<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Issue with selfsigned certifcate kubernet setup in Container platforms</title>
    <link>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124861#M567</link>
    <description>&lt;P&gt;&lt;IMG src="https://community.dynatrace.com/legacyfs/online/22341-issue.png" /&gt;Hi&lt;/P&gt;&lt;P&gt;I have tried setting the kubernet monitoring as per document .. but i have been always getting TLS issue for self signed certificate .. or even invalid token sometime ..&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;1. Using Keytool - imported the certificate in existing trusted.jks file with passwod trusted&lt;/P&gt;&lt;P&gt;2. Adding entry in custom.property file also .&lt;/P&gt;&lt;P&gt;3. Restarted all gateway/agent ..&lt;/P&gt;&lt;P&gt;4. Enter the kubernet URL and token but getting TLS or invalid token issues&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Also tried with no certificate options also.. then getting same TLS issue ..&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Note : Agent/gateway installed on same rancher-kubernet cluster node ... my server is on different node.&lt;/P&gt;&lt;P&gt;I am able to see docker images due to agent on that node ... but API/Token failing for TLS.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Q: What is right step for connection...&lt;/P&gt;&lt;P&gt;Q. Is it fine to use existing trsuted.jks ( i have tried even with jks file)&lt;/P&gt;&lt;P&gt;Q. Will not this work with self signed certificate&lt;/P&gt;&lt;P&gt;Q. Is certificate need to be generated on a node where agent and activeagete installed ?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Wed, 30 Oct 2019 08:12:02 GMT</pubDate>
    <dc:creator>shailendra_jain</dc:creator>
    <dc:date>2019-10-30T08:12:02Z</dc:date>
    <item>
      <title>Issue with selfsigned certifcate kubernet setup</title>
      <link>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124861#M567</link>
      <description>&lt;P&gt;&lt;IMG src="https://community.dynatrace.com/legacyfs/online/22341-issue.png" /&gt;Hi&lt;/P&gt;&lt;P&gt;I have tried setting the kubernet monitoring as per document .. but i have been always getting TLS issue for self signed certificate .. or even invalid token sometime ..&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;1. Using Keytool - imported the certificate in existing trusted.jks file with passwod trusted&lt;/P&gt;&lt;P&gt;2. Adding entry in custom.property file also .&lt;/P&gt;&lt;P&gt;3. Restarted all gateway/agent ..&lt;/P&gt;&lt;P&gt;4. Enter the kubernet URL and token but getting TLS or invalid token issues&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Also tried with no certificate options also.. then getting same TLS issue ..&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Note : Agent/gateway installed on same rancher-kubernet cluster node ... my server is on different node.&lt;/P&gt;&lt;P&gt;I am able to see docker images due to agent on that node ... but API/Token failing for TLS.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Q: What is right step for connection...&lt;/P&gt;&lt;P&gt;Q. Is it fine to use existing trsuted.jks ( i have tried even with jks file)&lt;/P&gt;&lt;P&gt;Q. Will not this work with self signed certificate&lt;/P&gt;&lt;P&gt;Q. Is certificate need to be generated on a node where agent and activeagete installed ?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 30 Oct 2019 08:12:02 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124861#M567</guid>
      <dc:creator>shailendra_jain</dc:creator>
      <dc:date>2019-10-30T08:12:02Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with selfsigned certifcate kubernet setup</title>
      <link>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124862#M568</link>
      <description>&lt;P&gt;We had similar issue, you have to add your ROOT CA certificate to ActiveGate, than it will accept certificate you have on Kubernetes side. &lt;/P&gt;&lt;P&gt;&lt;A rel="noopener noreferrer" href="https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/configuration/configure-trusted-root-certificates-on-activegate/" target="_blank"&gt;https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/configuration/configure-trusted-root-certificates-on-activegate/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Sebastian &lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 30 Oct 2019 09:01:22 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124862#M568</guid>
      <dc:creator>skrystosik</dc:creator>
      <dc:date>2019-10-30T09:01:22Z</dc:date>
    </item>
    <item>
      <title>Re: Issue with selfsigned certifcate kubernet setup</title>
      <link>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124863#M569</link>
      <description>&lt;DIV class="fr-view clearfix"&gt;&lt;P&gt;Thanks Sebastian!! ... We notice .. it does not work with rancher certificate ..But work with Kubernet directly.&lt;/P&gt;&lt;BR /&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 10 Dec 2019 15:27:30 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Container-platforms/Issue-with-selfsigned-certifcate-kubernet-setup/m-p/124863#M569</guid>
      <dc:creator>shailendra_jain</dc:creator>
      <dc:date>2019-12-10T15:27:30Z</dc:date>
    </item>
  </channel>
</rss>

