Datasheet

45
Barracuda NG Firewall
Features & Capabilities
Features & Capabilities
BARRACUDA NG FIREWALL
MODEL F10
F100
F101
F200
F201
F280
F300
F301
F400
F600
F800
F900
VIRTUAL
APPLIANCES
FIREWALL
Stateful packet forwarding (per rule)
l l l l l l l
Transparent proxy (TCP; per rule)
l l l l l l l
Inline graphical packet analyser
l l l l l l l
NAT (src, dst, nets), PAT
l l l l l l l
Policy-based NAT (per rule)
l l l l l l l
Protocol support (IPv4, IPv6
1
, ARP)
l l l l l l l
Gigabit performance - - -
l
-
l l
Object oriented rule set
l l l l l l l
Virtual rule sets
l l l l l l l
Virtual rule test environment
l l l l l l l
Redirection to local application
l l l l l l l
Realtime connection status
l l l l l l l
Historical access caches
l l l l l l l
Event triggered notification
l l l l l l l
Load balancing for protected servers
l l l l l l l
Multipath load balancing
l l l l l l l
Firewall-to-firewall compression
(stream & packet compression)
l l l l l l l
Dynamic rules with timer triggered
deactivation ( per rule)
l l l l l l l
Bridging mode / routing mode (mixed)
l l l l l l l
Virtual IP (proxyARP) support
l l l l l l l
Transparent IP to user mapping
l l l l l l l
User authentication (x.509, Microsoft® NTLM,
RADIUS, RSA SecurID, LDAP/LDAPS, Microsoft®
Active Directory®, TACACS+, local)
l l l l l l l
RPC protocol support (ONC-RPC, DCE-RPC)
l l l l l l l
VoIP support (H.323, SIP, SCCP (skinny))
l l l l l l l
DHCP relaying with packet loop protection
and configurable agent-ID policy
l l l l l l l
Standby mode Active-Active (with external Link-Balancer only) and Active-Passive
Network notification on failover
l l l l l l l
Key-based authentication
l l l l l l l
Encrypted HA communication
l l l l l l l
Transparent failover without session loss
l l l l l l l
Provider/link failover
l l l l l l l
INTRUSION PREVENTION SYSTEM
Inline Intrusion Prevention (pattern-based)
l l l l l l l
Application Control
l l l l l l l
Generic pattern filter
l l l l l l l
Active ARP handling
l l l l l l l
SYN / DoS / DDoS attack protection
l l l l l l l
Reverse routing path check
l l l l l l l
ICMP flood ping protection
l, by size and rate limit
Malformed packet check
l l l l l l l
TCP split handshake protection
l l l l l l l
1 IPv6 rewall forwarding trac, IPS, and Application Control. Full support for IPv6 (6in4, 4in6) is scheduled for H1/2014