tencent cloud

Cloud Workload Protection Platform

Release Notes and Announcements
Release Notes
Announcements
Getting Started
Product Introduction
Overview
Advantages
Basic Concepts
Scenarios
Associated Products
Features in Different Editions
Purchase Guide
Purchase Security Protection Licenses
Purchasing Log Analysis Service
Quick Start
Operation Guide
Security Dashboard
Asset Overview
Server List
Asset Fingerprint
Vulnerability Management
Baseline Management
Malicious File Scan
Unusual Login
Password Cracking
Malicious Requests
High-risk Commands
Local Privilege Escalation
Reverse Shell
Java Webshell
Critical File Monitor
Network Attack
A Ransomware Defense
Log Analysis
License Management
Alarm Setting
Cloud Access Management
Hybrid Cloud Installation Guide
FAQs for Beginners
Cloud Workload Protection Description
Feature Description
Agent Process Description
A Security Baseline Detection List
Parsing of JSON Format Alarm Data
Log Field Data Parsing
Agent Installation Guide
Security Score Overview
Practical Tutorial
Auto Fix of Vulnerabilities
Malicious File Processing
Troubleshooting
Intrusions on Linux
Intrusions on Windows
Offline Agent on Linux
Offline Agent on Windows
An Abnormal Log-in Notification
API Documentation
History
Introduction
API Category
Asset Management APIs
Virus Scanning APIs
Abnormal Log-in APIs
Password Cracking APIs
Malicious Request APIs
High-Risk Command APIs
Local Privilege Escalation APIs
Reverse Shell APIs
Vulnerability Management APIs
New Baseline Management APIs
Baseline Management APIs
Advanced Defense APIs
Security Operation APIs
Expert Service APIs
Other APIs
Overview Statistics APIs
Settings Center APIs
Making API Requests
Intrusion Detection APIs
Data Types
Error Codes
FAQs
Agreements
Terms of Service
Service Level Agreement
Data Processing And Security Agreement
Contact Us
Glossary

Connection to a VPC over DC

PDF
Focus Mode
Font Size
Last updated: 2025-09-29 17:10:23

Overview

Currently, the connection to a VPC over DC is only supported in South China (Guangzhou), North China (Beijing), East China (Shanghai, Shanghai Finance, and Nanjing), and Southwest China (Chengdu). The public cloud can already communicate with the customer's data center network over a VPC, and the client can be directly installed.
If the region you need to connect is not supported by the connection to a VPC over DC, you need to use CCN to connect the DC gateway (VPN) with the VPC. You need to purchase the DC gateway and set the connection to a VPC over DC.

Operation Guide

Step 1. Checking Whether CCN Is Required for Connection

1. Log in to the CWPP console. In the left sidebar, click Server List > Install Cloud Workload Protection agent, and view the installation guide details in the pop-up window on the right.

2. In the installation guide, for server type, click to select Non-Tencent Cloud, and for network, click to select Dedicated Line Access.
Note:
Select the appropriate Linux or Windows operating system according to the user's operating system.

3. If you are in South China (Guangzhou), North China (Beijing), East China (Shanghai), East China (Shanghai Finance), East China (Nanjing), or Southwest China (Chengdu):
If you have a VPC connected to the non-Tencent Cloud data center network, select the VPC connected to DC and run the installation command.
If no corresponding VPC network is found to interconnect with your non-Tencent Cloud data center network, you can connect through CCN. See Step 2.

Step 2. Confirming the VPC for Connection to DC

1. If you do not have a VPC network in the South China (Guangzhou), North China (Beijing), East China (Shanghai), East China (Shanghai Finance), East China (Nanjing), and Southwest China (Chengdu) regions, log in to the VPC console, and click VPC to enter the VPC page.
2. On the VPC page, click the drop-down box to select the required region, and click Create to pop up the create VPC window.

3. In the create VPC window, enter the required parameters and click Confirm to complete the creation of the VPC.

Step 3: Using CCN to Interconnect the VPC with the Non-Tencent Cloud Data Center Network Connected by a DC

1. If a CCN that communicates with the non-Tencent Cloud data center already exists, add the VPC instance selected in Step 2 to the CCN. a. Log in to the VPC console. In the left sidebar, click CCN to go to the CCN page.
b. On the CCN page, click Manage Instances> Associate Instances in the right to go to the associate instances page. c. On the associate instances page, click Newly Added Instances to add the VPC instance selected in Step 2 to the CCN, and then click Confirm to complete the association.
2. If the CCN is not yet configured, create one. a. Log in to the VPC console. In the left sidebar, click CCN to go to the CCN page.
b. On the CCN page, click New, and a new CCN instance pop-up window appears. c. In the new CCN instance pop-up window, enter the required parameters and click Confirm to complete the creation of a new CCN instance.
Note
DC gateway: Select the DC gateway connected to your non-Tencent Cloud data center network.
VPC: Select the VPC instance selected in Step 2.
If an IP range conflict occurs, go back to Step 2 and select or create a new VPC instance that does not conflict.
3. Go back to the CWPP console and see Step 1 to obtain the installation command. Your non-Tencent Cloud data center needs to allow access to four ports (5574, 8080, 80, and 9080) of the IP described in Step 1.


Help and Support

Was this page helpful?

Help us improve! Rate your documentation experience in 5 mins.

Feedback