How to Whitelist in Barracuda
If you’re using Barracuda’s Email Security Gateway, you can whitelist our Phishing Tool to allow our simulated phishing emails through to your end-users.
Whitelisting by IP
Barracuda Cloud Control
Barracuda’s Email Security Gateway (on-premises)
Barracuda Intent Analysis
Barracuda Cloud Control
Barracuda’s Email Security Gateway (on-premises)
Barracuda Advanced Threat Protection (ATP)
Barracuda Sentinel Allow Senders
Whitelisting by IP
These instructions were gathered and summarized based on Barracuda’s knowledgebase. If you’re looking for more information on how to whitelist in Barracuda, you can check out the video Barracuda Email Security Service - Configuring Inbound Email.
Barracuda Cloud Control:
-
Log in to your Barracuda Cloud Control.
-
Go to Email Security > Inbound Settings > IP Address Policies.
-
In the IP Blocking / Exemption section, use the top line to enter one of our IP addresses. This process will need to be repeated for each IP address. For the most up-to-date list of our IP addresses, please see our Living Security IP Addresses and Host Names article.
-
In the Netmask field, enter 255.255.255.255.
-
Set the Policy field to Exempt.
-
Optional: add a note in the Comment field. For example, Living Security Phish IP Addresses.
-
Click Add to allow the entered IP address.
-
Repeat steps 2 through 7 for each of the Living Security Phish addresses.
Barracuda’s Email Security Gateway (on-premises):
-
Log in to your Barracuda Email Security Gateway web interface.
-
Go to the BLOCK/ACCEPT > IP Filters page.
-
In the Allowed IP/Range section, enter one of our IP addresses on the top line. Repeat this process for each IP address that you want to whitelist. For the most up-to-date list of our IP addresses, please see our Living Security IP Addresses and Host Names article.
-
In the Netmask field, type 255.255.255.255.
-
Set the Policy field to Exempt.
-
Optional: add a note in the Comment field. For example, Living Security Phish IP Addresses.
-
Click Add to allow the entered IP address.
-
Repeat steps 2 through 7 for each of the Living Security Phish addresses.
Barracuda Intent Analysis
Barracuda Intent Analysis may rewrite or alter URLs in phishing simulations which could potentially skew results. For more information on this process, you can visit the Intent Analysis - Inbound Mail article from Barracuda.
Barracuda Cloud
-
Log in to your Barracuda Cloud Control.
-
Navigate to Email Security > Inbound Settings > Anti-Phishing.
-
Under the Intent section, add Living Security's hostnames. Make sure the Policy drop-down is set to Ignore.
Barracuda’s Email Security Gateway (on-premises)
-
Log in to your Barracuda Email Security Gateway web interface.
-
Navigate to Email Security Gateway > Basic > Spam Checking.
-
Under the Intent Analysis section, add Living Security's hostnames to the “URI Exemptions:” text box field.
ℹ️ Hostnames can also be found within the phishing tool by navigating to Phishing Simulator > Settings > Domains.
Barracuda Advanced Threat Protection (ATP)
If you’re using Barracuda’s Advanced Threat Protection (ATP) and have experienced false clicks or false attachment opens, you can set up exemptions. This allows you to bypass PDF scanning for phishing test emails from Living Security's IP addresses.
To set up exemption addresses to bypass ATP PDF Scanning:
-
Log in to your Barracuda Email Security Gateway web interface.
-
Select the ATP Settings tab.
-
Enter the IP address(es) and Subnet Mask(s). For the most up-to-date list of our IP addresses, please see our Living Security IP Addresses and Host Names article.
-
Click “Add”.
Barracuda Sentinel Allow Senders
Barracuda Sentinel’s Allow Senders list allows Living Security emails to bypass your organization’s current whitelisting rules. You can find more information on this process in Barracuda’s How to Allow Sender article.
To add specific senders to your Allow Senders list:
-
Log in to your Barracuda admin console.
-
Click Dashboard in your console menu.
-
Click the Settings icon, which should appear as a gear.
-
Click Allowed Senders.
-
Enter one email address or domain name into the Sender Email or Domain field.
-
You can add a comment to your email address or domain name if you wish.
-
Click Save.
Have more questions? Submit a request to help@livingsecurity.com