Custom Routing Mode Configuration Guide

Last Updated At: 2025-10-30 16:34:27

Step 1: Creating an Instance in Custom Routing Mode

See Inter-VPC Firewall Toggle > Creating an Inter-VPC Firewall to create a target instance, where the routing mode is set to custom routing.

Step 2: Configuring a Traffic Steering Route

Check the VPCs at both ends of the peering connection, which are VPC A and VPC B.

  1. On the Route Table page, find the route table of VPC A, click the route table ID, and then select the default route table.

  2. On the details page, click Add Routing Policy.

  3. In the Add Routing Policy pop-up window, add a routing policy with the destination of VPC B IP range and the next hop of a high-availability virtual IP address, and click Create.

  4. On the details page, disable the routing toggle for the original peering connection and immediately enable the route you just configured.

    Note:

    Changing a route may cause a momentary disconnection in the network. It is recommended to perform this operation during off-peak workload hours.

  5. On the Route Table page, find the route table of VPC B and select the default route table.

  6. Repeat the previous steps to add a firewall route entry.

Step 3: Verifying Whether the Firewall Is Working Properly

See Log Audit to check whether there are traffic logs.
See Log Audit to check whether the intrusion prevention is normal.
Configure inter-VPC rules and check whether they are hit normally.