- Notas relacionadas
- Requisitos
- Instalación
- Primeros pasos
- Proyectos
- Conjuntos de datos
- Paquetes ML
- Procesos
- Habilidades ML
- Logs de ML
- Document Understanding en AI Fabric
- Guía básica de resolución de problemas
443, 8800, 31443, 31390.
Recall from step 1. Provision a Machine, that you also need to allow port 6443 to be accessible from the ip of linux machine itself. Said differently, you can set network configuration rules to constraint IP source address on the rule for port 6443.
Aprovisionar un tenant de AI Fabric
-
Navigate to <linux-machine-ip or domain-name>:31390/ai-app, click on the three-dot menu on the top right, and click on
Log in -
Inicia sesión con las credenciales de administrador del tenant del host. Asegúrate de iniciar sesión en el tenant del host, el valor predeterminado será
default. -
Una vez iniciada la sesión, verás la lista de todos los tenants de Orchestrator asociados a tu cuenta. La primera columna es si ese tenant también se aprovisionará en AI Fabric. Dado que esta es la primera vez que inicias sesión, todos los tenants mostrarán
Not Provisioneden AI Fabric. Haz clic en el menú de 3 puntos para el tenant que quieres aprovisionar y haz clic enProvision. Después de unos segundos, la actualización mostrará al tenant como aprovisionado.
Confiar en el certificado de aplicación
The application certificate needs to be trusted by the Machine where you will be using AI Fabric and the machine that will be using UiPath Robot/Studio. This step can be skipped if you used a trusted domain certificate in Step 5.
Navigate to <machine-ip or domain-name>:31390/ai-app. This step involves adding the application certificate to your trusted certificate store.
-
En Google Chrome, haz clic en el icono del candado en la barra de direcciones (este será un icono de exclamación cuando repitas el proceso para el puerto 31443). Es posible que algunos pasos no aparezcan, dependiendo de tu versión de Chrome.
-
Haz clic en la flecha de
Show connection details. -
Haz clic en el botón
More Information. -
Haz clic en el botón
CertificateoView Certificate. -
Haz clic en la pestaña
Detailsen la navegación superior. -
Haz clic en el botón
Copy to File. -
Sigue el asistente de exportación de certificados y exporta el certificado de forma que se guarde el certificado como base64-encoded en alguna ruta a la que puedas acceder más tarde.
-
Haz doble clic en ese certificado y haz clic en
Install Certificate. -
Establece la ubicación del almacén del certificado en tu máquina local y coloca el certificado en la carpeta Autoridades de certificación raíz de confianza.
Importante:- Repite la idea general del proceso anterior para los siguientes certificados:
- Certificado para Orchestrator.
- Certificate for <linux-machine-ip or domain-name))))>:31443
Nota:In this case, there will not be a padlock icon but rather an exclamation icon. The page will say "This XML file does not appear to have any style information associated with it..."
, these instructions are from the perspective of a user with a simple networking setup adding certificates to their own local machine's Trusted Root Certificate Authorities. An IT admin can add these certificates to the company's Trusted Store so that users within an organization making use of that trusted store need not go through this process.
Comprobar la instalación de la aplicación
- Navigate to <linux-machine-ip or domain-name>:31390/ai-app, if you are still logged-in on the
hosttenant, use the 3-dot menu on the top-right corner to log out and log in on the tenant you just provisioned in Provisioning an AI Fabric Tenant. - If you see something like
Origin authentication failed, this is due to a rarely occurring problem with permissions. To work-around this, go to Orchestrator and create a new role. Give that role AI Fabric permissions (see About AI Fabric ) and your user to that role. Navigate back to AI Fabric (<linux-machine-ip or domain-name>:31390/ai-app), the issue should be resolved. - Follow the instructions in About Projects to quickly create a project, you can always delete this later.
- Follow the instructions in About Datasets to quickly create a Dataset. Uploading some files to the Dataset allows your to verify that the chain of trust has been established and that there are no issues the the underlying object store. If you have problems this most likely is due to a misconfigured certificate trust chain. Make sure that the three certificates in Trust the Application Certificate are in your trusted store.
- Follow the instructions in Out of the Box Packages to quickly deploy a machine learning model in your tenant. Due to the fact that some of the out-of-the-box packages are quite large and adding them to your account can fail due to connectivity issues, AI Fabric runs a periodic job that will synchronize the out-of-the-box packages of your account. If you do not have all the ones listed here, don't worry. The recurring synchronization job ensures that eventually your account will have all the models. If after a few days you still do not have all the models listed in Out of the Box Packages, contact UiPath Support.
Comprobar si la actividad Habilidad ML puede comunicarse con AI Fabric
- En la máquina donde vas a utilizar UiPath Studio para crear automatizaciones, abre UiPath Studio e instala el paquete UiPath.MLServices.Activities si no está ahí ya.
- Crea un flujo de trabajo de RPA vacío y añade la actividad de la habilidad ML al flujo de trabajo.
- Haz clic en la flecha desplegable en la actividad de la habilidad ML; si recibes un error, significará que Studio no puede conectarse de forma segura al back-end de AI Fabric. El error más común es
Could not establish trust relationship for the SSL/TLS secure channel. Esto se debe a una cadena de confianza de certificados mal configurada. Asegúrate de que los tres certificados en Confiar en el certificado de la aplicación están en tu almacén de confianza.
Comprobar si Orchestrator puede comunicarse con AI Fabric
Esta sesión solo es válida para Orchestrator 20.4; para la versión 20.10 y versiones más nuevas, se ha eliminado la página Habilidades ML de Orchestrator.
-
Ve a Orchestrator.
-
Click on the
ML Skillstab in the left navigation bar. If there is some misconfiguration, a red-error banner will appear at the top. - If there is an error, it was likely due to a misconfigured trust chain or the fact that Orchestrator cannot communicate with AI Fabric. Verify your network inbound and outbound rules. - If you open the "ML Skills tab" and you see a red banner with the message "An Error has occurred", please openEvent Viewerto see a more detailed message.
Para ello, abre la aplicación Event Viewer; puedes encontrarla a través de la búsqueda de Windows.
-
Expande
Windows logs. -
Haz clic en
ApplicationenWindow Logs.
Error: los valores de la huella digital no coinciden.
Si Event Viewer tiene un mensaje que indica "UiPath.Orchestrator.AiFabric.AiFabricInternalException: Error al conectarse con AI Fabric. Error: IDX10638: SignatureProvider no se ha podido crear, 'key.HasPrivateKey' es false, no se pueden crear las firmas. Clave: [PII está oculta". continúa con los siguientes pasos de resolución de problemas:
-
Ve a IIS Manager y abre el certificado de Orchestrator utilizado durante la instalación.
-
Click on
Detailsand verify that the certificate thumbprint value exactly matches the thumprint values written in Orchestrator web.config (in step 3. Configure Orchestrator).
Ejemplo de Web.config:
...
<add key="IDP.CurrentTokenThumbprint" value="fb4e45797efd3d21021828617835d05920945091" />
<add key="IDP.PreviousTokenThumbprint" value="fb4e45797efd3d21021828617835d05920945091" />
...
...
<add key="IDP.CurrentTokenThumbprint" value="fb4e45797efd3d21021828617835d05920945091" />
<add key="IDP.PreviousTokenThumbprint" value="fb4e45797efd3d21021828617835d05920945091" />
...
Error: el conjunto de claves no existe.
Si Event Viewer tiene un mensaje que indica "El conjunto de claves no existe", continúa con los siguientes pasos de resolución de problemas:
-
En el servidor de Windows de Orchestrator, ve a
Runy escribemmc.exe. -
Haz clic en Archivo ->
Add/Remove Snap-in. -
Añade
Certificatesen el asistente que se abre y haz clic enOk. -
En el asistente que se abre, selecciona el botón de selección de
Computer Accounty presionaNext. -
En la pantalla final del asistente, selecciona el botón de selección de
Local computery haz clic en Finalizar.
Ahora abre el gestor de certificados:
-
En la búsqueda de programas de Windows, escribe
Manager Computer Certificates. -
Haz clic con el botón derecho en el certificado de Orchestrator en el almacén
Personaly haz clic enManage Private Keysen el menúAll Tasks. -
Haz clic en Añadir. Esto te permitirá añadir un nuevo usuario a la lista de permisos.
-
In the wizard that opens, Enter "IIS AppPool<AppPoolName>" replacing
<AppPoolName>with your Application Pool. For example: -
Haz clic en Aceptar y ejecuta iisreset desde PowerShell.
Verificar paquetes ML listos para usar
La descarga e instalación de paquetes ML listos para usar (lo que incluye Document Understanding) tardará entre 45 minutos y 3 horas, dependiendo del ancho de banda de tu conexión. El proceso que carga estos paquetes ML a tu clúster se ejecuta de forma independiente al instalador de la aplicación.
- Aprovisionar un tenant de AI Fabric
- Confiar en el certificado de aplicación
- Comprobar la instalación de la aplicación
- Comprobar si la actividad Habilidad ML puede comunicarse con AI Fabric
- Comprobar si Orchestrator puede comunicarse con AI Fabric
- Error: los valores de la huella digital no coinciden.
- Error: el conjunto de claves no existe.
- Verificar paquetes ML listos para usar