<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Multiple ActiveGates for segmented network. in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122036#M13918</link>
    <description>&lt;P&gt;I have two completely segregated parts of my network, one with access to the internet where I've already installed an ActiveGate (to collect my Azure traffic) and to relay Dynatrace data between my oneagents and the SaaS Dynatrace.  I have another network segment that has no access to the internet or the outside world (and it needs to stay that way) where I need to monitor applications.&lt;/P&gt;&lt;P&gt;Can I install another ActiveGate within that isolated segment, point all of the agents to talk to it, and then have it talk to the primary ActiveGate (as a sort of proxy)?  Or do I have to give the isolated ActiveGate a path through the firewall to reach the Dynatrace home?&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Tue, 13 Aug 2019 20:56:59 GMT</pubDate>
    <dc:creator>darbyg</dc:creator>
    <dc:date>2019-08-13T20:56:59Z</dc:date>
    <item>
      <title>Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122036#M13918</link>
      <description>&lt;P&gt;I have two completely segregated parts of my network, one with access to the internet where I've already installed an ActiveGate (to collect my Azure traffic) and to relay Dynatrace data between my oneagents and the SaaS Dynatrace.  I have another network segment that has no access to the internet or the outside world (and it needs to stay that way) where I need to monitor applications.&lt;/P&gt;&lt;P&gt;Can I install another ActiveGate within that isolated segment, point all of the agents to talk to it, and then have it talk to the primary ActiveGate (as a sort of proxy)?  Or do I have to give the isolated ActiveGate a path through the firewall to reach the Dynatrace home?&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 13 Aug 2019 20:56:59 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122036#M13918</guid>
      <dc:creator>darbyg</dc:creator>
      <dc:date>2019-08-13T20:56:59Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122037#M13919</link>
      <description>&lt;P&gt;The only scenario where something like that can work is if it's an Environment AG talking to a Cluster AG as noted &lt;A rel="noopener noreferrer" href="https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/basic-concepts/supported-connectivity-schemes-for-activegates/" target="_blank"&gt;here&lt;/A&gt;. If they are both Environment AGs that will not work.&lt;/P&gt;&lt;P&gt;Note that if needed you &lt;A rel="noopener noreferrer" href="https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/configuration/set-up-proxy-authentication-for-activegate/" target="_blank"&gt;can configure a true proxy&lt;/A&gt; for the AG to use.&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 13 Aug 2019 21:58:21 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122037#M13919</guid>
      <dc:creator>JamesKitson</dc:creator>
      <dc:date>2019-08-13T21:58:21Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122038#M13920</link>
      <description>&lt;P&gt;So I'll need to stand up a new Cluster ActiveGate within my internet-accessible environment, then point my existing Environment ActiveGate (which monitors Azure) to it, then stand up another Environment ActiveGate within my siloed environment, and whitelist traffic between the Cluster ActiveGate and the siloed ActiveGate? Like the diagram here &lt;A rel="noopener noreferrer" href="https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/basic-concepts/supported-connectivity-schemes-for-activegates/" target="_blank"&gt;https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/basic-concepts/supported-connectivity-schemes-for-activegates/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Does that sound right?&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 13 Aug 2019 22:30:18 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122038#M13920</guid>
      <dc:creator>darbyg</dc:creator>
      <dc:date>2019-08-13T22:30:18Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122039#M13921</link>
      <description>&lt;P&gt;Hi Glenn,&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Edit:&lt;/STRONG&gt; Dynatrace &lt;STRONG&gt;SaaS &lt;/STRONG&gt;does not have Cluster ActiveGates. Environment ActiveGates do not function as a proxy for other Environment ActiveGates. The &lt;EM&gt;isolated &lt;/EM&gt;ActiveGate needs to directly communicate to the Dynatrace Server or via an actual proxy.&lt;/P&gt;&lt;P&gt;Sia&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 14 Aug 2019 12:03:31 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122039#M13921</guid>
      <dc:creator>sia_h</dc:creator>
      <dc:date>2019-08-14T12:03:31Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122040#M13922</link>
      <description>&lt;P&gt;Am I able to have two Environment ActiveGates? One in my connected network and one in my isolated network? Or will I have to whitelist a bunch of traffic between Azure, Dynatrace SaaS, and my isolated ActiveGate?&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 14 Aug 2019 15:08:22 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122040#M13922</guid>
      <dc:creator>darbyg</dc:creator>
      <dc:date>2019-08-14T15:08:22Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple ActiveGates for segmented network.</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122041#M13923</link>
      <description>&lt;P&gt;You can have as many Environment AGs as you want and OneAgents will make use of any that they can reach, but Environment AGs cannot send data back through another environment AG. Only through a cluster AG (if Managed) or directly to the Dynatrace server nodes.&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 14 Aug 2019 15:15:37 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Multiple-ActiveGates-for-segmented-network/m-p/122041#M13923</guid>
      <dc:creator>JamesKitson</dc:creator>
      <dc:date>2019-08-14T15:15:37Z</dc:date>
    </item>
  </channel>
</rss>

