I have two completely segregated parts of my network, one with access to the internet where I've already installed an ActiveGate (to collect my Azure traffic) and to relay Dynatrace data between my oneagents and the SaaS Dynatrace. I have another network segment that has no access to the internet or the outside world (and it needs to stay that way) where I need to monitor applications.
Can I install another ActiveGate within that isolated segment, point all of the agents to talk to it, and then have it talk to the primary ActiveGate (as a sort of proxy)? Or do I have to give the isolated ActiveGate a path through the firewall to reach the Dynatrace home?
Solved! Go to Solution.
So I'll need to stand up a new Cluster ActiveGate within my internet-accessible environment, then point my existing Environment ActiveGate (which monitors Azure) to it, then stand up another Environment ActiveGate within my siloed environment, and whitelist traffic between the Cluster ActiveGate and the siloed ActiveGate? Like the diagram here https://www.dynatrace.com/support/help/setup-and-configuration/dynatrace-activegate/basic-concepts/s...
Does that sound right?