike about the product?
Nothing as such found it in term of WAF as Service
What problems is the product solving and how is that benefiting you?
Application Security
WAF used as web Gateway
Complete DDOS protection