0.0.0.0 IP range route is propagated, the customer gateway must enable active negotiation and the cloud side must enable passive negotiation. Otherwise, the tunnel may fail. If the VPN gateway edition is 4.0, ensure that you enable the route overlapping feature on the CCN side when the VPN gateway is associated with CCN.1-126.0.0.0 and 1-126.255.255.255.128-191.x.0.0 and 128-191.x.255.255.192-223.x.x.0 and 192-223.x.x.255.169.254.x.x/16.Resource | Default Limit | Upgradable or Not |
VPC IPsec VPN gateways per region per account | 10 | |
CCN IPsec VPN gateways per region per account | 10 | |
Customer gateways in one region | 20 | |
VPN tunnels supported by one customer gateway | 10 Note: The number of VPN tunnels supported by a customer gateway is the quota for the account. Only one VPN tunnel can be established between a pair of customer gateway and VPN gateway. | |
VPN tunnels that can be created on one VPN gateway | 20 | Not supported |
Maximum bandwidth supported by a VPN gateway instance | 3000 Mbps | Not supported |
Total maximum packets per second (pps) supported for both directions by a VPN gateway instance | 3G gateway: 320,000 pps 1G gateway: 200,000 pps | The pps limit varies depending on the gateway specification. If you need to increase the limit, upgrade the gateway specification. |
SPDs in a VPN tunnel | 10 | Not supported |
Total number of SPDs under the same VPN gateway | 100 | Not supported |
Peer IP ranges supported by a SPD | 10 | Not supported |
Routes supported by each VPN gateway route table | 1000 | Not supported |
Number of routes can be added at one time on the console | 10 | Not supported |
Dynamic BGP-learned routing entries supported by each VPN gateway | 500 | Not supported |
Routing entries sent via the dynamic BGP for each VPN tunnel | 2000 | Not supported |
BGP ASN | Default: 64551, value range: 1 - 4294967295 | The value range is not adjustable |
Resource | Default Limit | Upgradable or Not |
VPC SSL VPN Gateways per Region per Account | 10 | |
CCN SSL VPN Gateways per Region per Account | 10 | |
Maximum bandwidth supported by a VPN gateway instance | 1000 Mbps | Not supported |
Total maximum packets per second (pps) supported for both directions by a VPN gateway instance | 1G gateway: 200,000 pps | The pps limit varies depending on the gateway specification. If you need to increase the limit, upgrade the gateway specification. |
SSL VPN servers that can be created for an SSL VPN gateway | 1 | Not supported |
Local IP ranges that can be added on an SSL VPN server | 500 (VPN gateway 4.0 edition) 5 (VPN gateway under 4.0 edition) | Not supported |
Client IP ranges that can be added on an SSL VPN server | 1 Note: To ensure that all your clients can be assigned IP addresses, we recommend that the number of IP addresses in the client subnet you specify exceeds the number of SSL VPN clients. | Not supported |
Validity period of the SSL VPN client certificate | 3 years | Not adjustable |
SSL client connection limit | An SSL VPN gateway with a bandwidth of 5–100 Mbps supports a maximum of 100 SSL client connections. An SSL VPN gateway with a bandwidth of 200/500 Mbps supports a maximum of 500 SSL client connections. An SSL VPN gateway with a bandwidth of 1000 Mbps supports a maximum of 1000 SSL client connections. Note: The number of clients an SSL VPN gateway can connect to also depends on the number of SSL client connections you configured during creation. For example, if you set the connection limit to 5 during creation, the gateway can connect to a maximum of 5 clients. You can modify the number of SSL client connections within the bandwidth quota. In the example above, if you need 10 SSL connections, you can make the adjustment in the gateway details, but the maximum cannot exceed 100. | The limit is based on the current SSL VPN gateway specification. If you need to increase the number of SSL client connections, upgrade the gateway bandwidth specification. |
フィードバック