Overview
The Barracuda CloudGen Firewall is a purpose-built Cloud Generation Firewall engineered for rapid deployment and operation within dispersed, highly dynamic, and security-critical network environments on AWS. As an AWS Security Competency certified solution, it allows customers to offer secure remote access, secure office-to-cloud connectivity, and cloud network segmentation. The Barracuda CloudGen Firewall also enables branch office direct internet schemes.
Beyond its powerful network firewall, IPS, and VPN technologies, the CloudGen Firewall integrates an extensive set of next generation firewall technologies including comprehensive application control, availability, and traffic flow optimization across the wide area network, web filtering, antivirus, and network access control enforcement
Note: Download the standalone Windows management application Firewall Admin from Barracuda Download portal (https://dlportal.barracudanetworks.com ) to administer your CloudGen Firewall. PAYG licenses are targeted at cloud-on ramp with SD-WAN and network segmentation based use cases and don't include Anti-Virus or Advanced Threat protection. Please use the BYOL version if the latter are required.
Highlights
- Secure Remote Access: Built-in state-of-the-art SD-WAN engine combines multiple remote access and WAN opt technologies to offer optimized and secure access to cloud resources for office and mobile users using any type of device.
- Granular Traffic Control and Visibility: Enterprise-grade firewalling allows segmentation and full visibility of network traffic within VPC and between locations based on application, static or dynamic ports, user identity and many others.
- Comprehensive Threat Protection: Integrated IPS engine provides complete and comprehensive real-time network protection against a broad range of network threats.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
|---|---|
c5n.large Recommended | $1.10 |
t3.medium | $1.10 |
c6a.12xlarge | $3.40 |
t2.2xlarge | $2.86 |
c5n.4xlarge | $5.72 |
c6in.8xlarge | $3.40 |
t2.medium | $1.10 |
c6in.large | $0.95 |
c7i.large | $0.95 |
c7i.8xlarge | $3.40 |
Vendor refund policy
Terminate the instance at any time to stop incurring charges.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
Use the Windows management tool Barracuda Firewall Admin available from the Barracuda Download Portal to connect. The username is "root" and default password is the instance ID. For more information visit https://campus.barracuda.com/doc/170821021/
Resources
Support
Vendor support
Email and Phone Support offered 24x7 without any phone trees. You will actually speak to a live person. Please have your AWS Account ID available when you contact Barracuda Support. Support Phone Numbers:North America - 408 342 5300 Europe - +44 (0) 1256 300 102 Australia - +612 8019 7254 China - +86 400 720 8200 Japan - +81 3 5436 6236 India - +91 804 904 8600 Germany, Austria, Switzerland - +43 (0) 508 100 800 Website:https://www.barracuda.com/support E-mail:support@barracuda.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Integrated threat protection has secured remote access and now needs smoother monitoring integration
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
I do get a lot of use cases to contact the technical support. One is starting from the integration standpoint and starting from the initial deployment standpoint. The deployment strategy was quite complicated considering the nature of deployment strategy that we have chosen. During the integration phases, we do contact their technical support.
I'll rate the technical support at an average of seven. The reason is they are good at certain phases of the support, and not at certain phases of the support. When I say certain phases of the support, when you are buying the product and when you are deploying at the initial phase, they are quite supportive because they wanted to establish their mark in the organization. But once everything is done and once when we are trying to configure the use cases or probably the integration phase with other tools, the support we expect at that phase of the project is not bad, but quite average. There might be a lot of reasons behind it as well. I do understand that because the kind of customer service that we would have adopted, there are a lot of customer service options available, such as gold or silver. Probably the option that we have chosen as an organization might not be better. I am not sure. But during the integration phase, I would say it is quite average. On a scale of ten, I rate it seven.
How was the initial setup?
Which other solutions did I evaluate?
What other advice do I have?
Improved hybrid connectivity and centralized control have supported branch networks but need simpler UI and stronger AI security
What is our primary use case?
Barracuda CloudGen Firewall is for cloud security because cloud service providers like Azure , AWS , and GCP provide interfaces where organizations need to install different firewalls to secure their infrastructure. The normal security gateway or three-layer firewall they offer is not sufficient to control current threats. Barracuda CloudGen Firewall can protect infrastructure from Layer 7 aspects.
Barracuda CloudGen Firewall is designed for organizations with multiple branches and hybrid cloud environments. It provides strong SD-WAN capabilities including intelligent routing, failover, and link optimization. For example, if a company has offices in different locations such as Pune, Bangalore, and the US, and the MPLS link fails, the firewall automatically switches traffic to broadband without any downtime. Additionally, connecting AWS VPC to on-premises networks is straightforward and secure.
What is most valuable?
The support for distributed and hybrid environments is the best aspect I appreciate about Barracuda CloudGen Firewall. It provides strong SD-WAN capabilities including intelligent routing, failover, and link optimization. If a company has offices in different locations such as Pune, Bangalore, and the US, and the MPLS link fails, the firewall automatically switches traffic to broadband without any downtime. Connecting AWS VPC to on-premises networks is straightforward and secure.
Another valuable feature is easy centralized management. From one single console, I can manage multiple firewall policies, rules, and updates very easily. From a security coverage perspective, it provides good security coverage including firewalling, IPS, VPN, web filtering, and malware protection. The most important aspect is that while enabling these features, it works in real life and functions very well according to the defined policy.
For mid-size and small-size organizations, a cost-effective solution is the fourth and most important point. If I were to buy a similar solution from competitors such as Palo Alto, Cisco, or Check Point , they offer this solution at a higher cost. Where cost is a concern for an organization, Barracuda CloudGen Firewall is a good choice.
Strong hybrid SD-WAN capabilities are the best feature I have seen. The availability has increased significantly due to good SD-WAN capabilities that bring features including intelligent routing, failover, and link optimization. If anything fails in a disaster scenario, the failover is very smooth, so the end user will not realize what exactly happened at the perimeter. Additionally, good link optimization capabilities improve user experience when accessing different public resources. Since we are moving from browser segments to application segments, a good strong link is necessary. From that perspective, it is very much easier to configure link optimization and user experience is excellent.
What needs improvement?
From a user interface perspective, I do not see that much cleanliness compared with other vendors such as Palo Alto and Check Point . While creating policies, some settings are hidden inside multiple menus, which makes it slightly confusing, and a person who has never used Barracuda CloudGen Firewall may need some time to learn that. The user interface and learning curve need to be more simple.
From an advanced threat perspective, AI-driven detection and deep endpoint integration may need some more improvement. Nowadays, to enable advanced threat protection, organizations may require some additional tools for complete protection. That is another improvement area.
From a performance and scaling perspective, I have seen that performance can be impacted when all security features are enabled. That is why I recommend that this solution is not ideal for enterprise-grade environments or organizations. Additionally, from an ecosystem and integration point of view, there is a smaller ecosystem compared to leading firewall vendors. Integration with third-party tools requires additional efforts. For example, integration with SIEM tools such as Splunk works but needs some manual setup. These are the improvement areas for Barracuda CloudGen Firewall in my view.
Nowadays, AI is everywhere, and every solution infuses AI for product portfolio enhancement. However, when we infuse AI, we need to take care of other aspects as well because AI can help us enhance our cybersecurity posture, but at the same time, it can be a nightmare that brings attackers. We need to use caution while enabling any AI-driven features. From an overall rating perspective, I would say it is medium. I do not see anything exceptional with the AI.
For how long have I used the solution?
I have used Barracuda CloudGen Firewall since my TCS days, and I have been using it for almost four to five years.
What do I think about the stability of the solution?
Barracuda CloudGen Firewall is a stable solution. I have not experienced any crashes or downtime. However, when all features are enabled, there are some performance spikes that occur.
What do I think about the scalability of the solution?
I can handle growth and larger workloads easily with Barracuda CloudGen Firewall. I do not see any problem with the scalability aspect.
How are customer service and support?
From a customer support perspective, I would rate it at eight. The knowledge base is also good. Whenever I faced any issues and searched the knowledge base, I found many solutions in place.
Which solution did I use previously and why did I switch?
I have not switched from anything, as I work with various products in my portfolio. I have worked with Barracuda CloudGen Firewall, Fortinet, and Palo Alto, so I have worked with all these leading vendors. As required, I need to work with different vendor solutions. For me, it is about the technology and the firewall. The vendor may be different, and based on the project, I need to work on different tools.
What was our ROI?
From a money saved perspective, it is almost more than fifty percent money saved. Due to its feature set, the user experience also improved by around fifteen to twenty percent.
What's my experience with pricing, setup cost, and licensing?
Although I am not directly involved in that particular segment, from what I understood from the pricing information, it is a very cost-effective solution compared with other well-known firewall vendors that are in the market.
Which other solutions did I evaluate?
I evaluated Fortinet and Palo Alto as solutions.
What other advice do I have?
From a user interface perspective, I do not see that much cleanliness compared with other vendors such as Palo Alto and Check Point. While creating policies, some settings are hidden inside multiple menus, which makes it slightly confusing, and a person who has never used Barracuda CloudGen Firewall may need some time to learn that. My advice to others looking into using Barracuda CloudGen Firewall is that if an organization is mid-size or small-size, it can easily use Barracuda CloudGen Firewall. However, if it is a large or enterprise organization, you must think it through. If an organization is moving into the cloud and has a smaller footprint, Barracuda CloudGen Firewall can be used because in the cloud, organizations are getting a clean pipe solution. It is easy to use it in a cloud environment with minimal application solutions. My overall rating for this product is six.
Enterprise-Level Firewall at a Great Value, with Unmatched Barracuda Support
Impressive Automation and Easy Cloud Integration with Deep Threat Protection
Security has protected our data centers but support gaps and limited expertise remain challenging
What is our primary use case?
Barracuda CloudGen Firewall is used to protect data in two data centers, including headquarters and data center H5O.
What is most valuable?
I am using calls functionality from DLP forwarding calls and SSL inspection in Barracuda CloudGen Firewall , and all of those are necessary to be used. I cannot qualify which is more important than others, but it is a complete product, and I am using all features.
What needs improvement?
I don't know about the centralized management console for managing policies in Barracuda CloudGen Firewall. We are not using it, and I don't know what that is. My vendor didn't provide me information about such a feature.
There are a lot of functionalities already present, but the problem is whether there is knowledge about the functionalities or stability.
Barracuda can make improvements for the next generation firewall product. In general, it is a very rare product in our market. More training and more learning for customers on how to use these products are needed. We are suffering from a lack of engineers in our market, so I am considering changing the product to a more popular one because it is not easy to recommend Barracuda, even this great product, but nobody uses it in Poland, and it is not easy to do anything. I know just one company which is supporting us.
Concerning the effectiveness of the filtering capabilities in Barracuda CloudGen Firewall, it happens sometimes that the classifications are misleading with wrong categorizations of what they use into the games or something into categories when it is definitely not in the category. I don't know from what reasons, but maybe it could be adjusted.
For how long have I used the solution?
I have been working with Barracuda CloudGen Firewall since 2016 in one location, and in the second one, it has been three years.
What do I think about the stability of the solution?
For stability, I would rate the next generation firewall stability of the product an eight.
What do I think about the scalability of the solution?
Regarding scalability and the ability to scale and expand with Barracuda CloudGen Firewall, there is no issue, so I would rate it a ten.
How are customer service and support?
I would rate the technical support for Barracuda CloudGen Firewall a six, as in the past, it was definitely better, but recently it has not been as good.
Which solution did I use previously and why did I switch?
I compared Barracuda CloudGen Firewall mainly with FortiGate.
How was the initial setup?
For the initial setup of Barracuda CloudGen Firewall, it was a bit more complex than simple; I would rate it at six on a scale from one to ten.
What about the implementation team?
I used a third-party company for the integration and setup of Barracuda CloudGen Firewall. I have some knowledge about the product and in-house capability, but I am relying on the third-party company for the purposes of integrations and new products.
Which other solutions did I evaluate?
The key reason I chose Barracuda over FortiGate is that I have been using Barracuda since 2016 or even 2015, and I am just used to it. It is stable, it is working, and there are no issues. However, to develop and use new features, I am lacking specialists, which is why it is not easy to expand with Barracuda CloudGen Firewall.
What other advice do I have?
I do not use the SD WAN capabilities of Barracuda CloudGen Firewall.
Threat protection feature in Barracuda CloudGen Firewall is working. I have not had much experience with other products, so I didn't support any issues with that module. It is working just fine.
I was a long-time strong fan of this product, but unfortunately, I will change the vendor for another one. Therefore, I cannot recommend it. If someone can set up things in-house with specialists, then it is quite a good product. There are not so many critical incidents, but probably mostly because it is not so popular. The pain point for me is support. In general, with a small scale, I was able to manage it myself, but with a wider scale, it is not possible to rely on in-house specialists, and there is no specialist available on the market. I would give this review an overall rating of seven.