Help Center> Virtual Private Network> FAQs> Classic VPN> Connection or Ping Failure> Do Huawei Cloud VPNs Have the DPD Mechanism Enabled?
Updated on 2023-06-16 GMT+08:00

Do Huawei Cloud VPNs Have the DPD Mechanism Enabled?

Yes.

Huawei Cloud VPNs have the DPD mechanism enabled by default to detect the IKE process status in the on-premises data center.

After three consecutive detection failures, Huawei Cloud considers that the IKE process in the on-premises data center is abnormal. In this case, Huawei Cloud deletes the local tunnel to ensure tunnel synchronization between the two ends.

The DPD protocol does not require that the peer end be configured synchronously, but requires that the peer end can respond to DPD detections. To ensure that the tunnel status of the two ends is consistent and avoid that one end has a tunnel and the other not, it is recommended that you enable the DPD mechanism on your on-premises gateway to detect the IKE process status of the VPN service on Huawei Cloud.

After DPD fails, the tunnel will be deleted without affecting service stability.

DPD can detect exceptions in the IKE process at the peer end in time and reset the tunnel to ensure tunnel synchronization between the two ends. After a tunnel is deleted, if there is traffic transmitted over the tunnel, the tunnel can be re-established through negotiation.

Connection or Ping Failure FAQs

more