Barracuda Email Gateway Defense
Connect Barracuda Email Gateway Defense to Radiant Security to forward email security logs for AI triage.
Last updated
Was this helpful?
Connect Barracuda Email Gateway Defense to Radiant Security to forward email security logs for AI triage.
Barracuda Email Gateway Defense (EGD) is a cloud-based email security gateway that filters inbound mail for spam, malware, phishing, business email compromise, and zero-day threats before delivery to user mailboxes. Connecting Barracuda EGD forwards email security alerts and message metadata to Radiant Security through the Radiant Agent via syslog. Radiant uses this data to triage email-borne threats and correlate them with endpoint, identity, and network activity, giving analysts a complete view of how a malicious message moved through the environment.
Sign in to Radiant Security.
From the navigation menu, select Settings > Data Connectors, then click + Add Connector.
Search for and select Radiant Agent, then click Data Feeds.
Under Select your data feeds, select Barracuda Email Gateway Defense, then click Credentials.
Under Credential Name, enter an identifiable name for the Radiant Agent integration (e.g., Radiant Agent integration). To reuse an existing Radiant Agent credential, select it from the drop-down menu.
Click Add Connector.
Before starting, confirm the IP address of the Radiant Agent and the port configured to receive Barracuda EGD data. If you do not know the port, contact your Customer Success representative.
Sign in to the Barracuda Email Gateway Defense console.
Select the Account Management tab.
Under Syslog Integration, enter the following:
IP Address / Hostname: the IP address or hostname of the Radiant Agent.
Port: the TCP port configured on the Radiant Agent to receive Barracuda EGD data.
Click Add.
Under Actions, click Test to send a test message and confirm connectivity to the Radiant Agent.

After Barracuda Email Gateway Defense begins forwarding, confirm events are reaching Radiant.
In Radiant, navigate to Log Management.
Filter by rs_connectorType:"barracuda_egd".
Confirm recent events appear.
Allow several minutes for events to be parsed, indexed, and available for search.
Last updated
Was this helpful?
Was this helpful?