The product has fantastic support services. It provides complex solutions, including block mode and other default protection features.
Sr IT Manager at a financial services firm with 11-50 employees
Stable product with a simple setup process
Pros and Cons
- "The product has fantastic support services."
- "We encountered a few glitches while implementing API security features into the product."
What is most valuable?
What needs improvement?
We encountered a few glitches while implementing API security features into the product. Secondly, they could provide transparency for different types of protection parameters available. It will be beneficial if there is some visibility for the same. We faced some downtime issues the last two times due to Barracuda infrastructure. Thus, we are searching for alternate WAF solutions.
For how long have I used the solution?
We have been using Barracuda Web Application Firewall for two years.
What do I think about the stability of the solution?
I rate the platform's stability a ten out of ten.
Buyer's Guide
Barracuda Web Application Firewall
December 2024
Learn what your peers think about Barracuda Web Application Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
What do I think about the scalability of the solution?
I rate the product's scalability nine out of ten. It is suitable for enterprise businesses.
How are customer service and support?
The technical support services are fantastic. They share the knowledge transparently. This feature is more exceptional than that of other vendors.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup process is simple. We have deployed the product on the cloud.
What other advice do I have?
I rate Barracuda Web Application Firewall a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network Security and Infrastructure Engineer at a tech services company with 201-500 employees
Good security for layer seven but repeat issues with appliance failures and system crashes
Pros and Cons
- "The solution ensures layer seven is secure from attacks."
- "There are issues when upgrading firewalls and we experience different issues across customers."
What is our primary use case?
Our company uses the solution to provide customers with a proxy service that secures transcriptions as part of a seven-layer process. We currently provide this service to twenty customers.
What is most valuable?
The solution ensures layer seven is secure from attacks.
The scripting is good.
What needs improvement?
Layer four could be more secure like layer seven to prevent HTTP and HTTPS attacks.
There are issues when upgrading firewalls and we experience different issues across customers. The communication metrics, ports, traffic, source, destination, and service must be enabled to upgrade firmware but there is no documentation or article for opening the communication matrix to upgrade smoothly.
STM crashes are a repeat issue and they wipe out appliances. Each time, we have to open a ticket with support and get Apache to fix the issue. It is unclear why appliances have issues or fail and need to be recovered with Apache.
Firmware upgrades cause automatic configuration changes without providing notifications. Configurations such as ports should not be changed automatically because they negatively affect customers. One customer's configuration issue was within the third layer and took seven days to solve. Support mitigation and work describes policies created automatically after upgrading firewalls but we already created and want to retain our own policies.
For how long have I used the solution?
I have been using the solution for two years.
What do I think about the stability of the solution?
The solution is stable but ongoing issues with appliance failures, system crashes, and upgrading firmware affect its smooth operation.
How are customer service and support?
I opened a support ticket for resolving issues when upgrading firewalls. Support could not get to the issue and did not inform me to check traffic on the firewall. It is important to determine what is plugged in when a parameter is trying to communicate outside to download and upgrade firmware to the latest version. The issue was ongoing for three months until I accidently detected it myself.
Tickets are not solved in one day and sometimes I have to close tickets without any solution from support. Only tickets at the second or third escalation level receive support.
How was the initial setup?
The setup is straightforward and installation can be finished in one day.
What about the implementation team?
We implement the solution for customers.
What's my experience with pricing, setup cost, and licensing?
The solution is based on a licensing model and might be $360 for the hybrid version.
Which other solutions did I evaluate?
We have to migrate to another vendor because the solution no longer supports issues with the stack hub.
We are a partner with Barracuda so recommend the application firewall to our customers but we now have thirteen customers who use Azure stack hub and cannot receive support. We communicated this issue with Barracuda's Middle East management and they suggested using a container as a service. We tried this in our lab but had issues with the installation which we finally resolved. We have some concerns about data being exposed because it is in the cloud. Our customers are administrators and will not accept their data being exposed.
We would rather work with Barracuda because we have experience with their application firewalls and that makes it easier to support customers. We will have to go to another vendor and take classes to become experts.
What other advice do I have?
I rate the solution a seven out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Barracuda Web Application Firewall
December 2024
Learn what your peers think about Barracuda Web Application Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Director Of Technology at PT Exa Teknologi Indonesia
Has efficient advance threat protection capabilities but the features for CMS integration needs improvement
Pros and Cons
- "The product's advanced bot and threat protection capabilities are valuable."
- "There's potential for improvement in the platform's CMS integration."
What is our primary use case?
Our primary use case for this platform is to protect our web applications.
What is most valuable?
The product's advanced bot and threat protection capabilities are valuable.
What needs improvement?
There's potential for improvement in the platform's CMS integration.
For how long have I used the solution?
I've been using Barracuda Web Application Firewall for five years now.
What do I think about the stability of the solution?
The platform has been quite stable, with minimal disruptions in our operations.
What do I think about the scalability of the solution?
I would rate this solution a ten for scalability.
How are customer service and support?
The customer service and support have been responsive and helpful whenever we've needed assistance.
How was the initial setup?
The initial setup was straightforward.
What about the implementation team?
We implemented the product with the help of a vendor.
What's my experience with pricing, setup cost, and licensing?
The product pricing was competitive for the value it offers regarding security features.
Which other solutions did I evaluate?
We evaluated other solutions like FortiWeb but chose this platform due to its comprehensive feature set and scalability options that suited our needs better.
What other advice do I have?
The platform has been a reliable choice for securing our web applications. I recommend exploring their support and training offerings to maximize their effectiveness.
I rate it a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Last updated: Jul 9, 2024
Flag as inappropriateSophos Certified Product Architect at Softech Microsystems
Provides an end-to-end approach, is easy to set up, and includes active and offline DDoS
Pros and Cons
- "We only need one subscription to be protected against both active DDoS and offline DDoS attacks."
- "In the Barracuda Web Application Firewall, there should be more affordable options for WAF as a service."
What is our primary use case?
People who host their applications on the cloud, global servers, on-premises, or various locations may encounter issues related to IT threading as well as volumetric attacks. To address these challenges, we provide the Barracuda Web Application Firewall. The most significant advantage of the Barracuda Web Application Firewall is that it offers a single subscription for Active DDoS protection.
There are two types of DDoS attacks: active DDoS and offline DDoS. With Barracuda Web Application Firewall, we only need one subscription to be protected against both. In contrast, other solutions and competitors often require separate subscriptions for DDoS protection, making their offerings more expensive.
When it comes to a comprehensive web application firewall solution, Barracuda stands out by providing an affordable and end-to-end approach. In comparison, other market solutions typically consist of separate boxes for different features, leading to higher pricing.
What is most valuable?
We only need one subscription to be protected against both active DDoS and offline DDoS attacks.
What needs improvement?
In the Barracuda Web Application Firewall, there should be more affordable options for WAF as a service. These options should cater to smaller businesses, with a focus on single-size configurations for fewer users and cloud applications. We currently offer WAF as a service for cloud-deployed applications, but the pricing is somewhat on the higher side. To enhance the service, I suggest that they work on improving their pricing strategy. It's crucial to provide competitive pricing in comparison to other competitors in the market.
For how long have I used the solution?
I am currently using the Barracuda Web Application Firewall.
What do I think about the stability of the solution?
I give Barracuda Web Application Firewall nine out of ten for stability.
What do I think about the scalability of the solution?
I give Barracuda Web Application Firewall nine out of ten for scalability.
How was the initial setup?
I would rate the initial setup a ten out of ten for its ease.
Usually, deployment takes three to four weeks because it depends on the customer and what we can observe from their side. What SLA or scope of work have they shared with the partner? In essence, we are not a direct partner of Barracuda; instead, we serve as the brand custodian for multiple brands such as Sophos and Barracuda. During the deployment phase, we are not directly involved with the customers. Sometimes, the queries pertain to deployment issues or technical problems. For such cases, we typically respond within two to four hours, or at most, one to two days, depending on our schedule. Since we cater to multiple brands and settings, we are not exclusively focused on one particular brand. Our role involves supporting multiple brands and setting up various solution abilities or designs.
For instance, if a customer approaches us for web services, we can offer Sophos Firewall web services. However, if they require a dedicated web solution, we provide them with a Barracuda solution. In cases where the customer has budget constraints, we try to migrate them to cloud-based solutions. Consequently, we refer to them as end customers or partners as per the situation.
In most cases, we are not directly involved in the deployment phase, the configuration process, or the setup. However, we usually gather feedback from our partners or new partners, and based on that, I can estimate that the deployment will take around two to three weeks. The timeline depends on the specific requirements or wishlist of the end customer.
What's my experience with pricing, setup cost, and licensing?
The Barracuda Web Application Firewall is quite expensive. The license is available on an annual or three-year term, with no monthly, quarterly, or semi-annual options. There is a bigger discount applied when a customer signs up for a three-year term.
What other advice do I have?
I would give Barracuda Web Application Firewall nine out of ten.
Barracuda Web Application Firewall is marketed for the enterprise segment because of its high cost.
Barracuda Web Application Firewall is a comprehensive and dedicated web application firewall, and I highly recommend it.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Presale Engineer at Softprom by ERC
Has good stability and an easy setup process
Pros and Cons
- "The initial setup is easy."
- "Barracuda Web Application Firewall’s scalability needs improvement."
What is most valuable?
The product has valuable technical features.
What needs improvement?
Barracuda Web Application Firewall’s scalability needs improvement.
For how long have I used the solution?
We have been using Barracuda Web Application Firewall for two years now. At present, we use the latest version.
What do I think about the stability of the solution?
I rate the product's stability a ten out of ten.
What do I think about the scalability of the solution?
The product has low scalability, and it is three out of ten. It could be improved.
How was the initial setup?
The initial setup is easy. I rate the process a ten out of ten. It takes a month to complete.
What about the implementation team?
We implement the product with the help of a reseller.
What's my experience with pricing, setup cost, and licensing?
The product is inexpensive. I rate its pricing a two out of ten. We purchase its monthly license.
What other advice do I have?
We have medium businesses as our customers for Barracuda Web Application Firewall. I recommend it to others and rate it a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
IT Administrator at SPSP
A scalable solution that protects internal applications from cybersecurity threats and provides fantastic technical support
Pros and Cons
- "Parameter Protection is a valuable feature."
- "We get false positives about phishing emails."
What is our primary use case?
We use the solution to protect our internal applications from cybersecurity threats.
What is most valuable?
Parameter Protection is a valuable feature. Most of the features are quite useful. It is a helpful tool. It helped us with penetration testing.
What needs improvement?
We get false positives about phishing emails. The vendor must improve Barracuda Email Security Gateway.
For how long have I used the solution?
I am using the solution currently.
What do I think about the stability of the solution?
The tool is quite stable. I have no issues with it. It depends on the fine-tuning of customized applications based on our requirements.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and support?
The technical support is fantastic.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup was easy. However, we needed to do some fine-tuning in the applications. It was not difficult.
What other advice do I have?
Overall, I rate the tool a ten out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network secur eng at Qatar Free Zone
Great technical support, good stability, and offers reasonable pricing
Pros and Cons
- "Even when we were upgrading to a new OS, we didn't have any difficulties with the product. The stability is good."
- "While the UI is good, it can get a little bit complicated."
What is our primary use case?
We primarily use this solution for security purposes. We use it as a firewall.
What is most valuable?
The interface is great. It's one of the most valuable aspects of the solution.
The visibility we are able to achieve is quite good.
The traffic monitoring is very helpful and the URL filtering has been excellent.
Even when we were upgrading to a new OS, we didn't have any difficulties with the product. The stability is good.
We have found that the technical support is very good.
The pricing of the product isn't overly expensive.
What needs improvement?
While the UI is good, it can get a little bit complicated. It's not like Next-Gen Firewalls. I need to remember all of the tabs. The sub-tabs should be at the right as they are in the Next-Gen. Mostly, Next-Gen firewalls have everything on the left panel and it will reappear. It would be nice if there was a little more consistency.
I only really have one year of experience with the solution. Therefore, it's hard to discuss missing features. I need more time to explore the product first.
For how long have I used the solution?
I have been using the solution for one year.
What do I think about the stability of the solution?
We haven't had any issues with the stability or the performance, even when switching to a new OS. It's reliable. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
While the solution may be scalable, I don't have enough background to really comment. I haven't been involved in scaling.
How are customer service and technical support?
Technical support is quite good. That's the main reason everyone is shifting to Barracuda.
It's from India. I'm in the Middle East. Even though the product is from the UAE, the Middle East, the support is from India. They have good engineers that are well-trained. That said, if you need an L3 issue resolved, those engineers are from other regions. Typically an Indian tech will communicate with the other region directly. The support in the case of L3s likely comes from Europe. In any case, everyone is very helpful and responsive, and we are satisfied with the level of support.
How was the initial setup?
The initial setup is not overly complex or difficult. It's easy enough to execute. That said, the burden has to be getting a bit of the knowledge in regards to routing. That's a tricky area. However, it's pretty much the same as a Next-Gen Firewall configuration.
What's my experience with pricing, setup cost, and licensing?
The pricing is okay, however, there are a few other competitors that are a little bit lower. It's still reasonable.
What other advice do I have?
I'm an end-user and a customer.
I would rate the solution at an eight out of ten. Sometimes the solution can be tricky around filtering, which is why I don't give it perfect marks.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Especialista en Informática at a maritime company with 5,001-10,000 employees
Stable with good security and a fairly straightforward setup
Pros and Cons
- "The initial setup is pretty straightforward, especially if you enlist assistance."
- "We've had some blocks of the application and some false positives."
What is our primary use case?
The solution is our WAF for Azure. It is for operation for Transit CAS applications.
What is most valuable?
We primarily use the solution for the protection of the active WAF. It offers quite good security.
The solution is stable.
The initial setup is pretty straightforward, especially if you enlist assistance.
What needs improvement?
We've had some blocks of the application and some false positives. Barracuda needs to ensure there are fewer false positives in general. There also needs to be less of a learning curve on the application in general. That might help us eliminate false positives as well. Basically, they need to help new users better learn and understand the solution.
I have an issue with the console currently. I cannot access the console from inside the network. When I access the entire network, it kicks me off all the time. I opened a case with technical support. We've checked the firewall the perimeter firewall, and we've tried to fix that problem, however, it's still the problem. I have to access the console from outside all the time to this day.
For how long have I used the solution?
I've been using the solution for a while now. It's been about five years.
What do I think about the stability of the solution?
The stability is okay. We don't have issues with the reliability of Barracuda. There aren't bugs or glitches. It doesn't crash or freeze at all. I'd describe it as stable for the most part.
What do I think about the scalability of the solution?
The scalability may be okay. However, we have only one Barracuda gateway. We don't really need to scale the solution fight now.
We might have about 500 users within our company using the solution right now.
How are customer service and technical support?
I've reached out to technical support in relation to a console problem and they have yet to fix the issue for us. All they've done is told me to check the firewall, which I have, and to install a new version. I upgraded the version, however, the issue persists. They haven't been extremely helpful and I'd have to say that I am disappointed with their level of service so far.
Overall, I would rate the support at an eight out of ten.
Which solution did I use previously and why did I switch?
We also use Imperva. We use both solutions at once.
How was the initial setup?
I'm not the administrator of the installation process. Therefore, it's hard for me to say if it was difficult or complex. I can't really comment on the initial implementation.
That said, it's my understanding, from talking to the administrator in the past, that it wasn't too complex.
I'm not sure how long the deployment took. I only really deployed the last application protection.
What about the implementation team?
We had the support of the partner for the implementation, which helped iron out any difficulties.
What other advice do I have?
We're just a transportation company. We're a customer. We don't have a business relationship with Barracuda.
I recommend the solution to other organizations for protecting applications specifically in Azure.
Overall, I would rate the solution at a nine out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Barracuda Web Application Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Web Application Firewall (WAF)Popular Comparisons
Prisma Cloud by Palo Alto Networks
Microsoft Azure Application Gateway
Azure Front Door
F5 Advanced WAF
Fortinet FortiWeb
Imperva Web Application Firewall
Radware Alteon
Reblaze - part of Link11
Buyer's Guide
Download our free Barracuda Web Application Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Imperva WAF vs. Barracuda: Which One is Better?
- Which is better, Barracuda Web Application Firewall or F5 Advanced WAF?
- Which WAF solution would you recommend to cater to 100 to 125 concurrent sessions?
- What do you recommend for a securing Web Application?
- Fortinet vs Sophos? Help choose a NGFW solution that can replace Microsoft TMG.
- Imperva WAF vs. Barracuda: Which One is Better?
- F5 vs. Imperva WAF?
- When should companies use SSL Inspection?
- NGFW with URL Filtering vs Web Proxy
- How does a WAF help to protect against DDoS attacks?