Exchange 2013: Barracuda Web Application Firewall

With its Web Application Firewall, Barracuda also offers a way to publish Exchange securely on the Internet. I tried out the latest version and tested it with Exchange 2013. Barracuda offers a Demo version for download. Here is the initial setup:

After the VMware appliance has been started, you can log in with the user "admin" and the password "admin"

1

After logging in, the configuration interface is loaded directly and the network access must be configured in the VMware appliance under "TCP/IP Configuration". As the VMware appliance only has one network card in the standard configuration, the data must be entered in the "WAN" configuration. The appliance must have Internet access. The license can then be imported under "Licensing".

2

After the license has been installed, the Web Application Firewall is installed

3

As soon as the appliance has been installed, the web interface can be opened, user and password here is also "admin/admin"

Barracuda

This is how the Web Application Firewall presents itself after the first login:

5

To publish Exchange 2013, I first add a certificate under the "Certificates" tab. The certificate can be imported directly as a PFX file:

6

After the certificate has been installed, a new "Service" can be created under the "Services" tab; the Exchange Server or the load balancer is specified as the real server, see screenshot:

7

In the settings of the newly created service, a firewall profile can now be selected, I select "owa2013" there

8

In the "Real Server" settings, I change the port from 80 to 443 and select the settings "Server uses SSL -> Yes" and "Validate Server Certificate -> No"

9

Once the settings have been made, there should be a green tick in the "Status" field

10

OWA is also already working.

11

There are a lot more setting options, so only the basic configuration is shown here. More will follow after a detailed test.

Leave a Comment