Barracuda Web Security Gateway Overview:
To stay competitive in today’s connected world, you and your team need to interact constantly with web-based resources and applications. Unfortunately, the web is also a vector for malware and advanced threats — not to mention the additional risks of lost productivity and wasted bandwidth.
Barracuda Web Security Gateway lets you enjoy the benefits of web connectivity without the risks. Use dozens of predefined content-filtering categories, or take granular control over web application activity down to the individual user. Integrated social-network activity monitor and antivirus keeps you safe — and the available Advanced Threat Protection uses cloud-based analysis to find and block unknown and zero-day threats before they reach your network.
Constantly evolving capabilities
Barracuda Web Security Gateway is continually updated with the latest malware signatures, suspicious URL listings, and online application functionality. And as new requirements emerge — such as the need to monitor and regulate social-networking activities — upgrading with new capabilities is automatic, and always transparent.
Knowledge is power
Barracuda Web Security Gateway’s intuitive management interface delivers detailed, real-time visibility into network activity and web interactions. This lets you identify users and applications that waste bandwidth and harm productivity, and enforce granular policies to regulate access without impacting legitimate business uses.
Security without boundaries
Enforcing access policies on remote devices that are used off-network is critical for preventing malware intrusions into the network, and for preventing data loss. Barracuda Web Security Gateway includes unlimited licenses for agents and tools that ensure users and devices are protected whenever they access the web — whether they’re on or off your network.
Model Comparison:
Model Comparison |
210 |
310* |
410* |
610b* |
810b* |
910 |
1010 |
Throughput (Mbps) |
10 |
350 |
750 |
1,700 |
3,500 |
3,800 |
6,500 |
Concurrent Users |
100 |
400 |
800 |
8,000 |
16,500 |
20,000 |
35,000 |
Form Factor |
Desktop |
1U Mini |
1U Mini |
1U Fullsize |
2U Fullsize |
2U Fullsize |
2U Fullsize |
Dimensions (in) |
10 x 2 x 8.3 |
16.8 x 1.7 x 14 |
16.8 x 1.7 x 14 |
16.8 x 1.7 x 22.6 |
17.4 x 3.5 x 25.5 |
17.4 x 3.5 x 25.5 |
17.4 x 3.5 x 27.9 |
Weight (lb) |
5.2 |
12 |
12 |
26 |
46 |
52 |
75 |
AC Input Current (amps) |
1.0 |
1.2 |
1.4 |
1.8 |
4.1 |
5.4 |
7.2 |
Ethernet Passthrough |
|
1 x Gigabit |
1 x Gigabit |
1 x 10 Gigabit |
1 x 10 Gigabit |
1 x Gigabit1 |
2 x 10 Gigabit |
Redundant Disk Array (RAID) |
|
|
|
Hot Swap |
Hot Swap |
Hot Swap |
Hot Swap |
ECC Memory |
|
|
|
|
|
|
|
SSL Acceleration Hardware |
|
|
|
|
|
|
|
Redundant Power Supply |
|
|
|
|
Hot Swap |
Hot Swap |
Hot Swap |
Optional 10GbE Fiber |
|
|
|
|
|
|
|
Hardened and Secured OS |
|
|
|
|
|
|
|
Content Filtering |
|
|
|
|
|
|
|
Application Control |
|
|
|
|
|
|
|
Advanced Policy Creation |
|
|
|
|
|
|
|
Network Threat Protection |
|
|
|
|
|
|
|
Malware Detection and Alerting |
|
|
|
|
|
|
|
Role-Based Administration |
|
|
|
|
|
|
|
Web Application Control |
|
|
|
|
|
|
|
Syslog |
|
|
|
|
|
|
|
SSL Inspection |
|
2 |
|
|
|
|
|
SNMP/API |
|
|
|
|
|
|
|
Linked Management |
|
|
|
|
|
|
|
WCCP |
|
|
|
|
|
|
|
Remote Filtering Agent |
|
|
|
|
|
|
|
Social-Media Monitoring |
|
|
|
|
|
|
|
*Also available as virtual appliances for data center environments. Specifications subject to change without notice.
1Optional Model 910B comes with 10Gigabit interface in copper or fiber
2Limited capabilities see link for details https://techlib.barracuda.com/WF/UsingSSLInspection
Security Features
Content Filtering
- HTTP/HTTPS support
- URL filtering by category
- Image and YouTube safe search
- File type blocking
- Anonymous proxy detection
- SSL Inspection (Model 310 and above)
Application Control
- IM & P2P blocking
- Internet application blocking, including proxy applications (e.g., hotspot shield)
- IP and port blocking
- Google Apps controls
Advanced Policy Creation
- Default guest and user policies
- User and group policy exceptions
- LDAP integration
- Single sign-on user authentication
- Terminal server support
- Local users and groups
- Directory services supported: MSAD, NTLM, Kerberos, LDAP, Google Directory
- Network IP address policies
- Time-of-day policies
- Custom categories
- Bandwidth quotas
- Temporary Access Portal
Network Threat Protection
- Spyware site blocking
- Malware download blocking
- Dual-layer virus protection
- Detection of infection activity
- Spyware protocol blocking
Remote Filtering
- Web security agent for Mac OS and Windows with client-side SSL inspection
- Global proxy settings
- Chromebook security extension
Advanced Threat Detection
- Available integration with Barracuda ATP service (all models except 210)
- Additional protection against:
– Ransomware
– Advanced Persistent Threats
– Polymorphic viruses
– Zero-hour malware
Social Media Control
- Web application control
- Social media monitoring
- Suspicious keyword alerts
- Anti cyber-bullying and anti-terrorism keyword alerts
Support Options
Barracuda Energize Updates
- Standard technical support
- Firmware and capability updates as required
- Automatic virus and spyware definition updates
- Dynamic URL classification with real time cloud based lookups
Instant Replacement Service
- Replacement unit shipped next business day
- 24x7 technical support
- Hardware refresh every four years
System Features
- Web-based interface
- Secure remote administration
- Web acceleration/caching
- VLAN support
Integrated Reporting Engine
- Graphical summaries
- Customizable dashboards
- Detailed user and group reports
- Bandwidth report
- Time/session reporting
- Report scheduling and exporting
- Multiple formats for report exporting
- Malware infection notifications
Barracuda Web Security Gateway FAQ:
Does the Barracuda Web Security Gateway support off-network users?
Yes. The Barracuda Web Security Agent comes with the Barracuda Web Security Gateway 410 and higher models. The Barracuda Web Security Agent is downloadable client software for installation on off-network Windows and Mac computers. The agent provides the same malware protection and policy enforcement as configured on the Barracuda Web Security Gateway appliance. Administrators can configure the agent to either route traffic through a central Barracuda Web Security Gateway or route traffic through a local gateway to lookup policies and enforce rules locally.
Can the Barracuda Web Security Gateway block different sites for different users?
Yes, the Barracuda Web Security Gateway lets administrators customize policies for specific users, groups, and IP address ranges in the organization. Administrators can also establish time ranges for those policies.
Custom policy examples:
- To prevent users from job hunting while at work, create a policy that gives only the human resources group access to job-board sites.
- Defining separate access policies for teachers and students.
- Grant unrestricted web access to compliance officers for investigations.
- The Barracuda Web Security Gateway integrates with LDAP directory servers for user and group membership information. It also integrates with Windows domain controllers for easy user authentication.
What kinds of directory servers are supported?
The Barracuda Web Security Gateway supports any LDAP compatible directory server, including Active Directory, Domino Directory, eDirectory and Open LDAP.
How are users authenticated?
The Barracuda Web Security Gateway supports three types of authentication:
- For Windows domains, the Barracuda Web Security Gateway has Barracuda DC Agent software to install on Windows Domain Controllers. This software monitors Windows login events and maps Windows user names and IP addresses to the Barracuda Web Security Gateway to transparently apply user policy.
- When users try to access a blocked resource, the Barracuda Web Security Gateway displays a page that requests a username and password. This method doesn't require the Barracuda DC Agent or configuring users' browsers.
- If configured in forward proxy mode, the Barracuda Web Security Gateway can use standard proxy authentication in which browsers send the authentication credentials in the HTTP headers. This form of authentication can require a one-time configuration of users' web browsers. Proxy authentication is not compatible with the Barracuda Web Security Gateway while running in transparent mode.
If I have a proxy server in my network, how would I deploy the Barracuda Web Security Gateway?
The Barracuda Web Security Gateway can work with your proxy server either as a cascading proxy server or in transparent mode. We normally recommend replacing a proxy server with the Barracuda Web Security Gateway.
Can the Barracuda Web Security Gateway operate in VLAN environments?
Yes. The Barracuda Web Security Gateway is fully compatible with VLAN environments.