<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dynatrace Saas - Active gate configuration in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112711#M8472</link>
    <description>&lt;P&gt;Thank you so much  for the clarification&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Wed, 30 Jan 2019 08:23:17 GMT</pubDate>
    <dc:creator>sangeetha_mitta</dc:creator>
    <dc:date>2019-01-30T08:23:17Z</dc:date>
    <item>
      <title>Dynatrace Saas - Active gate configuration</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112709#M8470</link>
      <description>&lt;P&gt;Could you please clarify on the below question?&lt;/P&gt;&lt;P&gt;Currently we are configuring active gate for Dynatrace SaaS.&lt;/P&gt;&lt;P&gt;Customer is asking for strong clarification on "&lt;B&gt;Why Active gate servers should be in DMZ&lt;/B&gt;"&lt;/P&gt;&lt;P&gt;Could you please clarify?&lt;/P&gt;&lt;P&gt;Thanks&amp;amp;Regards&lt;/P&gt;&lt;P&gt;Sangeetha&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 29 Jan 2019 12:40:20 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112709#M8470</guid>
      <dc:creator>sangeetha_mitta</dc:creator>
      <dc:date>2019-01-29T12:40:20Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Saas - Active gate configuration</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112710#M8471</link>
      <description>&lt;P&gt;ActiveGates in SaaS are going to be communicating with an external network (in this case the internet) as we're sending data from the OneAgents to Dynatrace SaaS. In this case the ActiveGate is the only component that needs to be exposed to the Internet in any way. It is simply a common best practice in these scenarios to deploy such hosts in a DMZ as an additional layer of security. The description of the purpose of a DMZ  from &lt;A href="https://en.wikipedia.org/wiki/DMZ_%28computing%29"&gt;Wikipedia&lt;/A&gt; should make it clear that it applies here:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;"In &lt;A href="https://en.wikipedia.org/wiki/Computer_security"&gt;computer security&lt;/A&gt;, a &lt;B&gt;DMZ&lt;/B&gt; or &lt;B&gt;demilitarized zone&lt;/B&gt; (sometimes referred to as a &lt;B&gt;perimeter network&lt;/B&gt; or &lt;A href="https://en.wikipedia.org/wiki/Screened_subnet"&gt;screened subnet&lt;/A&gt;) is a physical or logical &lt;A href="https://en.wikipedia.org/wiki/Subnetwork"&gt;subnetwork&lt;/A&gt;&lt;/EM&gt;&lt;EM&gt; that contains and exposes an organization's external-facing services to an untrusted network, usually a larger network such as the Internet&lt;/EM&gt;.&lt;I&gt;The purpose of a DMZ is to add an additional layer of security to an organization's &lt;A href="https://en.wikipedia.org/wiki/Local_area_network"&gt;local area network&lt;/A&gt; (LAN): an external &lt;A href="https://en.wikipedia.org/wiki/Node_%28networking%29"&gt;network node&lt;/A&gt; can access only what is exposed in the DMZ, while the rest of the organization's network is &lt;A href="https://en.wikipedia.org/wiki/Firewall_%28computing%29"&gt;firewalled&lt;/A&gt;. The DMZ functions as a small, isolated network positioned between the Internet and the private network and, if its design is effective, allows the organization extra time to detect and address breaches before they would further penetrate into the internal networks."&lt;/I&gt;&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 29 Jan 2019 19:31:40 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112710#M8471</guid>
      <dc:creator>JamesKitson</dc:creator>
      <dc:date>2019-01-29T19:31:40Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Saas - Active gate configuration</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112711#M8472</link>
      <description>&lt;P&gt;Thank you so much  for the clarification&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 30 Jan 2019 08:23:17 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112711#M8472</guid>
      <dc:creator>sangeetha_mitta</dc:creator>
      <dc:date>2019-01-30T08:23:17Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Saas - Active gate configuration</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112712#M8473</link>
      <description>&lt;P&gt;I believe an Environment AGs only needs to be placed in the DMZ if it's going to be receiving agent traffic from the public internet.  AGs that simply send agent traffic from on-premise to the SaaS cluster need not be deployed in the DMZ.&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 30 Jan 2019 16:34:09 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-Saas-Active-gate-configuration/m-p/112712#M8473</guid>
      <dc:creator>dave_mauney</dc:creator>
      <dc:date>2019-01-30T16:34:09Z</dc:date>
    </item>
  </channel>
</rss>

