NG Firewall X-Series

NG Firewall X-Series

Cloud-Connected, Easy-to-Use Next-Generation Firewall

The Barracuda NextGen Firewall X-Series is ideal for small to medium-sized organizations looking for a simple, yet powerful next-generation firewall that provides IPS, application detection, URL filter, malware protection and some basic email security. Designed for the resource-constrained IT professional, the X-Series’ intuitive web interface has a low learning curve while providing and easy-to-use management interface.
Deployment: Appliance.

Barracuda X-Series NG Firewall X600

Try It Free!

  • Risk-Free Evaluation
  • 30 Days to Try It Out
Get Evaluation Now
Request a Quote

The modern network includes a combination of local servers, remote devices and cloud-hosted applications. If you use cloud-based platforms such as Office 365, Salesforce, Amazon Web Services (AWS) and Microsoft Azure, you need to ensure that all of your critical applications and devices are available when needed and secured.

The Barracuda Advantage

Next-generation visibility and control for today’s modern networks - the Barracuda NextGen Firewall X-Series provide full application control, user awareness, and content security that’s so easy to use, it’s even manageable from the cloud.

  • Easy-to-use, web-based administration
  • Affordable, all-inclusive pricing
  • Unlimited users and protected IPs per firewall
  • Unlimited remote connectivity VPN clients included
  • Cloud-based centralized management
  • Flexible web filtering options
  • (on-box, cloud, Barracuda Web Filter integration)

Product Spotlight

With the Barracuda NextGen Firewall X-Series, the content security functionality is not simply bolted on top of the network stack, it’s deeply integrated into the firewall engine. As an option, antivirus and web filtering may even be offoaded to the Barracuda Web Security Service cloud, freeing further CPU cycles for network scalability.

  • Granular control over thousands of applications
  • Full user-awareness
  • Stateful firewall and IPS network perimeter protection
  • Optimized Internet connectivity via multiple providers
  • True application-based provider selection
  • Application control and content security inspection on encrypted web traffc

Next Gen Firewall X-Series Information

  • The Barracuda NextGen Firewall X-Series uses application visibility and user-identity awareness to enable enforcement of granular access policies. Define policies based on any combination of application, user or group ID, time, and other criteria. Policies can even respond to specific application behaviors or features - for example, allowing all employees to use Skype voice, but allowing only executives to use Skype video, except after business hours.

    Enterprise networks grow larger and more complex every day - and more critical to key business operations. The Barracuda NG Firewall is an essential tool to optimize the performance, security, and availability of today's dispersed enterprise WANs.

    The Barracuda NG Control Center adds a powerful and intuitive centralized management portal that makes it extremely simple to deploy, configure, update, and manage multiple units from a single location, while also providing comprehensive, real-time network visibility and reporting. As a result, it is an ideal solution for enterprises looking to manage large numbers of users or several sites with few IT personnel.

    Central Management Across the Enterprise

    With hardware models available for branch offices up to headquarters and data centers, and a corresponding offering of virtual appliances, the Barracuda NG Firewall is designed for deployment across the entire enterprise. Through the Barracuda NG Control Center, administrators can manage security, content and traffic management policies from a single interface. Centralized management of security and content policy provides a number of benefits, including:

    • Consistent security posture and policy enforcement across the enterprise
    • Real-time accounting and reporting across multiple gateways
    • Comprehensive history and rollback of configuration and policy changes across the network
    • Centralized version control of anti-spam, anti-virus, content filtering and Network Access Control updates

    Administration Features

    The Barracuda NG Firewall features intelligent site-to-site traffic management capabilities that optimize both availability and performance of the Wide Area Network. Administrators can control application-level routing and prioritization of traffic across multiple links, tunnels and traffic conditions. Supported link types include dedicated lines, xDSL, 3G wireless mobile networks, and any other link types presented as a copper or optical Ethernet link.

    Stops Threats and Reduces Administrative Overhead

    The Barracuda NG Firewall is an application-aware firewall designed to mitigate threats, enforce policies and optimize traffic flow - resulting in ultra reliable WAN links. Centralized management provides visibility of the entire network, reducing administrative overhead.

    Choosing the F-Series or the X-Series

    The X-Series Firewall is ideal for you if you only have a few locations to manage (up to three) and absolutely need a firewall with a web UI.

    If you have more than three locations to manage, plan on using public cloud services (like Amazon AWS, Google GCE, or Microsoft Azure), or need to connect hundreds or even thousands of remote devices (Internet of Things), then the F-Series Firewall is right for you.


    To centralize management across many different firewalls and remote access users, the Barracuda NG Control Center enables administrators to configure security and network access policies, control firmware, updaterevisions, and manage user settings. Template-based configuration and globally available security objects enable efficient configuration across thousands of locations.

    The Barracuda NG Control Center supports multiple administrators simultaneously - even within the same configuration tree. Highly customizable administrative roles can be defined to delegate administrative capabilities for specific departments or locations.


    All Barracuda NG Control Center and Barracuda NG Firewall appliances come with extensive network connectivity troubleshooting and visualization tools. Even for large networks it typically only takes a few mouse clicks to analyze and remediate a problem in the central auditlog or history screen.

  • X-Series Appliances

    Many Configurations to Choose From

    Models: X50 X100 X200 X300 X400 X600
    Maximum Firewall Throughput 1 800 Mbps 1,000 Mbps 1,900 Mbps 2,100 Mbps 4,000 Mbps 6,000 Mbps
    VPN Throughput 2 50 Mbps 100 Mbps 200 Mbps 300 Mbps 600 Mbps 800 Mbps
    IPS & Application Control Throughput 100 Mpbs 300 Mbps 400 Mbps 650 Mbps 2,000 Mbps 3,000 Mbps
    Maximum Concurrent Sessions 8,000 8,000 60,000 120,000 300,000 500,000
    Maximum New Sessions 2,000 2,000 8,000 12,000 15,000 20,000
    AppDetect Users 50 100 200 300 500 1,000
    AppDetect and IPS Users 25 50 100 150 250 500
    AppDetect, IPS, and Web Security Users 15 25 50 100 200 400
    Form Factor Desktop Desktop Desktop 1U Rack Mount 1U Rack Mount 1U Rack Mount
    Dimensions (in.) 10.8 x 6.4 x 1.8 10.8 x 6.4 x 1.8 10.8 x 6.4 x 1.8 14.9 x 6.4 x 1.8 16.8 x 15.9 x 1.7 16.8 x 15.9 x 1.7
    Weight (lbs.) 2.9 2.9 2.9 4.4 11.3 11.3
    Ports 4x1 GbE copper 4x1 GbE copper 4x1 GbE copper 6x1 GbE copper 8x1 GbE copper 8x1 GbE copper
    Power Supply Single external Single external Single external Single internal Single internal Single internal
    Integrated Wi-Fi Access Point X51 X101 X201 - - -
    Firewall Yes Yes Yes Yes Yes Yes
    IPsec VPN (Client-to-Site & Site-to-Site) Yes Yes Yes Yes Yes Yes
    Application Control & Monitoring Yes Yes Yes Yes Yes Yes
    Intrusion Prevention (IPS) Yes Yes Yes Yes Yes Yes
    High Availability Yes Yes Yes Yes Yes Yes
    SSL Interception 3, 4 Yes Yes Yes Yes Yes Yes
    DHCP Server Yes Yes Yes Yes Yes Yes
    DNS Cache Yes Yes Yes Yes Yes Yes
    Authoritative DNS Yes Yes Yes Yes Yes Yes
    SIP Proxy Yes Yes Yes Yes Yes Yes
    Automatic Uplink Failover Yes Yes Yes Yes Yes Yes
    Uplink Balancing Yes Yes Yes Yes Yes Yes
    Application-based Provider Selection Yes Yes Yes Yes Yes Yes
    Traffic Management & Optimization Yes Yes Yes Yes Yes Yes
    SafeSearch Enforcement Yes Yes Yes Yes Yes Yes
    SSL VPN     Yes Yes Yes Yes
    Web Security (URL filtering, antivirus) Optional Optional Optional Optional Optional Optional
    Centrally Manageable Cloud-based Cloud-based Cloud-based Cloud-based Cloud-based Cloud-based

    1 Measured with UDP; large packets
    2 Measured with AES; MD5
    3 SSL Interception including IPS requires an active Barracuda Energize Updates subscription
    4 SSL Interception including virus protection requires an active Web Security subscription.

  • NG Firewall Documentation


    Case Studies:

    • RHI AG Case Study
      "...RHI sought a new solution approach a few years ago that would allow them to move away from Frame Relay and MAN and to guarantee the efficient management of the complex infrastructure and at the same time to ensure reliable communications connections...."
    • ARZ Case Study
      "Back in 1999, when the existing non-2000 compliant firewall solutions were due for replacement, ARZ was therefore not just looking for an alternative. Instead, they wanted to use the opportunity to realize major optimizations in terms of customer security and management..."
    • Erwin Müller
      "...The communication security requirements were high: Subsidiaries, branch offices, mobile users and of course, the Web shops too, all had to be integrated securely into the company network..."
  • FAQs

    Barracuda NextGen Firewall X-Series - What is It?

    It's the next-generation firewall that delivers advanced features without reducing performance. Content filtering and Malware protection take place in the cloud, so network resources aren't affected. Dynamic traffic shaping and link balancing keep things running smoothly even when doing complex application control and policy enforcement. By load-balancing and aggregating multiple uplinks (e.g., T1, DSL, MPLS, 3G) with seamless automatic failover, the NextGen Firewall X-Series ensures applications and users have uninterrupted access to cloud applications / resources. The X-Series is the most cost-effective and reliable network connectivity and security solution available for SMB.

    What Kind of User Fees are involved with Barracuda NextGen Firewall X-Series?

    None. There's no limitation on number of protected IP's, OR number of users. All NextGen Firewall X-Series models also include a license to unlimited VPN clients.

    What are the X-Series’s cloud-enabled capabilities?

    Content filtering that's cloud-based delivers advanced security against the web-based threats of today - all without impacting application or network performance. Malware protection and content filtering are processor-intensive, and by moving that to the cloud, the Barracuda NextGen Firewall X-Series minimizes the demand placed on network resources, which helps ensure optimal performance.

    Management and malware protection moved to the cloud gives the Barracuda NextGen Firewall X-Series the elasticity to provision just the right combination of resources to meet your needs. While your organization's needs evolve and grow, the scaling of your cloud-based resources as needed is automatic and transparent.

    The cloud-based management portal delivers truly flexible anytime/anywhere management via it's mobile app, or a web browser.

    What's Application Control?

    In traditional firewalls, techniques of application identification generally relies on basic technology features like TCP port / protocol definitions, URL or destination IP address. Unfortunately, this isn't helpful to administrators for determining which applications users are accessing on their network.

    Barracuda NextGen Firewall X-Series uses Application Control to identify and enforce policies on applications that may masquerade their traffic as “safe” protocols such as HTTP. When reviewing an application log file, administrators can see what types of applications are seeking access to the Internet, such as peer-to-peer sharing applications, Skype, YouTube, and much more.

    The Barracuda NextGen Firewall X-Series integrates application control into its core firewall functions, enabling enforcement of policies based on user ID, security policy, location, and time of day. Policy actions can include blocking, allowing, throttling, or even enabling or disabling of specific application features.

    Can the Barracuda NextGen Firewall X-Series provide VPN tunnels to other firewalls or routers?

    Yes, much of the time, you can make VPN tunnels from the Barracuda NextGen Firewall X-Series to different firewalls and switches. The VPN motor of the Barracuda NextGen Firewall X-Series is perfect with a wide assortment of other switch and firewall merchants. On the off chance that the other endpoint VPN gadget is additionally confirmed for fundamental interoperability by VPNC, it can nearly be ensured that there will be an approach to associate these devices through a site-to-site VPN tunnel.

    Is there a way to centrally manage multiple Barracuda NextGen Firewall X-Seriess?

    Yes. Administrators can centrally manage several NextGen Firewall X-Series via the Barracuda Cloud Control portal at no additional cost.

    What is the difference the Between Barracuda NextGen Firewall X-Series and the Barracuda NextGen Firewall F-Series?

    The Barracuda NextGen Firewall X-Series is produced to give advanced application innovation to the SMB and mid-level client base. To do this, the Barracuda NextGen Firewall X-Series gives a simple-to-utilize electronic interface with insightful defaults and cloud-based focal administration facilitated by Barracuda Networks. The Barracuda NextGen Firewall X-Series is accessible in configurations with up to 5 Gbps information throughput and up to 8 ports. Accordingly, the Barracuda NextGen Firewall X-Series is prescribed for associations with up to 10 locations.

    The Barracuda NextGen Firewall F-Series is a devoted NG Firewall for enterprise deployment. Commonplace prerequisites incorporate support for a few thousand remote locations, data throughput necessities of 20 Gbps or increasingly and high port-density needs. Administration of the Barracuda NextGen Firewall F-Series is done through a Windows executable, while central administration of different Barracuda NextGen Firewall F-Series is done by means of the Barracuda NextGen Control Center.

    What user authentication methods are supported?

    Barracuda NextGen Firewall X-Series can authenticate users and enforce user-aware policy using Active Directory, RADIUS, RSA, NTLM, MS CHAP, SecurID, LDAP/LDAPS, built-in local authentication, as well as x.509 certificates.

    What types of VPN clients does the Barracuda NextGen Firewall X-Series require?

    The Barracuda NextGen Firewall X-Series supports an unlimited number of VPN clients. Barracuda Networks provides VPN clients for Windows 64-bit and 32-bit, Mac OS, and several flavors of Linux. Additionally, the built-in VPN clients in portable devices with iOS and Android operating systems can be configured to provide VPN access to the Barracuda NextGen Firewall X-Series. Via standard IPsec compatibility, the built-in clients of Windows and Mac OS operating systems can be configured to establish VPN tunnels to the Barracuda NextGen Firewall X-Series VPN.

    What if I am not looking to replace my entire firewall infrastructure?

    In addition to the Barracuda NextGen Firewall X-Series, Barracuda Networks offers a set of best-of-breed point solutions to address your needs if you are not yet looking to replace your entire firewall infrastructure. Relevant point solutions include:

    • Email security: Barracuda Email Security Gateway
    • Web filtering: Barracuda Web Security Gateway or Barracuda Web Security Service
    • Secure remote access for end users: Barracuda SSL VPN
    • Backup and Data security: Barracuda Backup
    • Networking a very large number of remote locations: Barracuda NextGen Firewall F-Series
    • Link balancing: Barracuda Link Balancer
    • Load balancing: Barracuda Load Balancer

    What is the pricing?

    The Barracuda NextGen Firewall X-Series comes in five base hardware configurations, ranging from small office or home office to regional office protection. Entry level pricing for the Barracuda NextGen Firewall X-Series X100 starts at $999.

    What is included in the Energize Updates subscription for the Barracuda NextGen Firewall X-Series?

    Barracuda Central's Energize Updates deliver updates on the extensive library of definitions for intrusion prevention and application control. In addition, Energize Updates subscriptions also provide access to Basic Support, Firmware Maintenance, and optional participation in the Barracuda Early Release Firmware program.

    Is there a version of Barracuda NextGen Firewall X-Series available to be installed in virtualized environments?

    As the NextGen Firewall X-Series is designed to provide easy-to-configure, cost-effective and quick-to-deploy perimeter protection of your network, it's only available as a hardware unit at this point.

Choosing Your NG Firewall is Easy

Our team of technical sales professionals are able to help you source the right Next Gen Firewall for your organization, whether it's physical, virtual or in the cloud. The basic process is:


Select the unit that suits your organization's needs.


Pre-sales training & advice from our experts.


Physical units are delivered as soon as possible.


Installation advice & post-install training available.

Barracuda NG Firewall

NG Firewall Evaluation

Request a no-risk, free evaluation


Unsure of which solution is right for your organization? Pehaps you don't have a dedicated IT staff? Our technical sales specialists are very experienced at helping professionals of all experience levels get the solution they need.

Get Help Now