Why Does an ECS Have EIP Access Information After I Enable a VPN?
This occurs because the ECS has an EIP bound before the VPN is used. That is, you can access the ECS through the VPN or the EIP.
After the VPN is established, traffic from servers meeting ACL rules can enter the tunnel to access ECSs.
- If an EIP is bound to an ECS, devices on a non-VPN network can access the ECS using the EIP.
- If the ECS can be accessed only through a VPN, unbind the EIP from the ECS after the VPN interconnection is complete. When an ECS needs an EIP bound, you can use ACL rules to specify the traffic that can access the ECS through the EIP.
Whether a user needs to retain an EIP depends on the user's service. If an ECS is used to obtain the data of the customer data center through a VPN, and also is used to provide services accessible from the Internet users, its EIP needs to be retained.
Did this article solve your problem?
Thank you for your score!Your feedback would help us improve the website.