Updated on 2026-09-14 GMT+08:00

Adding Private CIDR Blocks

Scenarios

If you use a public network address as a private network address (that is, use a private network address segment other than 10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16, and the 100.64.0.0/10 CIDR block reserved for carrier-class NAT), modify or add a private CIDR block. Otherwise, CFW may fail to forward traffic between VPCs.

Notes and Constraints

Up to 32 private CIDR blocks can be configured.

Adding Private CIDR Blocks

  1. Log in to the CFW console.
  2. Click in the upper left corner of the management console and select a region or project.
  3. (Optional) Switch to another firewall instance. If there are multiple firewall instances, you can select a desired instance from the drop-down list in the upper left corner of the page.
  4. In the navigation pane, choose Assets > Inter-VPC Border Firewalls.
  5. Click Edit Private IP Address Segment next to Custom Private IP Address Segment.
  6. In the dialog box displayed, click Add and then enter a private CIDR block.
  7. Click OK.

Related Operations