The content of this page has been automatically translated by AI. If you encounter any problems while reading, you can view the corresponding content in Chinese.

About SSL

Last updated: 2024-09-26 10:44:57

How do I specify the local and peer IP ranges when I create an SSL VPN server?

Tencent Cloud IP range: Enter the Tencent Cloud IP range to be accessed by mobile clients, which is the IP range of the subnet in which your VPN gateway resides. For example, enter 10.0.0.0/24, 10.0.0.0/26, 10.0.0.0/28, or 10.0.0.0/30 for the 10.0.0.0/18 subnet.
Client IP range: Enter the IP range that the SSL VPN gateway assigns to the client for communication with Tencent Cloud. You can enter any IP range whose subnet mask is less than or equal to 24. Take note that the IP range must not conflict with the VPC CIDR of Tencent Cloud or your local private network.

Why does the SSL connection fail?

1. The public network connection failed. Check the connectivity of the public network.
2. Is the Public IP abnormal, especially the cross-border Public IP? Cross-border Public IPs are prohibited from directly accessing cloud resources and will be blocked upon detection.
3. The subnet route is not configured. For subnet routing configuration, refer to Step 4: Configuring Tencent Cloud Side Routing Policy.
4. The SSL client certificate is used by multiple users. Only one user can use the SSL client certificate.

Can I change the number of SSL connections?

Currently not supported. Please plan the SSL connection count in advance before creation.

Does an SSL VPN require fixed public IP addresses?

No. SSL VPN connections do not require fixed IP addresses on the user side. An SSL VPN allows Windows, MAC, and Linux clients, as well as mobile phones that use OpenVPN, to connect to instances on Tencent Cloud VPCs.

Can I switch an SSL VPN to an IPsec VPN?

No, IPSec VPN and SSL VPN are different types of VPNs and cannot be interchanged.

Can multiple clients use the same certificate?

No, each SSL client configuration certificate can be used only by one client.

What is the maximum number of SSL connections allowed?

The maximum number of SSL connections allowed varies based on the bandwidth specification. A bandwidth specification of [5 Mbps, 100 Mbps] supports up to 100 SSL connections. A bandwidth specification of [200 Mbps, 500 Mbps] supports up to 500 SSL connections. A bandwidth specification of 1000 Mbps supports up to 1000 SSL connections.