Skip to main content

Allow-List in Barracuda

Learn how to allow-list usecure in Barracuda to help ensure your phishing simulations and platform emails are delivered successfully.

Written by Anna Cunningham

If you are using Barracuda Email Security Gateway or Barracuda Email Security Service, you may need to allow-list usecure’s phishing simulation and security awareness training emails to ensure they are delivered successfully to your users.

This guide explains how to configure allow-listing within Barracuda for:


Before You Begin

Before configuring allow-listing in Barracuda, ensure you have access to:

You should also verify whether you are using:

  • Barracuda Email Security Service (Cloud)

  • Barracuda Email Security Gateway (On-Premises)

The configuration steps differ slightly depending on your deployment type.


Allow-Listing by IP Address

Barracuda Email Security Service (Cloud)

To allow-list by IP address in Barracuda Cloud Control:

  1. Log in to your Barracuda Cloud Control portal.

  2. Navigate to: Email Security > Inbound Settings > IP Address Policies

  3. Under IP Blocking / Exemption, enter one of usecure’s IP addresses.

  4. In the Netmask field, enter: 255.255.255.255

    This value specifies that the rule applies to a single IP address only.

  5. Set the Policy field to: Exempt

  6. Optionally, add a comment such as: 'usecure Allow-List'

  7. Click Add.

  8. Repeat the process for all usecure IP addresses.

Barracuda Email Security Gateway (On-Premises)

To configure allow-listing on Barracuda Email Security Gateway:

  1. Log in to the Barracuda Email Security Gateway web interface.

  2. Navigate to: BLOCK/ACCEPT > IP Filters

  3. Under Allowed IP/Range, enter one of usecure’s IP addresses.

  4. Enter 255.255.255.255 in the Netmask field.

  5. Set the Policy field to: Exempt

  6. Optionally, add a comment. For example 'usecure Simulated Phishing IP Address'.

  7. Click Add.

  8. Repeat for all usecure IP addresses.


Configure Intent Analysis Exemptions

Barracuda’s Intent Analysis feature may rewrite or analyse links contained within simulated phishing emails. This can interfere with phishing simulations and tracking accuracy.

Barracuda Email Security Service (Cloud)

  1. Log in to Barracuda Cloud Control.

  2. Navigate to: Email Security > Inbound Settings > Anti-Phishing

  3. Under the Intent section:

    • Add usecure domains

    • Set the policy to: Ignore

Barracuda Email Security Gateway (On-Premises)

  1. Log in to the Barracuda Email Security Gateway interface.

  2. Navigate to: Basic > Spam Checking

  3. Under Intent Analysis, add usecure domains to the URI Exemptions field.


Configure Sender Authentication (SPF) Exemptions

If you are using domain spoofing in phishing simulations, Barracuda SPF checks may block or quarantine simulation emails.

Barracuda Email Security Service (Cloud)

  1. Log in to Barracuda Cloud Control.

  2. Navigate to: Email Security > Inbound Settings > Sender Authentication

  3. Add usecure IP addresses to the SPF exemption list.

Barracuda Email Security Gateway (On-Premises)

  1. Log in to the Barracuda Email Security Gateway interface.

  2. Navigate to: BLOCK/ACCEPT > Sender Authentication

  3. Under Sender Policy Framework (SPF) Configuration, ensure SPF checking is enabled.

  4. Add usecure IP addresses to the exemption list.


Configure ATP Exemptions

Barracuda Advanced Threat Protection (ATP) may scan attachments or links within simulated phishing emails, causing false positives or inaccurate reporting.

To configure ATP exemptions:

  1. Log in to the Barracuda Email Security Gateway interface.

  2. Navigate to: ATP Settings

  3. Add usecure IP addresses and subnet mask to the exemption list.

  4. Click Add.


Configure Barracuda Sentinel Allow Senders

If your organisation uses Barracuda Sentinel, you may also need to configure allowed senders. To add allowed senders:

  1. Log in to the Barracuda admin console.

  2. Select: Dashboard > Settings (Gear Icon) > Allowed Senders

  3. Enter a sender email address or domain.

  4. Optionally, add a comment.

  5. Click Save.

Note: Barracuda Sentinel only allows one email address or domain to be added at a time.


Verify Your Configuration

After configuring your allow-list settings, send a test phishing simulation to confirm emails are delivered correctly and links are not modified by Barracuda security features.

Did this answer your question?