Help Center/ Direct Connect/ User Guide/ Virtual Interfaces/ Creating a Virtual Interface
Updated on 2026-01-06 GMT+08:00

Creating a Virtual Interface

Scenario

After the connection and the gateway are ready, you need to create a virtual interface so that your on-premises network can access the VPC.

You can create virtual interfaces for the current account or other accounts.

  1. Go to the Virtual Interfaces page.
  2. In the upper left corner of the page, click and select a region and project.
  3. In the upper right corner, click Create Virtual Interface.

    Configure the parameters based on Table 1.

    Figure 1 Creating a virtual interface
    Table 1 Parameters for creating a virtual interface

    Parameter

    Description

    Example Value

    Virtual Interface Owner

    Specifies the account that this virtual interface will be created for. There are two options:

    • Current account: You will create a virtual interface for the current account.
    • Another account: You will create a virtual interface for another account so that this account can use your connection to access the VPC from the on-premises data center.

    Select Current account in this example.

    Current account

    Region

    Specifies the region where the connection is deployed. You can also change the region here or in the upper left corner of the console.

    EU-Dublin

    Name

    Specifies the virtual interface name.

    The name can contain 1 to 64 characters.

    vif-123

    Virtual Interface Priority

    Specifies whether the virtual interface will be preferentially used over other virtual interfaces. There are two options: Preferred and Standard.

    If multiple virtual interfaces are associated with one Direct Connect device, the load is balanced among virtual interfaces with the same priority, while virtual interfaces with different priorities are working in active/standby pairs.

    Preferred

    Connection

    Specifies the connection you will use to connect your on-premises network to Huawei Cloud.

    dc-123

    Gateway

    Specifies the type of the gateway that the virtual interface connects to.

    You can select a virtual gateway or global DC gateway.

    Virtual gateway

    Virtual Gateway

    This parameter is mandatory when Virtual Interface Owner is set to Current account and Gateway is set to Virtual gateway.

    Select a virtual gateway that the virtual interface connects to.

    vgw-123

    Global DC Gateway

    This parameter is mandatory when Virtual Interface Owner is set to Current account and Gateway is set to Global DC gateway.

    Select a global DC gateway that the virtual interface connects to.

    dgw-123

    VLAN

    Specifies the ID of the VLAN for the virtual interface.

    You need to configure the VLAN if you create a standard connection.

    The VLAN for a hosted connection will be allocated by the partner. You do not need to configure the VLAN.

    30

    Enterprise Project

    Specifies the enterprise project by which virtual interfaces are centrally managed. Select an existing enterprise project.

    default

    Bandwidth (Mbit/s)

    Specifies the bandwidth that can be used by the virtual interface. The bandwidth cannot exceed that of the connection.

    50 Mbit/s

    Enable Rate Limiting

    Limits the highest bandwidth that can be used by the virtual interface.

    If this option is enabled, the rate limit gradients are as follows:

    • If the bandwidth is less than or equal to 100 Mbit/s, the rate limit gradient is 10 Mbit/s.
    • If the bandwidth is greater than 100 Mbit/s but is less than or equal to 1,000 Mbit/s, the rate limit gradient is 100 Mbit/s.
    • If the bandwidth is greater than 1,000 Mbit/s but is less than or equal to 100 Gbit/s, the rate limit gradient is 1 Gbit/s.
    • If the bandwidth is greater than 100 Gbit/s, the rate limit gradient is 10 Gbit/s.

    For example, if the bandwidth is 52 Mbit/s, the actual rate limit is 60 Mbit/s. If the bandwidth is 115 Mbit/s, the actual rate limit is 200 Mbit/s.

    Not enabled

    Tag

    Adds tags to help you identify your virtual interface. You can change them after the virtual interface is created.

    example_key1

    example_value1

    IP Address Family

    Specifies the address type of the virtual interface.

    The default option is IPv4.

    IPv4

    Local Gateway

    Specifies the IP address used by Huawei Cloud to connect to your on-premises network. After you configure Local Gateway on the console, the configuration will be automatically delivered to the gateway used by Huawei Cloud.

    10.0.0.1/30

    Remote Gateway

    Specifies the IP address used by the on-premises data center to connect to Huawei Cloud. After you configure Remote Gateway on the console, you need to configure the IP address on the interface of the on-premises device.

    CAUTION:

    The IP addresses of the local gateway and remote gateway must be in the same IP address range. Generally, an IP address range with a 30-bit mask is used. The IP addresses you plan cannot conflict with IP addresses used on your on-premises network. Plan an IP address range that will be used at both ends of the connection for network communication between your on-premises data center and the cloud.

    10.0.0.2/30

    Routing Mode

    Specifies whether static routing or BGP routing is used to route traffic between your on-premises network and the cloud network.

    If there are or will be two or more connections, select BGP routing for higher availability.

    BGP

    Remote Subnet

    Specifies the subnets and masks of your on-premises network. If there are multiple subnets, use commas (,) to separate them.

    This parameter is required when static routing is selected.

    192.168.51.0/24, 10.1.123.0/24

    BGP ASN

    Specifies the autonomous system (AS) number of the BGP peer.

    This parameter is required when BGP routing is selected.

    12345

    BGP MD5 Authentication Key

    Specifies the password used to authenticate the BGP peer using MD5.

    This parameter can be set when BGP routing is selected, and the parameter values on both gateways must be the same.

    The key contains 8 to 255 characters and must contain at least two types of the following characters:

    • Uppercase letters
    • Lowercase letters
    • Digits
    • Special characters ~!,.:;-_"(){}[]/@#$%^&*+\|=

    Qaz12345678

    Description

    Provides supplementary information about the virtual interface.

    -

    When you configure the local and remote gateways, note the following:

    • The local gateway is used by Huawei Cloud for connecting to your equipment room. After you configure Local Gateway on the console, the configuration will be automatically delivered to the gateway used by Huawei Cloud.
    • The remote gateway is used by your equipment room for connecting to Huawei Cloud. After you configure Remote Gateway on the console, you also need to configure the gateway deployed in your equipment room.
    • The local and remote gateways must use the same CIDR block and cannot conflict with service IP addresses on the network.
  4. Click Create Now. When the status of the virtual interface changes to Normal, the virtual interface has been created.

    Ping the IP address of a server in the VPC from your on-premises data center to test network connectivity. If the test is successful, your on-premises data center can connect to Huawei Cloud and access the desired VPC.

You can create a virtual interface for another account so that this account can use your connection to access the VPC.

Virtual interfaces that you create for other users take effect only after the users accept them.

  1. Go to the Virtual Interfaces page.
  2. In the upper left corner of the page, click and select a region and project.
  3. In the upper right corner, click Create Virtual Interface.
  4. Configure the parameters based on Table 2.
    Table 2 Parameters for creating a virtual interface for another account

    Parameter

    Description

    Example Value

    Virtual Interface Owner

    Specifies the account that this virtual interface will be created for. You create a virtual interface for another account so that this account can use your connection to access the VPC.

    Another account

    Region

    Specifies the region where the connection is deployed. You can also change the region in the upper left corner of the console.

    EU-Dublin

    Name

    Specifies the virtual interface name.

    The name can contain 1 to 64 characters.

    vif-123

    Virtual Interface Priority

    Specifies whether the virtual interface will be preferentially used over other virtual interfaces. There are two options: Preferred and Standard.

    If multiple virtual interfaces are associated with one Direct Connect device, the load is balanced among virtual interfaces with the same priority, while virtual interfaces with different priorities are working in active/standby pairs.

    Preferred

    Connection

    Specifies the connection you can use to connect your on-premises network to Huawei Cloud.

    dc-123

    Gateway

    Specifies the type of the gateway that the virtual interface connects to.

    You can select a virtual gateway or global DC gateway.

    In this example, select a virtual gateway.

    Virtual gateway

    Project ID

    Specifies the ID of the project that the virtual gateway belongs to. This parameter is mandatory when Gateway is set to Virtual gateway.

    On the management console, hover the cursor on the account name in the upper right corner and select My Credentials. On the My Credentials page, view the project ID.

    -

    ID

    Specifies the ID of the virtual gateway. This parameter is mandatory when Gateway is set to Virtual gateway.

    In the virtual gateway list, hover the cursor on the virtual gateway name and view the name and ID of the virtual gateway.

    -

    Project ID

    Specifies the ID of the project that the global DC gateway belongs to. This parameter is mandatory when Gateway is set to Global DC gateway.

    On the management console, hover the cursor on the account name in the upper right corner and select My Credentials. On the My Credentials page, view the project ID.

    -

    Global DC Gateway ID

    Specifies the ID of the global DC gateway. This parameter is mandatory when Gateway is set to Global DC gateway.

    In the global DC gateway list, hover the cursor over the global DC gateway name and view the name and ID of the global DC gateway.

    -

    VLAN

    Specifies the ID of the VLAN for the virtual interface.

    You need to configure the VLAN if you create a standard connection.

    The VLAN for a hosted connection will be allocated by the partner. You do not need to configure the VLAN.

    30

    Bandwidth (Mbit/s)

    Specifies the bandwidth that can be used by the virtual interface. The bandwidth cannot exceed that of the connection.

    50 Mbit/s

    Enable Rate Limiting

    Limits the highest bandwidth that can be used by the virtual interface. If this option is enabled, the rate limit gradients are as follows:

    • If the bandwidth is less than or equal to 100 Mbit/s, the rate limit gradient is 10 Mbit/s.
    • If the bandwidth is greater than 100 Mbit/s but is less than or equal to 1,000 Mbit/s, the rate limit gradient is 100 Mbit/s.
    • If the bandwidth is greater than 1,000 Mbit/s but is less than or equal to 100 Gbit/s, the rate limit gradient is 1 Gbit/s.
    • If the bandwidth is greater than 100 Gbit/s, the rate limit gradient is 10 Gbit/s.

    For example, if the bandwidth is 52 Mbit/s, the actual rate limit is 60 Mbit/s. If the bandwidth is 115 Mbit/s, the actual rate limit is 200 Mbit/s.

    Not enabled

    Tag

    Adds tags to help you identify your virtual interface. You can change them after the virtual interface is created.

    example_key1

    example_value1

    IP Address Family

    Specifies the address type of the virtual interface.

    IPv4 is selected by default.

    IPv4

    Local Gateway

    Specifies the IP address used by Huawei Cloud to connect to your on-premises network. After you configure Local Gateway on the console, the configuration will be automatically delivered to the gateway used by Huawei Cloud.

    10.0.0.1/30

    Remote Gateway

    Specifies the IP address used by the on-premises data center to connect to Huawei Cloud. After you configure Remote Gateway on the console, you need to configure the IP address on the interface of the on-premises device.

    CAUTION:

    The IP addresses of the local gateway and remote gateway must be in the same IP address range. Generally, an IP address range with a 30-bit mask is used. The IP addresses you plan cannot conflict with IP addresses used on your on-premises network. Plan an IP address range that will be used at both ends of the connection for network communication between your on-premises data center and the cloud.

    10.0.0.2/30

    Routing Mode

    Specifies whether static routing or BGP routing is used to route traffic between your on-premises network and the cloud network.

    If there are or will be two or more connections, select BGP routing for higher availability.

    192.168.51.0/24, 10.1.123.0/24

    Remote Subnet

    Specifies the subnets and masks of your on-premises network. If there are multiple subnets, use commas (,) to separate them.

    This parameter is required when static routing is selected.

    BGP

    BGP ASN

    Specifies the ASN of the BGP peer.

    This parameter is required when BGP routing is selected.

    12345

    BGP MD5 Authentication Key

    Specifies the password used to authenticate the BGP peer using MD5.

    This parameter can be set when BGP routing is selected, and the parameter values on both gateways must be the same.

    The key contains 8 to 255 characters and must contain at least two types of the following characters:

    • Uppercase letters
    • Lowercase letters
    • Digits
    • Special characters ~!,.:;-_"(){}[]/@#$%^&*+\|=

    Qaz12345678

    Description

    Provides supplementary information about the virtual interface.

    -

    When you configure the local and remote gateways, note the following:

    • The local gateway is used by Huawei Cloud for connecting to your equipment room. After you configure Local Gateway on the console, the configuration will be automatically delivered to the gateway used by Huawei Cloud.
    • The remote gateway is used by your equipment room for connecting to Huawei Cloud. After you configure Remote Gateway on the console, you also need to configure the gateway deployed in your equipment room.
    • The local and remote gateways must use the same CIDR block and cannot conflict with service IP addresses on the network.
  5. Click Create Now. When the status of the virtual interface changes to Normal, the virtual interface has been created.

    Ping the IP address of a server in the VPC from your on-premises data center to test network connectivity. If the test is successful, your on-premises data center can connect to Huawei Cloud and access the desired VPC.