Updated on 2025-08-19 GMT+08:00

Data Plan

Table 1 Data plan

Category

Item

Example of Hillstone Firewall Planning

Example of Huawei Cloud Planning

VPC

Subnet

172.16.0.0/16

  • 192.168.0.0/24
  • 192.168.1.0/24

VPN gateway

Gateway IP address

1.1.1.1 (IP address of the uplink public network interface GE0/0 on the Hillstone firewall)

  • Active EIP: 1.1.1.2
  • Active EIP 2: 2.2.2.2

Interconnection subnet

-

192.168.2.0/24

VPN connection

IKE policy

  • Version: v1
  • Negotiation mode: main
  • Authentication algorithm: SHA2-256
  • Encryption algorithm: AES-256
  • DH algorithm: Group 15
  • Lifetime (s): 86400
  • Local ID: FQDN
  • Peer ID: FQDN

IPsec policy

  • Authentication algorithm: SHA2-256
  • Encryption algorithm: AES-256
  • PFS: DH group 15
  • Lifetime (s): 28800