Barracuda CloudGen Firewall Secure Connector 1 (SC1) - BNGFSC1A

  • 300 Mbps Firewall throughput
  • 80 Mbps WiFi AP mode throughput
  • 30 Mbps WiFi Client mode throughput
  • 30 Mbps VPN throughput

Properly managing enterprise networks is critical to key business operations as more businesses adopt Internet of Things and machine-to-machine communications. As these networks grow larger and more complex, it’s important to implement robust security and performance of endpoint devices. The Barracuda CloudGen Firewall F-Series is an essential tool for optimizing the performance, security and availability of today's dispersed enterprise WANs.

The Barracuda NextGen F-Series offers large-scale remote access capabilities. It enables the ever-growing number of IoT devices and micro-networks to securely connect to the central or distributed corporate datacenter.

Components for a F-Series deployment are:

  • Secure Connector (SC) appliances (hardware only)
  • Secure Access Concentrator (SAC) (virtual, Azure)
  • NextGen Control Center (hardware, virtual, Azure)

In such a scenario, a large number of small Secure Connector (SC) appliances connect via TINA VPN to their regional Secure Access Concentrator (SAC). The SAC forwards the management traffic to the NextGen Control Center. Corporate policies such as Application Control, URL Filtering, and Virus Scanning are handled either directly on the SAC or forwarded to the border firewall. The configuration and lifecycle management for all SCs and their SACs are handled by one central NextGen Control Center. The Control Center can manage multiple Secure Access Concentrators, allowing you to scale up the network at will.

Easily Scales to the Tens of Thousands of Remote Locations

The encrypted connection between the SC1 appliance and the Secure Access Connector is established with the Barracuda Networks proprietary enhanced IPsec protocol TINA, which is more resilient and provides greater performance than most competitive VPN solutions no loss to security. Every Secure Access Connector can thus maintain an encrypted connection to thousands of remote SC1 appliances while literally dozens of Secure Access Connectors can be managed remotely by the Barracuda NextGen Control Center.

To deploy Barracuda NextGen F-Series appliances to an even wider variety of use cases and remote locations, the SC1 appliance comes with your choice of uplinks and automated failover in case one uplink fails. Besides the typical wired uplinks using DHCP or static IP, the integrated wireless Access Point functionality can be reversed to access the WAN via existing wireless networks. For even greater deployment flexibility, the SC1 is available with an optional 3G modem.

CloudGen Firewall Security Levels

While the device itself is not designed to perform advanced functions like Application Detection, IPS, Anti-Virus or URL Filtering on the box itself, such actions can easily be performed centrally at the larger office or datacenter where the devices connect to the Secure Access Connector. Full next-generation protection is available as moderately priced options for unlimited users per Secure Access Connector gateway deployed. Advanced Threat Detection (ATD) via sandboxing and detonation in the cloud is also available.

Central Management

Managing configurations of security appliances can be a complicated and time-consuming task. To ease administrators’ lives, the F-Series uses a new template-based configuration. Templates can be created at the various organizational levels supported by the NextGen Control Center. Once a template is changed, all SC1 appliances linked to this template are automatically updated within seconds.

Deploying to many locations often results in a complex routing setup. Each remote network needs to be properly defined and routed from the datacenter. The F-Series can also take care of these tasks by assigning defined subnets automatically to SC1 appliances and keeping track of required routing paths.

And - of course - you can manage F-Series and F-Series deployment in the same NextGen Control Center.

Quickly Deployed by Untrained Staff

To make the installation and setup process as efficient as possible, the SC1 appliances can be shipped directly to the intended remote location without the need for specialized IT personnel to be present on-site. The central IT department can quickly create a configuration file via the Barracuda NextGen Control Center, send it to the site (e.g., via email), and have the configuration file copied by drag-and-drop onto the SC1 appliance. After rebooting the SC1, the configuration file is processed and the setup process concluded – your SC1 is ready to go!

The Barracuda Advantage

  • Quick rollout
  • Comprehensive reporting
  • Highly scalable
  • Fully compatible with Microsoft Azure

Product Spotlight

  • Powerful next-generation network firewall
  • Advanced Threat Detection
  • Built-in web security and IDS/IPS
  • Full application visibility and granular controls
  • Centralized management of all functionalities
  • Template-based and role-based configuration
  • Available for VMware, XenServer, KVM, Hyper-V, and Microsoft Azure

Securing the Internet of Things

The Barracuda CloudGen Firewall F-Series is designed and built from the ground up to provide comprehensive, next-generation security while being simple to deploy and maintain, and highly scalable. Need to connect micro-offices, point of sales and machine-to-machine business? With the F-Series you're all set!

Easy to setup and maintain: SC1

The Secure Connector (SC1) is a hardware appliance purposebuilt to be an on-premises connectivity device that ensures high-performance and tamper-proof VPN connections to protect the data flow and, thus, guarantee data continuity.

Bundling the data stream: SAC

The Secure Access Concentrator is the collecting point for the data stream. This fully fledged CloudGen Firewall acts as VPN gateway for the SC1 deployments. SACs can be run on VMware, Hyper-V, XenServer, or KVM environments as well as directly in Microsoft Azure.

Grows with your needs

Integration within the Barracuda NextGen Control Center architecture ensures that your deployment can grow with your needs without technical or financial trapdoors. The template-based configuration ensures easy rollout of additional devices and maintain compliance.

  • Barracuda CloudGen Firewall SC1
    Copper Ethernet NICs 2
    USB 2.0 1
    Micro-USB OTG 1
    Firewall throughput (UDP) 300 Mbps
    WiFi AP mode throughput (UDP) 80 Mbps
    WiFi Client mode throughput (UDP) 30 Mbps
    VPN throughput [AES-128, SHA] 30 Mbps
    RAM 1 GB
    Mass Storage
    Type MicroSD
    Size 16 GB
    Weight appliance 0.35 lbs
    Weight carton with appliance 1.43 lbs
    Appliance size: width x depth x height 5.2 x 3.73 x 1.11 inch
    Carton size: width x depth x height 10.05 x 8.66 x 1.17 inch
    Form factor Pocket Size
    Cooling Fanless
    Power Supply Single (external via Micro USB)
    Wi-Fi Access Point 2.4 Ghz b/g
    Noise emission n/a
    Operating temperature 0 to +40 °C
    Storage temperature -20 to +70 °C
    Operating humidity 5% to 95% non-condensing
    MTBF [System]
    MTBF > 5 years
    Management Central via NextGen Control Center
    per Device via web-based user interface
    Firewall Zone rules
    NAT (source, destination, mapping)
    Zone-based service access
    Supported Network Services NTP, SSH, DNS, DHCP, Wi-Fi Access Point
    Supported Uplink Connection Wi-Fi Client, DHCP Client, Static IP
    Supported VPN protocols TINA
    Certifications & Compliance
    CE emissions Yes
    CE electrical safety Yes
    FCC Class A Yes
    Power & Efficiency
    Power supply type Single, external
    Power supply input voltage 100-240 V, AC
    Power supply output voltage 5V DC, 1A
    Power supply frequency 50 - 60 Hz
    Power supply watts 5W
    Packaging Content
    Appliance Yes
    Serial cable Yes
    Straight network cable Yes
    USB Type A to MicroUSB cable Yes
    External power brick Yes
    Quick Start guide Yes

    Technical Specs


  • Stateful packet inspection and forwarding
  • Full user-identity awareness
  • Intrusion Detection and Prevention System (IDS/IPS)
  • Application control and granular application enforcement
  • Interception and decryption of SSL/ TLS encrypted applications
  • Antivirus and web filtering in single pass mode
  • SafeSearch enforcement
  • YouTube for Schools support
  • Denial of Service protection (DoS/DDoS)
  • Spoofing and flooding protection
  • ARP spoofing and trashing protection
  • DNS reputation filtering
  • TCP stream reassembly
  • Dynamic rules / timer triggers
  • Single object-oriented rule-set for routing, bridging, and routed bridging
  • Virtual rule test environment

  • Intrusion Detection & Prevention

  • Protection against exploits, threats and vulnerabilities
  • Packet anomaly and fragmentation protection
  • Advanced anti-evasion and obfuscation techniques
  • Automatic signature updates

  • Advanced Threat Detection

  • • Dynamic, on-demand analysis of malware programs (sandboxing)
  • Dynamic analysis of documents with embedded exploits (PDF, Office, etc.)
  • Detailed forensics for both malware binaries and web threats (exploits)
  • Support for multiple operating systems (Windows, Android, etc.)
  • Flexible malware analysis in the cloud

  • VPN

  • Secure site-to-site
  • Supports AES-128/256, 3DES, DES, Blowfish, CAST, null ciphers

  • High Availability

  • Active-passive
  • Transparent failover without session loss
  • Network notification of failover
  • Encrypted HA communication

  • Central Management Options

  • Barracuda NextGen Control Center
    – Unlimited SACs and SC1s
    – Support for multi-tenancy
    – Multi-administrator support & RCS

  • Protocol Support

  • IPv4
  • VoIP (H.323, SIP, SCCP [skinny])
  • RPC protocols (ONC-RPC, DCE-RPC)
  • 802.1q VLAN

You may also like

Recently viewed