The Barracuda Web Application Firewall blocks application layer DDoS and other attack vectors, directed at online applications hosted in Microsoft Azure. Simultaneously, it provides superior protection against data loss. It also has strong authentication and access control capabilities for restricting access to sensitive applications and data.
Moving your IT Infrastructure to the Cloud? Utilizing Microsoft Office 365? Running on Microsoft Azure?
Barracuda Networks is your partner for various kinds of deployments in Microsoft Azure. We understand your IT needs and we’re acknowledged as “Microsoft Partner – Gold Application Development.” We are also “Microsoft Azure Certified.”
Barracuda Networks and Microsoft Azure
Barracuda Networks was the first Microsoft Azure Certified Security Solution Provider. The Microsoft Azure Certification assures that the Barracuda Solutions have been tested for readiness and compatibility with Microsoft Azure public cloud, Microsoft Cloud Platform hosted by service providers through the Cloud OS Network, and on-premises private cloud Windows Server Hyper-V deployments.
The Microsoft Azure Certification brings customers several benefits
Time of deployment is cut by 50-80%
Ease of deployment increased by 90%
Deployment bandwidth requirements are reduced to near-zero
Current and future Barracuda on Microsoft Azure products allow both evaluation and purchased licenses at deployment time
Microsoft works closely with Barracuda engineering, solutions architects and sales teams to create a great customer experience and make it easy for customers to leverage the Barracuda NG Firewall, Barracuda Email Security Gateway and Barracuda Web Application Firewall to move their applications into the Azure cloud securely.
The Barracuda Email Security Gateway and Barracuda Message Archiver offer best-of-breed email management, archiving, and security for organizations utilizing Microsoft Office 365. And there is more to come – stay tuned and learn about the latest innovations from Barracuda Networks and Microsoft Azure.
Securing Applications and Workloads on Microsoft Azure with the Barracuda Web Application Firewall.
Today, cloud computing has become a “must-have” to a majority of the enterprise IT community, for reasons ranging from economic gains to technology benefits. But one of the major concerns carrying over from traditional IT – data and application security – has not changed, and requires the same diligence in the cloud as with on-premises solutions.
The Barracuda Web Application Firewall blocks application layer DDoS and other attack vectors, directed at online applications hosted in Microsoft Azure. Simultaneously, it provides superior protection against data loss. It also has strong authentication and access control capabilities for restricting access to sensitive applications and data. The Barracuda Web Application Firewall is the first integrated, proven and highly scalable security solution on Microsoft Azure, offering comprehensive protection for web applications and for confidential data hosted in the cloud. This solution ensures that web applications have the same high levels of protection afforded by in-house data centers.
The Barracuda Web Application Firewall for Microsoft Azure is secure, affordable, and easy to use. It combines web application security, access control, and optimization in a single package that is easy and intuitive to set up and administer. With predefined security templates for web applications and third party packaged applications like Microsoft SharePoint, companies of all sizes can enjoy total application security with no need to learn, configure, and manage complex technology. It is fully integrated with Microsoft Azure and can dynamically scale to meet application performance and workload requirements.
The Barracuda Advantage
Barracuda Central Operations Center keeps track of emerging threats
State-of-the-art security utilizing full reverse-proxy architecture
Malware protection for collaborative web applications
Employs IP Reputation intelligence to defeat DDoS attacks
Designed to make it easier for organizations to comply with regulations such as PCI DSS and HIPAA
Cloud-based scan with Barracuda Vulnerability Manager
Automatic vulnerability remediation
Product Spotlight
Comprehensive inbound attack protection including the OWASP Top 10
Built-in caching, compression, and TCP pooling ensure security without performance impacts
Identity-based user access control for web applications
Built-in data loss prevention
ICSA certified
Constant Protection from Evolving Threats
The Barracuda Web Application Firewall provides superior protection against data loss, DDoS, and all known application-layer attack modalities. Automatic updates provide defense against new threats as they appear. As new types of threats emerge, it will acquire new capabilities to block them.
Identity and Access Management
The Barracuda Web Application Firewall has strong authentication and access control capabilities that ensure security and privacy by restricting access to sensitive applications or data to authorized users.
Affordable and Easy to Use
Pre-built security templates and intuitive web interface provide immediate security without the need for time-consuming tuning or application learning. Integration with security vulnerability scanners and SIEM tools automates the assessment, monitoring, and mitigation process.
Deployment:
The Barracuda Web Application Firewall provides proven application security and data loss prevention for your applications on Microsoft Azure, including:
Detecting and blocking attacks including SQL injections, Cross-Site Scripting, malware uploads, and volumetric or application DDoS.
Authentication and access control allowing organizations to exercise strong user control.
Scanning of outbound traffic for sensitive data, with admin control of masking or blocking information to prevent data leakage.
Built-in load balancing and session management, allowing organizations to manage multiple applications behind a single instance of the Barracuda Web Application Firewall.
Cloud hosted deployment of the Barracuda Web Application Firewall on Microsoft Azure currently supports One-Arm Proxy Mode.
Solution:
Securing Applications & Workloads in Microsoft Azure with the Barracuda Web Application Firewall
Today, cloud computing has become a "musthave" to a majority of the enterprise IT community, for reasons ranging from economic gains to technology benefits. But one of the major concerns carrying over from traditional IT – data and application security – has not changed, and requires the same diligence in the cloud as with on-premises solutions.
Typically, whatever threats you face in your physical data center will be present in a virtualized one. Thus, as you extend your applications to the cloud, you are also extending your notions of identity, network and access control, information protection, and endpoint security.
While Microsoft Azure is built on top of the same secure infrastructure as Bing, Microsoft.com, and Office 365, Microsoft Azure cannot block a poorly-designed web application from running on a VM, regardless of the security risks it might pose. With hundreds of lines of code to check - and vulnerabilities often subtle and hard to find - a serious data breach is often the first sign that a web application has problems.
Fortunately, the Barracuda Web Application Firewall for Microsoft Azure fills the functional gaps between cloud infrastructure security and a defense-in-depth strategy required to securely migrate applications to Microsoft Azure. It is the first integrated, fully scalable Web Application Firewall on Microsoft Azure.
Having secured thousands of production applications against more than 11 billion attacks since 2008, the Barracuda Web Application Firewall is the ideal solution for organizations looking to protect web applications or workloads deployed in Microsoft Azure. With predefined security templates and load balancing built in, companies of all sizes can enjoy total application security with no need to learn, configure, and manage complex technology.
Complete Application Security for Web Applications Deployed in Microsoft Azure
Barracuda Advantage
OWASP Top 10 Protection
Advanced DDoS Protection
Application Cloaking
Geo-IP Control
Botnet Detection
Data Loss Prevention
Integration with Azure AD
Scalable Security for Elastic Applications
Barracuda Advantage
Centralized Management & Administration
Automatic Configuration Sync across WAF clusters
Dynamically Registers Servers as you Scale
Publishing SharePoint in Microsoft Azure
Barracuda Advantage
Granular Identity Management
Client Access Control
Pre-built Security Templates for SharePoint
Application Security
Model Comparison:
Microsoft Azure
Level 1
Level 5
Level 10
Level 15
Capacity
Container Size
Small (D1)
Medium (D2)
Large (D3)
Extra Large (D4)
Virtual Cores
1
2
4
8
Throughput
100 Mbps
200 Mbps
400 Mbps
750 Mbps
HTTP Connections per Second
5,000
7,000
10,000
14,000
HTTPS Requests per Second
5,000
7,000
10,000
14,000
Features
Response Control
Advanced Threat Detection2
Outbound Data Theft Protection
File Upload Control
SSL Offloading
Authentication and Authorization
Vulnerability Scanner Integration
Protection Against DDoS Attacks
Network Firewall
Web Scraping Protection
Clustering
Config Sync
Config Sync
Config Sync
Config Sync
Caching and Compression
LDAP/RADIUS/Kerberos/Local User DB Integration
Load Balancing
Content Routing
Adaptive Profiling
URL Encryption
Antivirus for File Uploads
XML Firewall
JSON Security
Premium Support1
Optional
Optional
Optional
Optional
1 Premium Support ensures that an organization's network is running at its peak performance by providing the highest level of 24x7 technical support for mission-critical environments. 2 Requires active Advanced Threat Detection subscription
Technical Specs
Web Application Security
OWASP top 10 protection
Protection against common attacks
– SQL injection
– Cross-site scripting
– Cookie or forms tampering
Inegration with Barracuda NextGen Firewall to block malicious IPs
Heuristic Fingerprinting
CAPTCHA challenges
Slow Client protection
Layer 3 and Layer 7 Geo IP
Anonymous Proxy
ToR exit nodes
Barracuda blacklist
Authentication & Authorization
LDAP/RADIUS/Kerberos/ local user database
SAML 2.0
Azure AD
Client certificates
Single Sign-On
RSA SecurID
SMS PASSCODE
Supported Web Protocols
HTTP/S 0.9/1.0/1.1/2.0
WebSocket
FTP/S
XML
SIEM Integrations
HPE ArcSight
RSA enVision
Splunk
Symantec
Microsoft Azure Event Hub
Custom
XML Firewall
XML DOS protection
Schema/WSDL enforcement
WS-I conformance checks
Networking
VLAN, NAT
Network ACLs
Advanced routing
Management Features
Customizable role-based administration
Vulnerability scanner integration
Trusted host exception
Adaptive profiling for learning
Exception profiling for tuning
Rest API
Custom Templates
Logging, Monitoring & Reporting
System log
Web Firewall log
Access log
Audit log
Network firewall log
On-demand and scheduled reports
Centralized Management
Monitor and configure multiple Barracuda products from a single interface
– Check health and run reports
– Assign roles with varied permissions
– Available from anywhere
Support Options
Barracuda Energize Updates
Standard technical support
Firmware and capability updates as required
Automatic application definitions updates
Video:
Publishing and Securing your SharePoint Application
This overview video will show you how to publish and secure your SharePoint application using Barracuda and Azure.
Securing High Business Impact (HBI) Applications in Azure
This overview video will show give you an overview on how to secure HBI applications in Azure.