Before you get started with Virtual Private Cloud (VPC), we recommend that you understand the limits and learn how to increase quotas.
Limits and quotas on VPCs and vSwitches
Item | Limit | Adjustable |
Maximum number of VPCs that can be created in each region | 10 | You can request a quota increase by using one of the following methods:
|
Maximum number of vSwitches that can be created in each VPC | 150 | You can request a quota increase by using one of the following methods:
|
Available CIDR block for each VPC |
| N/A |
Maximum number of secondary IPv4 CIDR blocks that can be created in each VPC | 5 | You can request a quota increase by using one of the following methods:
|
Maximum number of secondary IPv6 CIDR blocks that can be created in each VPC | 3 | N/A |
Maximum number of customer CIDR blocks that can be created in each VPC | 3 | |
Maximum number of private IP addresses that can be used by cloud resources in each VPC | 60,000 Note
| |
Maximum number of tags that can be added to each VPC | 20 | |
Maximum number of tags that can be added to each vSwitch | 20 |
Limits and quotas on vRouters and route tables
Item | Limit | Adjustable |
Maximum number of vRouters that can be created in each VPC | 1 | N/A |
Maximum number of custom route tables that can be created in each VPC | 9 | You can request a quota increase by using one of the following methods:
|
Maximum number of custom routes that can be created in each route table | 200 | |
Maximum number of custom routes that point to an HAVIP | 5 | |
VPCs that do not support custom route tables | If a VPC contains an ECS instance that belongs to one of the following instance families, the VPC does not support custom route tables: ecs.c1, ecs.c2, ecs.c4, ecs.ce4, ecs.cm4, ecs.d1, ecs.e3, ecs.e4, ecs.ga1, ecs.gn4, ecs.gn5, ecs.i1, ecs.m1, ecs.m2, ecs.mn4, ecs.n1, ecs.n2, ecs.n4, ecs.s1, ecs.s2, ecs.s3, ecs.se1, ecs.sn1, ecs.sn2, ecs.t1, and ecs.xn4. For more information, see Advanced VPC features. | If your Elastic Compute Service (ECS) instance does not support advanced virtual private cloud (VPC) features, upgrade or release the ECS instance.
|
Maximum number of tags that can be added to each route table | 20 |
Limits and quotas on Dynamic Host Configuration Protocol (DHCP) options sets
Item | Limit | Adjustable |
Maximum number of DHCP options sets that can be created with each Alibaba Cloud account | 10 | N/A |
Maximum number of VPCs that can be associated with each DHCP options set | 10 | |
Maximum number of DHCP options sets that can be associated with each VPC | 1 | |
Maximum number of domain names that can be specified in each DHCP options set | 1 | |
Maximum number of DNS server IP addresses that can be specified in each DHCP options set | 4 | |
VPCs that cannot be associated with DHCP options sets | If a VPC contains an ECS instance that belongs to one of the following instance families, the VPC does not support DHCP options sets: ecs.c1, ecs.c2, ecs.c4, ecs.ce4, ecs.cm4, ecs.d1, ecs.e3, ecs.e4, ecs.ga1, ecs.gn4, ecs.gn5, ecs.i1, ecs.m1, ecs.m2, ecs.mn4, ecs.n1, ecs.n2, ecs.n4, ecs.s1, ecs.s2, ecs.s3, ecs.se1, ecs.sn1, ecs.sn2, ecs.t1, and ecs.xn4. For more information, see Advanced VPC features. | If your Elastic Compute Service (ECS) instance does not support advanced virtual private cloud (VPC) features, upgrade or release the ECS instance.
|
Limits and quotas on shared VPCs
Item | Limit | Adjustable |
Maximum number of principals supported by each VPC | 50 | You can request a quota increase by using one of the following methods:
|
Maximum number of principals supported by each vSwitch in a VPC | 50 | |
Maximum number of vSwitches that can be shared with each principal | 30 | |
Maximum number of IP addresses that each VPC can use | Maximum number of IP addresses that the resource owner and principals can use in each VPC | N/A |
Types of cloud resources that can be created in a shared vSwitch |
| N/A |
Limits on security groups in a shared VPC |
| |
Types of vSwitches that can be shared | Non-default vSwitches |
Limits and quotas on flow logs
Item | Limit | Adjustable |
Maximum number of flow logs that can be created in each region | 10 | N/A |
ECS instance families that do not support flow logs |
| Upgrade the ECS instances that do not support flow logs. For more information, see Upgrade the instance types of subscription instances and Change the instance type of a pay-as-you-go instance. |
Limits and quotas on network access control lists (ACLs)
Item | Limit | Adjustable |
Maximum number of network ACLs that can be created in each VPC | 20 | N/A |
Maximum number of rules that can be added to a network ACL |
| You can request a quota increase by using one of the following methods:
|
VPCs that do not support network ACLs | If a VPC contains an ECS instance of the following instance families, the VPC does not support network ACLs: ecs.c1, ecs.c2, ecs.c4, ecs.ce4, ecs.cm4, ecs.d1, ecs.e3, ecs.e4, ecs.ga1, ecs.gn4, ecs.gn5, ecs.i1, ecs.m1, ecs.m2, ecs.mn4, ecs.n1, ecs.n2, ecs.n4, ecs.s1, ecs.s2, ecs.s3, ecs.se1, ecs.sn1, ecs.sn2, ecs.t1, and ecs.xn4. For more information, see Advanced VPC features. | If your Elastic Compute Service (ECS) instance does not support advanced virtual private cloud (VPC) features, upgrade or release the ECS instance.
Note If a VPC contains an ECS instance of the specified instance families and the network ACL feature is enabled, you must upgrade or release the ECS instance for the network ACL to work as expected. |
Limits and quotas on HAVIPs
Item | Limit | Adjustable |
Network types that support HAVIPs | VPC | N/A |
Maximum number of HAVIPs that can be associated with each ECS instance | 5 | |
Maximum number of EIPs that can be associated with each HAVIP | 1 | |
Maximum number of ECS instances or ENIs that can be associated with each HAVIP | 10 Note
| |
Whether HAVIPs support broadcasting or multicasting | Snapshot backup files cannot be downloaded. Note HAVIPs support only unicast. If you use third-party software such as Keepalived to implement high availability, you must change the communication mode in the configuration file to unicast. | |
Maximum number of HAVIPs that can be created with each Alibaba Cloud account | 50 | |
Maximum number of HAVIPs that can be created in each VPC | 50 | |
Maximum number of route entries that point to an HAVIP in each VPC | 5 | You can request a quota increase by using one of the following methods:
|
Limits and quotas on traffic mirroring
Item | Limit | Adjustable |
Maximum number of traffic mirror sources that can be specified in each traffic mirror session | 10 | You can request a quota increase by using one of the following methods:
|
Maximum number of traffic mirror sessions that you can create in each region with each Alibaba Cloud account | 20,000 | N/A |
Maximum number of traffic mirror sessions supported by each traffic mirror source | 3 | |
Maximum number of traffic mirror destinations that can be specified by each Alibaba Cloud account | Unlimited | |
Maximum number of traffic mirror sources that can use each traffic mirror destination |
| |
Maximum number of rules that can be specified in each filter | 10 | |
Maximum number of traffic mirror sessions that can be associated with each filter | 2,000 |
Limits and quotas on VPC peering connections
Item | Default quota | Adjustable |
The maximum number of VPC peering connections supported by each VPC | 10 | You can request a quota increase by using one of the following methods:
|
The maximum number of VPC peering connections supported by each Alibaba Cloud account in each region | 20 | |
The maximum bandwidth supported by cross-border connections | 1024 Mbps | |
The maximum bandwidth supported by inter-region connections | 1024 Mbps | |
The default maximum bandwidth for intra-region connections | -1 Mbit/s, which indicates unlimited bandwidth |
Limits and quotas on IPv4 gateways
Item | Limit | Adjustable |
The maximum number of IPv4 gateways that can be created in a VPC | 1 | No |
The maximum number of gateway route tables that can be associated with an IPv4 gateway | 1 |
Limits and quotas on prefix lists
Item | Limit | Adjustable |
Maximum number of entries supported by each prefix list | 50 | You can request a quota increase by using one of the following methods:
|
Maximum number of prefix lists that can be shared with each participant | 10 | |
Maximum number of participants with which each prefix list can be shared | 10 | |
Maximum number of prefix lists that a user can create in each region | 10 | |
Maximum number of times that each prefix list can be associated | Unlimited | No |