Disclaimer: 1) I am merely an end user of this system. I do not admin the machine in any way, although I've spoken to the admins on many occasions. 2) I am a programmer. Networking and box sitting is not my specialty. 3) I was doing research on how how this thing works when I ran across this forum and thread and felt that I had to chime in.
That being said, this appliance is a piece of junk, and I'm openly advocating that my ISP (also my user group) dump it.
Here are my gripes:
1) Whitelist doesn't whitelist. Barracuda apparently uses some sort of global whitelist feature, which apparently overrules your personal whitelist. So, you can Bayesian train all day long, but in the end, if the global whitelist doesn't agree with you, you're out of luck.
2) Same thing for the blacklist, although I haven't been able to confirm this 100%.
3) DUPLICATE EMAILS. For some reason, it's not uncommon for me to get 5-6 copies of emails that Barracuda analyzes as potential spam. If it triggers its scoring, and *doesn't* quarantine it, it will send you multiple copies of that email. According to our admins, Barracuda thinks it's some sort of conflict with our Cisco firewall. To me, this is crazy and they better fix this quick. If you have a networking product and it doesn't work with Cisco equipment, you must not want to sell a lot of units.
4) I suspect that the rate control settings are ignored. Our admins are insisting that the settings are very generous, but during certain times, it's not uncommon to get 30 minute delays. For the past two days, there's been a few instances where it's 20 HOURS.
In short, I hate the thing. I'll give them credit for selling open source products, but in my opinion, these Barracuda units are a lousy implementation.