How encryption in transit is enabled over port 9999 from one agent to activegate


We are frequently getting below question from our network team,Please provide configurations/screenshots showing encryption in transit is enabled over port 9999.

I didn't find any relevant documentation to provide them reference.


Unless you reconfigured the ActiveGate manually, there is https communication with TLS1.2 between ActiveGate and OneAgents.

They are asking for some sort of reference documentation.i didn't find any.

Is there any way i can show them proof.



Look here, focus on ssl-protocols:

also here:

ActiveGate authenticates OneAgent requests (SSL handshake and environment ID authentication).

And here:

Communication between OneAgents and ActiveGate takes place over an encrypted HTTPS channel. ActiveGate provides an authentication certificate to all connecting clients. While OneAgent instances may ignore the validity of ActiveGate certificates (depending on configuration), connections from browser clients (such as the RUM JavaScript tag) do verify that the hostname listed in the certificate is correct, before they send data.
