cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Securing Managed Server

Following https://help.dynatrace.com/dynatrace-managed/dynatrace-server/which-network-ports-does-dynatrace-ser... I have restricted access to port 443 to devices acessing the UI, and port 8443 to the machines where OneAgent is running.

Regarding port 8019, which type of connections are being terminated there? UI? OneAgent?

6 REPLIES 6

Radoslaw_Szulgo
Dynatrace Leader
Dynatrace Leader

8019 is used by Upgrade UI.

Port has to be open during upgrade procedure. It is used in communication between cluster nodes.

Regarding cluster nodes, I would imagine if it's one cluster, than the port does not need to be open.

Regarding upgrade procedures, who is going to connect to that port 8019? Is it the OneAgents?

Radoslaw_Szulgo
Dynatrace Leader
Dynatrace Leader

Sorry for the delay. It has to be open even in single node cluster.

The upgrade procedure runs a separate process that communicates with the server on 8019 port. So if it is closed, then upgrader process won't be able to send commands to server (for instance `shutdown`).

In multi-node cluster, the port is also used to synchronize communication between upgrade processes on different nodes.

Is that clear now? Let me know if you have further questions. I'll try to answer quicker 😉

praveen_begur
Dynatrace Organizer
Dynatrace Organizer

Hi Radoslaw,

Regarding Port 8019, what is the Client for this Port? Will the Dt Agents on target hosts running business apps connect to Dt Managed Report Server on port 8019?

Radoslaw_Szulgo
Dynatrace Leader
Dynatrace Leader

Client is the upgrade process. Nothing else communicates on that port.

praveen_begur
Dynatrace Organizer
Dynatrace Organizer

Hi Radoslaw,

I request a more precise answer.

Will the Dt Agents on target hosts running business apps connect to Dt Managed Report Server on port 8019?

Where (in which host/server) exactly is the Upgrade Process running on?