Telemetry Data

Telemetry Data

To be able to continuously update and improve frequently used features based on real-world data, the Barracuda CloudGen Firewall sends performance and usage data to the Barracuda telemetry servers. Sending statistics is opt-out for new or freshly installed CloudGen Firewalls, and opt-in for updated firewalls. After collecting data, the CloudGen Firewall starts one attempt to update the telemetry data via an HTTPS connection. If the connection to the update servers fails, no further attempts are made until the next day. A copy of all parameters sent to the telemetry servers is logged every time an update is initiated.

The Barracuda Firewall Control Center sends data collected only on the box level. No data from the Control Center layer is collected. For firewalls in the public cloud (AWS, Google, or Azure), telemetry cannot be completely disabled; the minimal set of parameters is always transmitted.

As of firmware 9.0, it is mandatory to send telemetry data. Therefore, the option to disable sending telemetry data has been removed.
Note that in boxes where the option was previously disabled, the release of firmware 9.0 now shows the value '0' in the user interface.

telemetry_switched_off_option.png
Telemetry Default Settings

Depending on the firmware version, the default setting for telemetry can be different.

  • If you are running a firewall with a fresh installation of firmware release 9.0.0, sending telemetry data is enabled per default.

  • If you are running a firewall deployed with an old firmware version that has been updated until version 8.3, sending telemetry data is disabled per default.

Also note that for managed firewalls, settings displayed in the UI on the Control Center and on the managed box can differ depending on the cluster and firmware version.



Cluster < 9.0, Firewall >= 9.0

Cluster >= 9.0, Firewall < 9.0



Cluster < 9.0, Firewall >= 9.0

Cluster >= 9.0, Firewall < 9.0

Control Center

On a CC: "Share Telemetry Data" displays "Disabled".

The CC displays that telemetry data is being sent.

Firewall

On a firewall: "Share Telemetry Data" displays "Full System Diagnostics and Analytics" and the box is sending data.

The firewall is not sending data.

Barracuda Telemetry Server

  • airlock.nap.aws.cudaops.com

Telemetry Parameter List

Name

Key

Value Type

Dataset

Description

Name

Key

Value Type

Dataset

Description

General Information

Telemetry Amount

telemetry_amount

full/minimal

Minimal+Full

Whether the full or minimal amount of telemetry data is sent

Serial Number

sn

Number

Minimal+Full

Serial number of the box

MAC Address

mac

MAC address (hex format)

Minimal+Full

MAC address used for the license

Model

appliance

Type

Minimal+Full

The appliance type, e.g., T100 for a SecureEdge T100 or VT1500 for a virtual appliance VT1500

Model

model

Type

Minimal+Full

The appliance type, e.g., T100 for a SecureEdge T100 or VT1500 for a virtual appliance VT1500

Virtual Type

virt_type

Type

Minimal+Full

Information about the hypervisor (VMware, Azure...)

Virtual Subtype

virt_subtype

Type

Minimal+Full

Information about the hypervisor

DevMap

devmap

Text

Full

Device mapping

Number of CPUs

numcpu

Number

Minimal+Full

Number of CPUs

Memory Usage

memory

Percent

Full

Percent of used memory

Swap usage

swap

Percent

Full

Percent of used swap memory

Average CPU Load

cpu

Float

Full

15-Minute CPU average load at the moment of collecting the data

Used Firmware Partition

diskfirmware

Percent

Full

Allocation of partition "/" in percent

Used Data Partition

diskdata

Percent

Full

Allocation of partition "/phion0" in percent

Firmware Version

firmware

Version String

Minimal+Full

Version of the CloudGen Firewall firmware software

Uptime

uptime

Seconds

Minimal+Full

Box uptime in seconds

Box Location

country

Location

Full

Location of the box if configured

Stand-Alone / Centrally Managed

mcmanaged

Yes / No

Minimal+Full

Is box managed by a control center

EU Expiration Date

euexpiration

Date

Minimal+Full

Expiration Date of the Energize Updates

EU Status

eustate

Status

Minimal+Full

Status of Energize Updates

License Status

licstatus

Status

Minimal+Full

Status of the license

Firewall Insights Configured

fwinsights_configured

Yes / No

Full

Is Firewall Insights configured

Firewall Insights Licensed

fwinsights_licensed

Yes / No

Full

Is Firewall Insights licensed

Virtual WAN for Azure Cloud

azurevwan_configured

Yes / No

Full

Is vWAN for Azure Cloud enabled

Web User Interface

ismanagedbywebui

Yes / No

Full

Is Web UI enabled

Kernel architecture

kernelarchitecture

Text

Full

Is it a 32 or 64 bit system

Metered Cloud Device

metered_ng

Yes / No

Minimal+Full

Is the appliance a metered cloud appliance

Time

server_timestamp

Time

Full

Current time as Unix timestamp

Telemetry configuration

telemetry_amount

String

Minimal+Full

Minimal or full telemetry

Virtual Routing and Forwarding

vrf

Number

Full

Number of VRF instances in use

REST API Requests

rest_requests

Json object

Full

Number of REST requests, grouped by role and category

REST API over TLS

restd_ssl_configured

True / False

Full

If TLS is configured for REST API queries

Master Name

mastername

String

Full

Master name of the Control Center by which the CloudGen Firewall is managed (only if it is a managed CloudGen Firewall)

Tesseract ID

tesseract_id

String

Full

Identifier of SecureEdge appliances

Authentification Serial Number

auth_serial

String

Full

Authentification serial number of SecureEdge appliances

Disk Encryption

isdiskencrypted

True / False

Full

If disk is encrypted

Services

App Control

appcontrol

Status

Full

Shows the status of Application Control (license and activation)

SSL Inspection

sslice

Enabled / Disabled

Full

SSL Inspection for firewall service enabled

Port Protocol Protection

protocolprotection

Enabled / Disabled

Full

Is protocol protection in the firewall service enabled

Google Safe Search

safesearch

Enabled / Disabled

Full

Google Safe Search enabled

YouTube for Schools

ytforschools

Enabled / Disabled

Full

Youtube for schools enabled

URL Filter

cofs

Enabled / Disabled

Full

Web filter service enabled

Virus Scanner

virscan

Enabed / Disabled

Full

AV Scanner service installed

Avira Virus Scanner

avira

Enabled / Disabled

Full

Avira AV Scanner enabled

AV Scanner LastLine (ATP) Engine

lastline

Enabled / Disabled

Full

LastLine (ATP) Engine enabled in AV Scanner

AV Scan in Firewall

fwavscan

Enabled / Disabled

Full

AV Scan used in access rule(s)

HTTP Proxy

proxy

Enabled / Disabled

Full

HTTP proxy service installed

HTTP Proxy mode

proxymode

Reverse / Forward / Transparent

Full

HTTP Proxy mode

Proxy SSL Inspection

squidbump

Enabled / Disabled

Full

SSL Inspection mode from proxy service enabled

DHCP Enterprise

dhcpe

Enabled / Disabled

Full

DHCP Enterprise service installed

DHCP Relay

dhcprelay

Enabled / Disabled

Full

DHCP relay service installed

SSH Proxy

sshprx

Enabled / Disabled

Full

SSH proxy service installed

FTP Gateway

ftpgw

Enabled / Disabled

Full

FTP Gateway service installed

OSPF Routing

ospf

Enabled / Disabled

Full

OSPF service installed

Mail Gateway

mailgw

Enabled / Disabled

Full

Mail Gateway service installed

SPAM Filter

spamfilter

Enabled / Disabled

Full

Spam filter service installed 

DNS Service

dns

Enabled / Disabled