All Products
Search
Document Center

Cloud Config:Using multi-zone VPN Gateway

Last Updated:Oct 14, 2025

This rule checks whether two vSwitches are configured for the VPN Gateway to ensure high availability of cross-zone services. If they are configured, the evaluation result is considered compliant.

Scenarios

An enterprise configures two vSwitches in multiple zones for a VPN Gateway to achieve cross-zone high availability. This ensures stable and secure remote connections even when a failure occurs in one zone. The evaluation result is considered compliant.

Risk level

Default risk level: high.

You can change the risk level as needed.

Detection logic

This rule checks whether two vSwitches are configured for the VPN Gateway to ensure high availability of cross-zone services. If they are configured, the evaluation result is considered compliant.

Rule details

Parameter

Description

Rule name

Using multi-zone VPN Gateway

Rule identifier

vpn-gateway-multi-zone

Automatic remediation

Not supported

Rule trigger

Configuration change

Supported resource types

ACS::VPN::VpnGateway

Input parameters

None

Remediation guidance

For more information, see Create and manage VPN Gateway instances.