These instructions assume:
- The date, time, and time zone are correctly set on the device.
- You have administration access to the Barracuda dashboard.
- The IP address of your Auvik collector is known.
Configure IPFIX
- Log into the Barracuda firewall web admin console.
- Navigate to Configuration > Configuration Tree > Box > Infrastructure Services > General Firewall Configuration.
- In the left menu, select Audit and Reporting.
- Expand configuration mode and select Switch to Advanced View.
- Click Lock.
- Navigate to the log policy section
- Select Edit the audit log. A handling window opens.
- Set audit delivery to Send IPFIX.
- Under IPFIX streaming:
- Set Enable IPFIX/NetFlow to yes.
- Set Enable intermediate reports to yes.
- Set IPFIX template to default without Barracuda custom fields and UniFlow.
- Under collectors, select Add a Collector:
- In the Collector Name field, enter a name for the Auvik collector.
- Set export mode to UDP.
- In the Collector IP address field, enter the IP address for the Auvik collector.
- Choose from any of these ports: 2055, 2056, 4432, 4739, 6343, 9995, or 9996.
- Set byte order for the data set to LittleEndian.
- Click Send Changes and Activate.
Configure the firewall rule
- Navigate to Configuration > Full Configuration > Virtual Servers > [virtual server you’re configuring] > Assigned Services > Firewall > Forwarding Rules.
- Click Lock.
- Click the plus icon (+) in the top right rule set.
- Select Pass as the action.
- Create a name for the rule:
- Source: Enter the IP address for your Barracuda LAN interface.
- Destination: Enter the IP address for the Auvik collector.
- Service: Select Any.
- Click OK.
- Drag and drop the firewall rule so it’s the first rule that matches the traffic you want to forward.
- Click Send Changes and Activate.
IPFIX is now enabled on your Barracuda NG firewall.