SSL-VPN quotas

Updated at: 2025-01-14 10:01

Alibaba Cloud sets default quotas on the cloud resources and API operations for each Alibaba Cloud account. This topic describes the quotas related to the SSL-VPN feature and the default values of the quotas. It also describes whether the quotas can be increased.

Overview

Quotas are set on a per-region or per-account basis. Quotas are categorized into the following types:

  • General quotas: the limits on cloud resources that are available to an Alibaba Cloud account.

  • API rate limits: the limits on API calls that an Alibaba Cloud account can make in a specific period of time. API rate limits are also known as queries per second (QPS) limits.

  • Privileges: the permissions to use advanced features. Privileges are granted by Alibaba Cloud to an account.

VPN Gateway is subject to general quotas and API rate limits. You can apply for increases on specific quotas. You can log on to the Quota Center console or VPC console to view quotas or request a quota increase. For more information about how to manage SSL-VPN quotas, see Manage SSL-VPN quotas.

General quotas

The following table describes the general quotas for the SSL-VPN feature.

Note

The default values of quotas provided in this topic are for reference only. The default values of quotas in the console prevail.

General quotas for VPN gateways

Item

Description

Default value

Adjustable

Item

Description

Default value

Adjustable

vpn_quota_instances_num

Maximum number of VPN gateways that you can create within your Alibaba Cloud account

30

Note
  • You can create up to 30 VPN gateways in all regions with an Alibaba Cloud account.

  • If IPsec-VPN connections associated with transit routers are created within this Alibaba Cloud account, the total number of IPsec-VPN connections associated with transit routers and the total number of VPN gateways in all regions by using the Alibaba Cloud account must not be greater than 30.

Yes

None

Maximum bandwidth supported by a VPN gateway

1000 Mbps

Note

The maximum bandwidth supported by VPN gateways in some regions is 500 Mbit/s. For more information about the regions, see the Limits section of the "Create and manage a VPN gateway" topic.

No

None

Maximum number of packets that can be transmitted by a VPN gateway per second

120,000 (256 bytes per packet)

No

None

Maximum number of connections supported by a VPN gateway

200,000

Note

A network 5-tuple uniquely identifies a connection. A 5-tuple consists of a source IP address, a destination IP address, a source port number, a destination port number, and the protocol in use. The connections can be established by using the TCP, UDP, and Internet Control Message Protocol (ICMP) protocols.

No

General quotas for SSL-VPN connections

Item

Description

Default value

Adjustable

Item

Description

Default value

Adjustable

vpn_quota_ssl_cert_num

Maximum number of SSL client certificates that you can create within your Alibaba Cloud account

50

Yes

None

Maximum number of SSL servers that can be associated with each VPN gateway

1

No

None

Maximum number of local CIDR blocks that can be added to each SSL server

5

None

Maximum number of peer CIDR blocks that can be added to each SSL server

1

None

Validity period of an SSL client certificate

Three years

General quotas for IPsec servers

Item

Description

Default value

Adjustable

Item

Description

Default value

Adjustable

None

Maximum number of IPsec servers that you can create on a VPN gateway

1

No

None

Maximum number of clients supported by an IPsec server

50

API rate limits

The following table describes the API rate limits of VPN Gateway.

API

Version

Default value

Description

Adjustable

API

Version

Default value

Description

Adjustable

CreateSslVpnClientCert

2016-04-28

120/60(s)

Maximum number of times that each Alibaba Cloud account can call the CreateSslVpnClientCert operation per minute

No

CreateSslVpnServer

2016-04-28

100/3600(s)

Maximum number of times that each Alibaba Cloud account can call the CreateSslVpnServer operation per hour

No

CreateVpnGateway

2016-04-28

60/60(s)

Maximum number of times that each Alibaba Cloud account can call the CreateVpnGateway operation per minute

No

DescribeSslVpnClientCerts

2016-04-28

120/60(s)

Maximum number of times that each Alibaba Cloud account can call the DescribeSslVpnClientCerts operation per minute

No

DescribeVpnGateways

2016-04-28

120/60(s)

Maximum number of times that each Alibaba Cloud account can call the DescribeVpnGateways operation per minute

No

  • On this page (1, T)
  • Overview
  • General quotas
  • General quotas for VPN gateways
  • General quotas for SSL-VPN connections
  • General quotas for IPsec servers
  • API rate limits
Feedback
phone Contact Us

Chat now with Alibaba Cloud Customer Service to assist you in finding the right products and services to meet your needs.

alicare alicarealicarealicare