Network > VPN Gateway (Site-to-Site VPN) > Overview
This service provides the capability to establish an encrypted network connection between a VPC and a customer's on-premises network.
Concepts
- Local gateway: A resource allocated to VPN tunnel configuration in NHN Cloud.
- Remote gateway: A resource allocated to VPN tunnel configuration on the on-premises side.
- VPN tunnel: An encrypted link that is configured between a remote gateway and a local gateway.
Main Features
- Enables an encrypted network connection between a VPC and a customer’s on-premises network.
- The bandwidth (guaranteed on an outbound basis) can be selected among 20M, 50M, 100M, and 1G.
- The encryption algorithm can be selected among AES192 and AES256.
- The integrity algorithm can be selected among MD5, SHA1 and SHA256.
- Network ACLs can be applied.
- This service is currently available only in the Korea (Pangyo, Pyeongchon, and Gwangju) regions and will be supported by other regions gradually.
Restrictions
Common
- IPv6 traffic is not supported for VPN connections. Only IPv4 traffic is supported.
- When connecting your VPC to an on-premises network, you must use address ranges with no overlapping network addresses.
- You can create one VPN gateway for each VPC.
- Each VPN gateway can have a maximum of 10 connections.
- In a VPC connected with VPN, it is not supported to access other networks using peering or access other networks or services through other gateways.
- By connecting a Transit Hub to a VPC that is already connected via VPN, other projects can also communicate with the on-premises network over VPN.
- Each VPC has its own VPN Gateway, where the bandwidth can be specified. All VPN connections attached to the same VPN Gateway share the configured bandwidth.