To connect your on-premises data center or private network to your ECSs in a VPC, you need to create a VPN gateway before creating a VPN connection.
Number of Customer Gateway IP Addresses |
Recommended Networking |
Description |
---|---|---|
1 |
It is recommended that the VPN gateway uses the active-active mode. In this case, one VPN connection group is used. |
|
2 |
It is recommended that the VPN gateway uses the active/standby mode. In this case, two VPN connection groups are used. |
Table 2 lists the VPN gateway parameters.
Parameter |
Description |
Example Value |
---|---|---|
Region |
For low network latency and fast resource access, select the region nearest to your target users. Resources cannot be shared across regions. |
Select a region as required.eu-de |
Name |
Name of a VPN gateway. The value can contain only letters, digits, underscores (_), hyphens (-), and periods (.). |
vpngw-001 |
Network Type |
|
Public network |
Associate With |
|
VPC |
VPC |
Select a VPC. For the VPC parameter configuration, see Figure 2 and Figure 3. |
vpc-001(192.168.0.0/16) |
Enterprise Router |
Select an enterprise router. For the enterprise router parameter configuration, see Figure 4. |
er-001 |
Interconnection Subnet |
This subnet is used for communication between the VPN gateway and VPC. Ensure that the selected interconnection subnet has four or more assignable IP addresses. |
192.168.66.0/24 |
Local Subnet |
VPC subnets with which your on-premises data center needs to communicate through the customer gateway. |
192.168.1.0/24,192.168.2.0/24 |
BGP ASN |
BGP ASN of the VPN gateway, which must be different from that of the customer gateway. |
64512 |
Specification |
Three options are available: Basic, Professional 1 and Professional 2. |
Professional 1 |
AZ |
An AZ is a geographic location with independent power supply and network facilities in a region. AZs in the same VPC are interconnected through private networks and are physically isolated. |
AZ1, AZ2 |
HA Mode |
|
Active-active |
Active EIP |
EIP used by the VPN gateway to communicate with a customer gateway.
|
Create Now |
Bandwidth (Mbit/s) |
Bandwidth of the EIP, in Mbit/s.
|
10 Mbit/s |
Bandwidth Name |
EIP bandwidth name. |
Vpngw-bandwidth1 |
Active EIP 2 |
A VPN gateway needs to be bound to a group of EIPs (active EIP and active EIP 2). You can plan the bandwidth for each EIP. The EIPs can share bandwidth with the EIPs of other network services. |
Create Now |
Standby EIP |
A VPN gateway needs to be bound to a group of EIPs (active EIP and standby EIP). You can plan the bandwidth for each EIP. The EIPs can share bandwidth with the EIPs of other network services. |
Create Now |
Bandwidth (Mbit/s) |
Bandwidth of the EIP, in Mbit/s.
|
10 Mbit/s |
Bandwidth Name |
EIP bandwidth name. |
Vpngw-bandwidth2 |
Enterprise Project |
Enterprise project to which the VPN belongs. An enterprise project facilitates project-level management and grouping of cloud resources and users. The default project is default. For details about how to create and manage enterprise projects, see the Enterprise Management User Guide. |
default |
Access VPC |
If a VPN gateway needs to connect to different VPCs in the southbound and northbound directions, set the VPC in the northbound direction as the access VPC. The VPC in the southbound direction is the VPC associated with the VPN gateway. |
Same as the associated VPC |
Access Subnet |
By default, a VPN gateway uses the interconnection subnet to connect to the associated VPC. Set this parameter when another subnet needs to be used. |
Same as the interconnection subnet |
Gateway IP Address |
This parameter is available only when Associate With is set to Enterprise Router and Network Type is set to Private network. |
Self-assigned IP address |
Advanced Settings > Access VPC |
If a VPN gateway needs to connect to different VPCs in the southbound and northbound directions, set the VPC in the northbound direction as the access VPC. The VPC in the southbound direction is the VPC associated with the VPN gateway. |
Same as the associated VPC |
Advanced Settings > Access Subnet |
By default, a VPN gateway uses the interconnection subnet to connect to the associated VPC. Set this parameter when another subnet needs to be used. |
Same as the interconnection subnet |
Advanced Settings > Gateway IP Address |
This parameter is available only when Associate With is set to VPC and Network Type is set to Private network. |
Self-assigned IP address |
Advanced Settings > Tags |
Configure Tags in Advanced Settings. |
- |