22 Apr 2024 08:57 AM
Hi folks,
I have a question regarding Dynatrace deployment in a managed environment. We have a strict network policy, and we're unable to place our managed server in the DMZ to communicate with Mission Control. This is because if we will place it in the DMZ network then we will not have access to the DMZ network on our official laptops.
What is the best way to manage this issue?
Regards,
Moeen
22 Apr 2024 09:16 AM
Hello @moeenuddin
You do not need to put your cluster nodes in the DMZ for the mission control connection. We do not need full internet access but just a few IP addresses/domains through proxy.
https://docs.dynatrace.com/managed/shortlink/managed-network-ports#outbound-to-mission-control
Regards,
Babar
22 Apr 2024 09:37 AM
Hi Mr. Babar,
We have two Zones, one for Production environment where even we don't have proxy configuration and another is DMZ. for that purpose we will be required to place it in DMZ environment and will not allow full internet access on it. we will allow only required ports on designated IPs.
Regards,
Moeen