<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dynatrace SaaS AWS, using EdgeConnect in corporate network over VPC Endpoint/private Link to Dynatrace Service Endpoint in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-SaaS-AWS-using-EdgeConnect-in-corporate-network-over/m-p/290851#M38144</link>
    <description>&lt;P&gt;For those of you who are interested: we opened a ticket with Dynatrace and were told that EdgeConnect via AWS Privatelink is not currently supported.&lt;/P&gt;&lt;P&gt;No ETA available yet.&lt;/P&gt;</description>
    <pubDate>Thu, 04 Dec 2025 14:49:30 GMT</pubDate>
    <dc:creator>AndrasKovacs</dc:creator>
    <dc:date>2025-12-04T14:49:30Z</dc:date>
    <item>
      <title>Dynatrace SaaS AWS, using EdgeConnect in corporate network over VPC Endpoint/private Link to Dynatrace Service Endpoint</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-SaaS-AWS-using-EdgeConnect-in-corporate-network-over/m-p/290388#M38093</link>
      <description>&lt;P&gt;Hello together,&lt;/P&gt;&lt;P&gt;we have a Dynatrace SaaS tenant in AWS and our corporate network is connected over a VPC endpoint/private link to the Dynatrace SaaS Service endpoint.&lt;/P&gt;&lt;P&gt;We now want to place an EdgeConnect in our corporate network and connect over that private link.&lt;/P&gt;&lt;P&gt;So we reach our tenant xyz12345.apps.dynatrace.com over the private link instead of the Internet.&lt;/P&gt;&lt;P&gt;The EdgeConnect should run in a container on an AWS EC2 instance with Redhad 9 and podman installed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But the container always exits when trying to connect to the Dynatrace tenant with "TLS&amp;nbsp;error - hostname mismatch"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;very simple&amp;nbsp;edgeConnect.yaml:&lt;/P&gt;&lt;P&gt;name: my-edgeconnect&lt;BR /&gt;api_endpoint_host: xyz12345.apps.dynatrace.com&lt;BR /&gt;log_level: debug&lt;BR /&gt;oauth:&lt;BR /&gt;&amp;nbsp; client_id: dt0s10.xxxxxxxxx&lt;BR /&gt;&amp;nbsp; client_secret: dt0s10.xxxxxxxxxxxxxxxx&lt;BR /&gt;&amp;nbsp; resource: urn:dtenvironment:xyz12345&lt;BR /&gt;&amp;nbsp; endpoint: sso.dynatrace.com/sso/oauth2/token&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;error when trying to start the EdgeConnect container:&lt;/P&gt;&lt;P&gt;2025-11-27T08:59:36.260710854+0000 info [edge_connect::dt_oauth] OAuth 2.0 Client Credentials flow succeeded. Token with scope app-engine:edge-connects:connect expires in 300s&lt;BR /&gt;2025-11-27T08:59:36.270188903+0000 info [edge_connect::websocket::connection] Connection 1: Opening connection to wss://xyz12345.apps.dynatrace.com/platform/app-engine/edge-connect/v1/connect.&lt;BR /&gt;2025-11-27T08:59:36.365668392+0000 info [edge_connect::websocket::manager] Beginning shutdown (initial connection attempt failed)&lt;BR /&gt;2025-11-27T08:59:36.365704289+0000 error [edge_connect] Exiting due to error: Initial connection attempt failed: Error establishing connection: TLS error: native-tls error: error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:../ssl/statem/statem_clnt.c:1889: (hostname mismatch)&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I assume, that it depends on the certificate I get when connecting to Dynatrace over the private link.&lt;BR /&gt;Here the certificate for xyz12345.apps.dynatrace.com includes "*.live.dynatrace.com" which is different from the certificate when connecting over the Internet.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Server certificate&lt;BR /&gt;subject=C=US, ST=Massachusetts, L=Waltham, O=Dynatrace LLC, CN=*.live.dynatrace.com&lt;BR /&gt;issuer=C=US, O=DigiCert Inc, CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(Connecting an EdgeConnect to our SaaS tenant directly over the Internet works without problems, but we need it in corporate network over private link)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does somebody managed to connect EdgeConnect over an AWS private link to Dynatrace SaaS?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 11:38:49 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-SaaS-AWS-using-EdgeConnect-in-corporate-network-over/m-p/290388#M38093</guid>
      <dc:creator>mweber5</dc:creator>
      <dc:date>2025-11-27T11:38:49Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace SaaS AWS, using EdgeConnect in corporate network over VPC Endpoint/private Link to Dynatrace Service Endpoint</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-SaaS-AWS-using-EdgeConnect-in-corporate-network-over/m-p/290851#M38144</link>
      <description>&lt;P&gt;For those of you who are interested: we opened a ticket with Dynatrace and were told that EdgeConnect via AWS Privatelink is not currently supported.&lt;/P&gt;&lt;P&gt;No ETA available yet.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Dec 2025 14:49:30 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-SaaS-AWS-using-EdgeConnect-in-corporate-network-over/m-p/290851#M38144</guid>
      <dc:creator>AndrasKovacs</dc:creator>
      <dc:date>2025-12-04T14:49:30Z</dc:date>
    </item>
  </channel>
</rss>

