- Primeros pasos
- Seguridad y cumplimiento de los datos
- Seguridad y cumplimiento de los datos
- Cifrado
- Certificados
- Seguridad funcional
- Configurar el cortafuegos para Test Cloud
- Heredado: configurar el cortafuegos para Test Cloud
- Configurar el firewall para el sector público de Test Cloud
- Configurar el cortafuegos para Test Cloud Dedicado
- Implementación de características
- Estrategia de alta disponibilidad y recuperación ante desastres
- Organizaciones
- Autenticación y seguridad
- Licencia
- Acerca de la licencia
- Precios unificados: marco del plan de licencias
- Activar su licencia Enterprise
- Migrar de Test Suite a Test Cloud
- Migración de licencias
- Asignar licencias a tenants
- Asignación de licencias de usuario
- Anular la asignación de licencias de usuarios
- Monitoring license allocation
- Licencias con exceso de asignación
- Notificaciones de licencias
- Administración de licencias de usuario
- Tenants y servicios
- Cuentas y roles
- Ai Trust Layer
- Acerca de la capa de confianza de IA
- Comprobación del resumen de uso
- Visualización de los registros de auditoría
- Gestionar las políticas de la capa de confianza de IA
- Enmascaramiento PII
- Gestionar Autopilot for Everyone
- Configurar LLM
- Restringir las llamadas de LLM a tus propios modelos
- Configurar OpenTelemetry
- Controlar los datos contextuales para las características de GenAI
- Aplicaciones externas
- Notificaciones
- Registro
- Exportación de datos
- Pruebas en su organización
- Solución de problemas
- Migrar a Test Cloud
Legacy IP ranges for Test Cloud services, provided for reference during the transition to the unified IP range configuration.
Para información sobre la configuración general de la red y el cortafuegos, consulta Configurar el cortafuegos
Aviso de obsolescencia: acción requerida
The IP ranges listed on this page are being deprecated. As of June 16, 2026, new unified IP ranges have been published and must be added to your allowlist alongside these ranges. Starting September 16, 2026, the IP ranges on this page will be gradually phased out. For specific dates, see the Timeline in the Deprecation notice section below.
Antes de la fecha de finalización de la transición: mantén estos rangos de IP en la configuración de tu cortafuegos y añade los nuevos rangos de IP unificados. Ambos conjuntos deben estar en la lista de permitidos simultáneamente durante la ventana de transición.
Después de la fecha de finalización de la transición: continúa poniendo en la lista de permisos tanto los rangos de IP de esta página como los rangos de IP unificados hasta que una nota de la versión posterior confirme que los rangos de IP heredados pueden eliminarse de forma segura.
Actualización de terminología: 31 de julio de 2026
We renamed "outbound IP ranges" to IP ranges throughout this page. "Outbound" described UiPath's side of the connection, not yours — these ranges are what UiPath connects from, but from your firewall's perspective this traffic is inbound. Fully qualified domain names (FQDNs) remain the outbound side, from your perspective.
Aviso de obsolescencia
The IP ranges on this page are being supplemented with a new unified set of IP ranges and will be gradually phased out starting September 16, 2026. This section summarizes the full timeline, scope, and required actions.
Qué está cambiando
UiPath is consolidating all service-specific IP ranges into a single set of unified IP ranges, organized by global customer region rather than by individual service. The new unified ranges apply uniformly to all services within each region.
Servicios afectados: Test Cloud Portal, AI Trust Layer, Servicio de Notificación, Orchestrator, Test Manager, Apps, Automation Ops e Integration Service.
Not affected (no changes to their IP ranges): Document Understanding, Insights, IXP, and Automation Cloud Robots - Serverless.
Línea temporal
| Hito | Fecha |
|---|---|
| Rangos de IP unificados publicados; obsolescencia anunciada; comienza la ventana de doble lista de permisos | 16 de junio de 2026 |
| Finaliza la ventana de lista de permisos dual; los rangos de IP heredados comienzan a eliminarse gradualmente | 16 de septiembre de 2026 |
| Esta página ya no se actualiza | 16 de septiembre de 2026 |
Qué debe hacer
- Add the unified IP ranges now. Visit the Configuring the firewall for Test Cloud page and add all ranges for your organization region and tenant region. Some UiPath service features inherit the organization's region rather than the tenant's region. If they differ, allowlist the IP ranges for both. For more information on organization-level and tenant-level services, see Global cloud regions. If your tenant or organization migrates to another region, update IP ranges accordingly.
- Antes de la fecha de finalización de la transición (consulta Línea de tiempo): mantén los rangos de IP en esta página y los nuevos rangos de IP unificados en la lista de permitidos simultáneamente.
- Después de la fecha de finalización de la transición: continúa poniendo en la lista de permitidos ambos conjuntos de rangos de IP hasta que una nota de la versión posterior confirme que los rangos de IP heredados se pueden eliminar de forma segura.
- Allow applicable regional domains. For domain entries grouped by region, allow the domains listed for the region where your service is deployed. If your organization uses more than one region, allow the domains for each applicable region.
Portal de Test Cloud
Permite estos dominios utilizados por el Portal de Test Cloud:
Si utilizas depósitos de Azure, no deben estar ubicados en la región del tenant o en la región de respaldo.
Dominios
Allow the domains required for the sign-in method and portal functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Iniciar sesión con autenticación básica | https://account.uipath.comhttps://cloud.uipath.comhttps://platform-cdn.uipath.com | Auth0 login through social providers or with an email address and password is unavailable. Single sign-on remains available. |
| Iniciar sesión con Microsoft | https://aadcdn.msftauth.nethttps://account.uipath.comhttps://cloud.uipath.comhttps://login.live.comhttps://login.microsoftonline.comhttps://platform-cdn.uipath.com | Microsoft consumer-account and Microsoft Entra ID sign-in are unavailable, and Microsoft authentication pages may not render. |
| Iniciar sesión con Google | https://account.uipath.comhttps://cloud.uipath.comhttps://accounts.google.comhttps://google.comhttps://lh3.googleusercontent.comhttps://platform-cdn.uipath.comhttps://www.gstatic.com | Google sign-in may fail. |
| Iniciar sesión con LinkedIn | https://account.uipath.comhttps://cloud.uipath.comhttps://lnkd.demdex.nethttps://platform-cdn.uipath.comhttps://platform.linkedin.comhttps://static-exp1.licdn.comhttps://www.linkedin.com | LinkedIn sign-in may fail. |
| Inicia sesión con Azure Active Directory (Azure AD) | https://aadcdn.msftauth.nethttps://cloud.uipath.comhttps://login.microsoftonline.com | Microsoft sign-in pages may not render, and single sign-on through Microsoft Entra ID is unavailable. |
| Use third-party packages with on-premises Studio and Robots | https://api.nuget.org | Optional. Third-party .NET packages from NuGet are unavailable. |
| Use UiPath Marketplace community packages | https://gallery.uipath.com | Optional. Community packages from UiPath Marketplace are unavailable. |
| Sign in for the first time or reset a password | uipath.eu.auth0.comaccount.uipath.com | Auth0 password setup and self-service password reset are unavailable. |
| Load portal fonts, styling, scripts, and images | https://use.typekit.nethttps://fonts.gstatic.comhttps://platform-cdn.uipath.comhttps://s.gravatar.comhttps://secure.gravatar.comhttps://*.wp.comhttps://*.googleusercontent.comhttps://i.ytimg.comhttps://fonts.googleapis.com/csshttps://p.typekit.nethttps://primer.typekit.net | Fonts, icons, images, or styling may not render correctly. |
| Sign in through Auth0 in the European Union | uipath.eu.auth0.com | Auth0 sign-in and password-management flows are unavailable. |
| Download Autopilot for Everyone | https://autopilot-prd.azureedge.net | Autopilot for Everyone cannot be downloaded from the AI Trust Layer admin section. |
IP ranges to enable a firewall for the customer-managed key
Required only when the Test Cloud Portal must connect to your Azure Key Vault for Customer-Managed Key (CMK) scenarios. These IP ranges represent the source IP ranges that your firewall must allow. For details, refer to the Enabling the firewall for the customer-managed key documentation.
The planned migration of Test Cloud Portal CMK IP ranges to new ranges — previously tracked as a separate transition (see the April 27, 2026 IP ranges completion announcement) — has been paused. This migration is now absorbed into the broader unified IP ranges transition. The IP ranges listed below remain active until the transition end date shown in the Timeline.
Allow these IP ranges through your firewall:
| Regiones | Rangos de IP |
|---|---|
| Australia | |
| Canadá | |
| Comunidad | |
| Unión Europea | |
| European Union — delayed update (GxP) | |
| India | |
| Japón | |
| Singapur | |
| Reino Unido | |
| Estados Unidos | |
| United States — delayed update (GxP) | |
IP ranges for notifications
You can configure Notification service systems to use SMTP servers from your own on-premises or cloud networks. If you want to provide additional security to your Notification service system, you can protect it with a firewall, and only allow Notification Service's static IP ranges through it.
20.213.69.140/30
20.92.42.116/30
20.220.159.8/30
20.104.134.160/30
20.239.121.152/30
20.232.224.12/30
20.78.114.120/30
104.215.9.124/30
20.166.153.132/30
20.198.150.140/30
20.23.210.168/30
20.66.65.144/30
149.72.70.144
20.213.69.140/30
20.92.42.116/30
20.220.159.8/30
20.104.134.160/30
20.239.121.152/30
20.232.224.12/30
20.78.114.120/30
104.215.9.124/30
20.166.153.132/30
20.198.150.140/30
20.23.210.168/30
20.66.65.144/30
149.72.70.144
Retransmisión
Permite que estos dominios utilizados por el cliente de Relay establezcan la conectividad con Test Cloud:
| Propósito | Dominios | Protocolo | Puerto |
|---|---|---|---|
| Autenticación y registro de Relay | cloud.uipath.com | Https | 443 |
| Servidor de Relay: región de EE. UU. | us-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de la UE | eu-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Canadá | ca-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Suiza | ch-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Australia | au-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Singapur | sg-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Japón | jp-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de Corea del Sur | kr-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región de los EAU | ae-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
| Servidor de Relay: región del Reino Unido | uk-relay.uipath.com | TCP (se requiere paso de TLS) | 443 |
Action Center
Dominios
Allow the domains required for the Action Center functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Autenticar | https://cloud.uipath.comhttps://account.uipath.com | Action Center or basic authentication is unavailable. |
| Open Action Center | https://cloud.uipath.comhttps://uipath-acc-prod.azureedge.nethttps://www.youtube.comhttps://platform-cdn.uipath.comhttps://fonts.gstatic.com*.googleapis.com | Action Center or required frontend assets may be unavailable. If YouTube is blocked, only the introductory video is unavailable. |
| View, assign, unassign, or delete an action | https://cloud.uipath.comhttps://uipath-acc-prod.azureedge.nethttps://platform-cdn.uipath.comhttps://fonts.gstatic.com*.googleapis.com | Action Center or required frontend assets may be unavailable. |
| Upload or download files from storage buckets | *.blob.core.windows.net | Files in form and app actions do not render, and Document Understanding tasks do not work. |
AI Center
Dominios
Allow the domains required for AI Center:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open AI Center and authenticate | https://cloud.uipath.com | AI Center is unavailable. |
| Load static assets | https://aifprodassets.azureedge.nethttps://i2.wp.com/cdn.auth0.comhttps://api.smartling.comhttps://s.gravatar.comhttps://js-agent.newrelic.comhttps://fonts.gstatic.comhttps://use.typekit.nethttps://fonts.googleapis.comhttps://d2c7xlmseob604.cloudfront.nethttps://du-prod-cdn.azureedge.net | AI Center does not load. |
| Complete OpenID configuration and receive service updates | https://cloud.uipath.comhttps://dc.services.visualstudio.comhttps://d2c7xlmseob604.cloudfront.nethttps://use.typekit.nethttps://fonts.googleapis.comhttps://aifstgassets.azureedge.nethttps://p.typekit.nethttps://fonts.gstatic.comhttps://api.smartling.comhttps://js-agent.newrelic.comhttps://i2.wp.com/cdn.auth0.comhttps://bam.eu01.nr-data.nethttps://du-prod-du-eus-signalr.service.signalr.netwss://du-prod-du-eus-signalr.service.signalr.net | AI Center authentication, configuration, or real-time updates may fail. |
| Access regional storage | Australia:https://aifproddataauetraining.blob.core.windows.netCanadá: https://aifproddatacactraining.blob.core.windows.netEuropa: https://aifproddatawetraining.blob.core.windows.netJapón: https://aifproddatajaetraining.blob.core.windows.netSingapur: https://aifproddataseatraining.blob.core.windows.netUnited States: https://aifproddataeustraining.blob.core.windows.netEuropean Union — delayed update (GxP): https://aifgxpdatawetraining.blob.core.windows.net | AI Center cannot upload, train, deploy, or manage machine learning resources. |
| Send service telemetry | https://bam.eu01.nr-data.nethttps://eastus-6.in.applicationinsights.azure.com | No user-facing functionality is affected, but service telemetry used for support is unavailable. |
AI Computer Vision
La siguiente tabla enumera los valores de los puntos finales y las ubicaciones de los servidores utilizados por AI Computer Vision:
| Endpoint value | Server location | Impact if blocked |
|---|---|---|
https://cv.uipath.com | Geolocalización más cercana basada en la solicitud de IP | Studio and Robot cannot use AI Computer Vision activities. |
https://cv-eu.uipath.com | Europa occidental | Studio and Robot cannot use AI Computer Vision activities. |
https://cv-us.uipath.com | EE. UU. | Studio and Robot cannot use AI Computer Vision activities. |
https://cv-delayed.uipath.com | Implementación retrasada del anillo empresarial, ubicada en los Estados Unidos | Studio and Robot cannot use AI Computer Vision activities. |
AI Trust Layer: trae tu propio LLM
Rangos de IP
Allow the following IP ranges to establish communication between the Bring your own LLM functionality of AI Trust Layer, and your own system. The Bring your own LLM functionality depends on Integration Service connectors for communication. To use this capability and create connections successfully, you must also add the unified IP ranges for Integration Service to your allowlist.
Table 1. IP ranges for Bring your own LLM
| Región | Rangos de IP |
|---|---|
| Australia | |
| Canadá | |
| Europa (Unión Europea) | |
| Unión Europea retrasada | |
| Comunidad (Europa) | |
| India | |
| Japón | |
| Singapur | 20.43.184.90 |
| Reino Unido | |
| Estados Unidos | |
| Estados Unidos retrasado | |
Apps
Dominios
Allow the domains required for the Apps functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Apps | https://cloud.uipath.comhttps://fonts.googleapis.comhttps://cdnjs.cloudflare.comhttps://uipath-apps-prd.azureedge.nethttps://fonts.gstatic.comhttps://dc.services.visualstudio.comhttps://<orgname>.uipath.host | Apps does not load. |
| Create or import apps, or add or delete processes | https://cloud.uipath.comhttps://uipath-apps-prd.azureedge.net | The affected app-authoring operations do not work. |
| Exporta, clona, comparte, elimina, edita o publica una aplicación | https://cloud.uipath.com | The affected app-management operations do not work. |
| Ejecuta o previsualiza una aplicación | https://cloud.uipath.comhttps://fonts.googleapis.comhttps://cdnjs.cloudflare.comhttps://uipath-apps-prd.azureedge.nethttps://fonts.gstatic.comhttps://dc.services.visualstudio.comhttps://<orgname>.uipath.hosthttps://api.uipath.com | The app cannot run or render correctly. |
| Select processes or create a rule | https://uipath-apps-prd.azureedge.net | Process selection and rule creation do not work. |
| Bind a process | https://uipath-apps-prd.azureedge.nethttps://cloud.uipath.comhttps://dc.services.visualstudio.com | Process binding does not work. |
| Create or delete pages or history entries | https://cloud.uipath.com | Apps does not load, so page and history operations are unavailable. |
| Conectar a aplicaciones | *.trafficmanager.netwss://*.uipath.systemswss://cloud.uipath.com | Apps does not load. Real-time collaboration updates require a page reload, and simultaneous editing can cause runtime errors. |
Rangos de IP
The Apps service uses the IP ranges listed below for all external communications. The following table shows the available IP ranges for each region.
| Región | Rangos de IP |
|---|---|
| Europa | |
| Europa (secundaria) | |
| Europa: comunidad | |
| Europa: comunidad (secundaria) | |
| EE. UU. | |
| EE. UU. (Secundario) | |
| Canadá | |
| Canadá (secundaria) | |
| Singapur | |
| Japón | |
| Japón (secundaria) | |
| Australia | |
| Australia (secundaria) | |
| India | |
| India (secundaria) | |
| Reino Unido | |
| Reino Unido (secundaria) | |
| United States — delayed update (GxP), secondary | |
| United States — delayed update (GxP) | |
El tráfico de estas IP necesita permitirse a través del cortafuegos DMZ de la organización y de cualquier otro cortafuegos intermedio, incluido el cortafuegos del ordenador en el que se aloja la aplicación Orchestrator.
- El puerto asociado en el que se aloja la aplicación de Orchestrator debe exponerse a través de la DMZ en todos los cortafuegos relevantes (consulta el punto anterior).
- Un usuario de Orchestrator que tenga acceso de lectura y ejecución a procesos relevantes cuyas credenciales se utilizarán desde UiPath Apps para hablar con Orchestrator.
- Si utilizas la ejecución de procesos de robots locales a través de Robotjs, asegúrate de que Robotjs está correctamente configurado utilizando las instrucciones proporcionadas en RobotJS.
Mejores prácticas
- Asegúrate de que Orchestrator alojado en las instalaciones solo sea accesible a través de un canal HTTPS seguro.
- Crea un usuario con pocos privilegios en Orchestrator que solo tenga acceso de lectura y ejecución a los procesos/carpetas deseados y utilízalo para la integración.
Requisitos de la política de CORS para depósitos de almacenamiento
Al utilizar depósitos de almacenamiento desde un Orchestrator local o híbrido, añade https://cloud.uipath.com a la lista acceptedRootURLs en el archivo UiPath.Orchestrator.dll.config.
- Si tu instancia de Orchestrator está alojada en Test Cloud, esta configuración ya está implementada.
- Para los depósitos externos, configura los orígenes permitidos como se describe en la guía de configuración de CORS y CSP."
UiPath Apps carga y descarga archivos utilizando la URL de SAS generada por Orchestrator al interactuar con depósitos de almacenamiento alojados en un entorno local. Los usuarios finales deben tener los permisos adecuados otorgados a través de esa URL de SAS para realizar operaciones de carga y descarga.
Todo el control de acceso está definido y aplicado por la configuración de la cuenta de almacenamiento subyacente. UiPath no gestiona ni anula estos permisos.
Si los usuarios encuentran errores al cargar o descargar archivos a través de UiPath Apps, las políticas SAS o las restricciones de acceso de la cuenta de almacenamiento deben ser revisadas y actualizadas por el propietario del almacenamiento para garantizar el nivel de acceso requerido.
Tipos de contenido para añadir a la lista de permitidos
UiPath Apps utiliza los tipos de contenido application/octet-stream y application/zip para descargar archivos DLL específicos necesarios para ejecutar y previsualizar las aplicaciones creadas. Es importante asegurarse de que los siguientes tipos de contenido estén permitidos dentro de la configuración de tu red para evitar interrupciones en la funcionalidad de la aplicación:
application/zip
application/octet-stream
application/json
text/html
application/javascript
text/css
font/woff2
image/vnd.microsoft.icon
image/svg+xml
image/bmp
image/jpeg
image/png
image/gif
application/zip
application/octet-stream
application/json
text/html
application/javascript
text/css
font/woff2
image/vnd.microsoft.icon
image/svg+xml
image/bmp
image/jpeg
image/png
image/gif
Consideraciones clave
Las aplicaciones se desarrollan con la tecnología Blazor, que procesa los ensamblajes directamente en el explorador. Si no se pueden eliminar las restricciones para los tipos de contenido necesarios dentro de tu red, es posible que las aplicaciones no funcionen como se espera, ya que no hay soluciones alternativas para eludir estas limitaciones.
Apps en Studio Web como alternativa
Las aplicaciones en Studio Web están diseñadas con una arquitectura diferente, que no requiere descargar archivos DLL. Si las restricciones de red impiden el uso de aplicaciones independientes, considera la posibilidad de adoptar aplicaciones en Studio Web (aplicaciones RPA). Esta arquitectura elimina la dependencia de los tipos de contenido restringidos, lo que garantiza una compatibilidad más fluida en entornos de red restringidos.
Automation Cloud Robots - Serverless
Rangos de IP
Los rangos de IP para Automation Cloud Robots: sin servidor te permiten enrutar el tráfico de red saliente a través de rangos de direcciones IP estáticas y dedicadas gestionadas por UiPath. Esto te permite incluir en la lista de permisos o integrarte de forma segura con sistemas externos que restringen las conexiones entrantes a IP conocidas.
Configuración
You can enable static IP ranges while creating the Serverless template and going to the Network Configuration page.
Disponibilidad
The IP ranges can sometimes change as a result of infrastructure deployments. To help keep you on top of any changes, we have compiled a list of up-to-date static IP ranges, in the following tables.
Usuarios Community
| Región | CIDR | Rangos de IP |
|---|---|---|
| Europa | | |
Usuarios Enterprise
| Región | CIDR | Rangos de IP |
|---|---|---|
| Australia | | |
| Estados Unidos | | |
| Japón | | |
| Europa (Unión Europea) | | |
Automation Hub
Dominios
Allow the domains required for the Automation Hub functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Automation Hub | https://cloud.uipath.comhttp://*.userpilot.iohttps://dc.services.visualstudio.comhttps://ah-prod-ts-blue-eu.uipath.comhttps://ah-prod-ts-blue-us.uipath.comhttps://ah-prod-ts-blue-ja.uipath.comhttps://ah-prod-ts-blue-au.uipath.comhttps://ah-prod-ts-blue-ca.uipath.comhttps://ah-prod-ts-blue-sea.uipath.comhttps://ah-prod-ts-blue-uk.uipath.comhttps://ah-prod-ts-blue-in.uipath.comhttps://ah-gxp-ts-blue-us.uipath.com | Automation Hub may not load. If Userpilot is blocked, first-time guidance is unavailable. If the telemetry endpoint is blocked, support telemetry is unavailable. |
| Use the Automation Hub Open API | https://automation-hub.uipath.comhttp://ah-gxp-openapi-us.uipath.com | Optional. Automation Hub Open API calls fail. |
Automation Ops
Dominios
Allow the domains required for the Automation Ops functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Automation Ops | https://stdadmstgcdn.azureedge.nethttps://stdadmstgcdn.blob.core.windows.nethttps://nexus.ensighten.comhttps://cloud.uipath.comhttps://platform-cdn.uipath.comhttps://use.typekit.nethttps://p.typekit.nethttps://content.usage.uipath.comhttps://data.usage.uipath.comhttps://*.service.signalr.netwss://*.service.signalr.nethttps://s.gravatar.comhttps://i2.wp.com | Automation Ops does not load or render correctly, and real-time updates are unavailable. |
| Use Source Control | https://github.comhttps://github.githubassets.comhttps://avatars.githubusercontent.comhttps://collector.github.comhttps://api.github.com | Source Control does not work. |
| Use Pipelines and send telemetry | https://app.vssps.visualstudio.comhttps://dc.services.visualstudio.com | Pipelines do not work. Blocking the telemetry endpoint also prevents support telemetry from being collected. |
Rangos de IP
The table below lists all IP ranges used by Automation Ops.
| Región | Rangos de IP |
|---|---|
| Australia | |
| Japón | |
| Estados Unidos | |
| United States — delayed update (GxP) | |
| Europa | |
| European Union — delayed update (GxP) | |
| Canadá | |
| Singapur | |
| India | |
| Reino Unido | |
IXP (Extracción y Procesamiento Inteligentes)
Dominios
Allow the domains required for IXP:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open IXP and authenticate | https://cloud.uipath.com | IXP is unavailable. |
| Load static assets | https://fonts.googleapis.comhttps://fonts.gstatic.com | Some interface elements may not render correctly. |
| Receive real-time portal updates | *.service.signalr.net | Notifications and other portal updates do not appear until the page is refreshed. |
| Send service telemetry | https://*.in.applicationinsights.azure.comhttps://dc.services.visualstudio.com | Core functionality remains available, but business telemetry and diagnostic logs are unavailable. |
| Use Pendo in-app guidance | https://*.pendo.io | IXP remains available, but onboarding and interactive help are unavailable. |
| Send performance-monitoring data | https://o486811.ingest.sentry.io | No user-facing functionality is affected, but performance diagnostics are unavailable. |
Intervalos de IP entrantes
Esta sección se aplica solo a los clientes heredados de Re:infer.
Añade los siguientes rangos de IP entrantes a tu lista de permitidos para utilizar Extracción y Procesamiento Inteligentes (IXP) y crear conexiones:
| Región | Intervalos de IP entrantes |
|---|---|
| Europa | 34.91.100.206 |
| EE. UU. | |
| Japón | 34.84.144.176 |
| Australia | 35.189.46.91 |
| Canadá | 34.152.10.176 |
| Singapur | 35.240.179.214 |
Rangos de IP
Permite los siguientes rangos de IP para que Extracción y Procesamiento Inteligentes (IXP) sincronice correos electrónicos desde tu Exchange. Para obtener más información, consulta la información general sobre la integración de Exchange.
| Región | Rangos de IP |
|---|---|
| Europa | 35.204.220.118 |
| EE. UU. | 34.71.173.219 |
| Japón | 34.84.107.92 |
| Australia | 34.87.223.173 |
| Canadá | 34.152.42.160 |
| Singapur | 34.143.128.81 |
Data Fabric
Dominios
Allow the domains required for Data Fabric:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Use Data Fabric | https://cloud.uipath.com | Data Fabric is unavailable. |
| Send service telemetry | *.visualstudio.com | No user-facing functionality is affected, but service telemetry is unavailable. |
Document Understanding
Dominios
Allow the domains required for the Document Understanding functionality that your organization uses:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Abre Document Understanding | https://*.uipath.com | Document Understanding does not load. |
| Send optional Azure telemetry | https://*.azure.com | Optional. Core functionality remains available, but telemetry used to investigate issues is unavailable. |
| Load the frontend | https://*.azureedge.net | Document Understanding does not load. |
| Receive real-time updates | https://*.service.signalr.netwss://*.service.signalr.net | Real-time updates do not appear until the page is refreshed. |
| Access legacy Document Manager storage | https://*.blob.core.windows.net | Document Manager does not work for projects created before 2023. |
| Use Pendo in-app guidance | https://*.pendo.io | Optional. In-product announcements and interactive guidance are unavailable. |
| Access public endpoints | See Public endpoints for the full list. | Information about predefined models and other public-endpoint functionality is unavailable. |
The legacy Document Manager storage domains apply only to projects created before 2023.
Rango de IP alternativo de Cloudflare
Si tu equipo de red no admite las listas de permisos basadas en DNS, puedes utilizar el rango de IP de Cloudflare 104.16.0.0/13 como alternativa. Se recomienda la inclusión en listas de permisos basadas en DNS porque los rangos de IP de Cloudflare son amplios y pueden cambiar.
Insights
Dominios
La siguiente tabla enumera los dominios utilizados por Insights:
| Escenario | Dominios a permitir | Impact if blocked |
|---|---|---|
| Navega a la página de Insights | https://cloud.uipath.comhttps://*.lookercdn.comhttps://uipath-insights-statics.azureedge.net/https://*.looker.uipath.com/ | Insights may not load, and some dashboards or visualizations may be blank. |
Rangos de IP
Los rangos de IP te permiten añadir una lista de IP para las características de exportación de registros y exportación de datos a la lista de permisos y no abrir tu red a todas las IP externas. Si las regiones de almacenamiento de blob corresponden a la región del servicio Insights respectiva, no puedes utilizar IP públicas.
| Región de servicio de Insights | Región de almacenamiento de blob | Funcionalidad | Rangos de IP estáticos |
|---|---|---|---|
| Europa |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Estados Unidos de América |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Australia |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Japón |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Canadá |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Singapur |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| India |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| Reino Unido |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| United States — delayed update (GxP) |
| Exportar registros | 134.33.240.104 |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | | ||
| European Union — delayed update (GxP) |
| Exportar registros | |
| Exportación de datos | | ||
| Notificaciones SFTP de Looker | |
Limitaciones
Para la exportación de registros, Google Storage no admite la restricción de IP entrantes.
Debido a una limitación por parte de Microsoft para la exportación de registros, no puedes configurar la restricción de IP entrante cuando tu cuenta de Azure Blob Storage y la infraestructura de Insights están en la misma región en Azure. Por este motivo, no puedes utilizar las siguientes regiones para la cuenta de almacenamiento de blobs en función de la región del servicio de Insights:
- Insights EE. UU.: Norte de Europa, Este de EE. UU.
- Insights Europe: Norte de Europa, Europa Occidental (para licencias comunitarias)
- Insights UK: Norte de Europa, Reino Unido Sur
- Insights Canada: Norte de Europa, Canadá Central
- Insights Singapur: norte de Europa, sudeste asiático
- Insights India: norte de Europa, centro de India
- Insights Australia: Europa del Norte, Este de Australia
- Insights Japón: Europa del Norte, Este de Japón
- Insights — European Union — delayed update (GxP): North Europe, East US
- Insights — United States — delayed update (GxP): East US
Para obtener más información sobre esta limitación, consulta la página Restricciones para reglas de red IP de la documentación de Microsoft Azure Blob Storage.
Integration Service
Rangos de IP
Add the following IP ranges to your allow list to use Integration Service and create connections, as described in the following table.
| Región | Rangos de IP | Entorno |
|---|---|---|
| Australia | | Producción |
| Canadá | | Producción |
| Europa | | Producción |
| Japón | | Producción |
| India | | Producción |
| Singapur | | Producción |
| Reino Unido | | Producción |
| Estados Unidos | | Producción |
| United States — delayed update (GxP) | | Producción |
| Comunidad | | Producción |
Las direcciones IP marcadas con un asterisco () se designan para las regiones de Azure recién incorporadas. Estas IP reemplazarán a las IP regionales existentes al completar el proceso de migración de tenant programado. Para obtener más detalles, consulta las notas de la versión de Integration Service.
Orchestrator
Dominios
Allow the domains required for Orchestrator and Robot functionality:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Orchestrator | https://cloud.uipath.comhttps://orch-cdn.uipath.comhttps://account.uipath.com | The Orchestrator frontend does not load. |
| Connect Cloud Robots - VM to UiPath services | https://cloud.uipath.com | The Robot and agent on the provisioned VM cannot communicate with UiPath services. |
| Download Studio and Robot installers for Cloud Robots - VM | https://download.uipath.com | Optional if you install and manage the Robot yourself. Otherwise, Studio and Robot installers cannot be downloaded. |
| Access Orchestrator storage | *.blob.core.windows.netSi se utilizan depósitos de Amazon S3: *.s3.amazonaws.com | Package upload and download, suspended jobs, video recording, storage buckets, and other storage-backed functionality do not work. Provisioned Cloud Robots - VM also cannot connect to UiPath infrastructure. |
| Download packages and libraries | https://pkgs.dev.azure.com | Libraries and packages from the host feed cannot be downloaded. |
| Use Azure SignalR | https://*.service.signalr.netwss://*.service.signalr.net | Real-time updates and live streaming fail, attended jobs cannot be stopped remotely, and some Robot or activity events can be delayed by up to 30 seconds. |
| Update Studio and Robot automatically | https://download.uipath.com | Studio and Robot cannot update automatically. |
| Use Live Streaming and Remote Control | *.uipath.comhttps://*.uipath.comwss://*.uipath.com | Live Streaming and Remote Control do not work. |
Rangos de IP
We recommend allowing these IP ranges, which send traffic from Orchestrator towards your resources. For details, refer to Orchestrator IP ranges.
Usuarios Community
| Región | CIDR | Rangos de IP |
|---|---|---|
| Europa (Unión Europea) | | |
Usuarios Enterprise
| Región | CIDR | Rangos de IP |
|---|---|---|
| Australia | | |
| Canadá | | |
| Estados Unidos | | |
| Japón | | |
| Europa (Unión Europea) | | |
| Singapur | | |
| Reino Unido | | |
| India | | |
Delayed update (GxP) organizations
| Región | CIDR | Rangos de IP |
|---|---|---|
| Europa (Unión Europea) | | |
| Estados Unidos | | |
Servidores MCP
The remote MCP Servers service uses the IP ranges listed below for all external communications. The following table shows the available IP ranges for each region.
| Región | Rangos de IP |
|---|---|
| Europa | |
| Europa (secundaria) | |
| Europa: comunidad | |
| Europa: comunidad (secundaria) | |
| EE. UU. | |
| EE. UU. (Secundario) | |
| Canadá | |
| Canadá (secundaria) | |
| Singapur | |
| Japón | |
| Japón (secundaria) | |
| Australia | |
| Australia (secundaria) | |
| India | |
| India (secundaria) | |
| Reino Unido | |
| Reino Unido (secundaria) | |
| European Union — delayed update (GxP) | |
| European Union — delayed update (GxP), secondary | |
| United States — delayed update (GxP) | |
| United States — delayed update (GxP), secondary | |
Process Mining
Dominios
Allow the domains required for Process Mining:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Process Mining | https://cloud.uipath.com | Process Mining is unavailable. |
| Load static assets | https://fonts.googleapis.comhttps://fonts.gstatic.comhttps://content.usage.uipath.comhttps://s.gravatar.comhttps://i1.wp.com | Process Mining may not load or render correctly. |
| Receive real-time updates | https://*.service.signalr.netwss://*.service.signalr.net | The interface can display outdated information until the page is refreshed. |
| Send service telemetry | https://*.in.applicationinsights.azure.com | Optional. Core functionality remains available, but diagnostic information used for support is unavailable. |
| Upload data to Process Mining | *.blob.core.windows.net | Process Mining cannot ingest data or create process apps. |
Soluciones
Dominios
Allow the domains required for Solutions Management:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Solutions Management | https://cloud.uipath.comhttps://fonts.googleapis.comhttps://fonts.gstatic.comhttps://dc.services.visualstudio.comapi.smartling.comuse.typekit.netp.typekit.nets.gravatar.comi2.wp.comhttps://platform-cdn.uipath.comhttps://sol-cdn.uipath.comhttps://solutions.uipath.com | Solutions Management or required interface assets may be unavailable. |
| Upload or download solution packages | *.blob.core.windows.net | Solution packages cannot be uploaded or downloaded. |
| Receive live deployment updates | https://*.service.signalr.netwss://*.service.signalr.net | Live status updates, including deployment progress, do not appear until the page is refreshed. |
Studio Web
Dominios
Allow the domains required for Studio Web:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Receive real-time collaboration updates | wss://*.service.signalr.nethttps://*.service.signalr.netwss://*.trafficmanager.net | Live updates for project imports, shared projects, and other notifications are unavailable. |
| Open Studio Web | https://*.uipath.com | Studio Web is unavailable. |
| Send in-app feedback | https://studio-feedback.azure-api.net | In-app feedback cannot be submitted. |
| Load static assets | https://platform-cdn.uipath.comhttps://content.usage.uipath.comhttps://fonts.gstatic.comhttps://d2c7xlmseob604.cloudfront.nethttps://fonts.googleapis.comhttps://*.typekit.nethttps://s.gravatar.comhttps://secure.gravatar.comhttps://*.wp.comhttps://*.googleusercontent.comhttps://i.ytimg.com | Fonts, icons, images, or other static assets may not render correctly. |
| Send product telemetry | https://data.usage.uipath.com | Optional. Core functionality remains available, but product telemetry is unavailable. |
| Use Pendo in-app guidance | https://*.pendo.io | Optional. In-app guidance is unavailable. |
| Send third-party telemetry | https://dc.services.visualstudio.com | Core functionality remains available, but diagnostic telemetry is unavailable. |
| Load translated interface content | https://api.smartling.com | Translated interface content may be unavailable. |
Task Mining
Dominios
Allow the domains required for Task Mining desktop components:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Task Mining | https://cloud.uipath.com | Task Mining is unavailable. |
| Use the web portal | *.blob.core.windows.net | The Task Mining web portal does not function correctly. |
| Receive desktop-component notifications | *.service.signalr.net | The desktop component may not receive real-time updates. |
| Use Pendo in-app guidance | https://content.usage.uipath.com | In-app guidance is unavailable. |
| Send Azure Application Insights telemetry | dc.services.visualstudio.comdc.applicationinsights.azure.comdc.applicationinsights.microsoft.com*.in.applicationinsights.azure.comlive.applicationinsights.azure.comrt.applicationinsights.microsoft.comrt.services.visualstudio.com{region}.livediagnostics.monitor.azure.com | Core functionality remains available, but diagnostic telemetry is unavailable. |
| Load user avatars | i2.wp.com/cdn.auth0.com/avatars | User avatars do not render. |
Task Mining uses HTTPS and WSS over port 443. Configure transparent proxies to permit both protocols.
Test Manager
This section lists the domains used by Test Manager and the IP ranges that you should consider allowing if you want to use various Test Manager capabilities.
Dominios
Allow the domains required for Test Manager:
| Scenario or functionality | Dominios a permitir | Impact if blocked |
|---|---|---|
| Open Test Manager | https://cloud.uipath.com | Test Manager is unavailable or its interface does not render correctly. |
| Receive real-time updates | https://*.service.signalr.netwss://*.service.signalr.net | Some interface updates do not appear until the page is refreshed. |
SAP Heatmap and CIA RFC IP ranges
Allow the following IP ranges to establish communication between UiPath Test Manager and your SAP system via an RFC connection.
The following table shows the available IP ranges for each region.
| Región | Rangos de IP |
|---|---|
| Australia | |
| Canadá | |
| Europa (Unión Europea) | |
| India | |
| United States — delayed update (GxP) | |
| Japón | |
| Singapur | |
| Reino Unido | |
| Estados Unidos | |
SAP Heatmap and CIA Web Service IP ranges
Allow the following static IP ranges to enable the communication between UiPath Test Manager and your SAP system, via a web service connection.
Allow these IP ranges through your firewall:
| Regiones | Rangos de IP |
|---|---|
| Australia | |
| Canadá | |
| Comunidad | |
| Unión Europea | |
| European Union — delayed update (GxP) | |
| India | |
| Japón | |
| Singapur | |
| Reino Unido | |
| Estados Unidos | |
| United States — delayed update (GxP) | |
IP ranges for connectors
If you enhance your system's security with a firewall, consider allowing only Test Manager IP ranges for using out-of-the-box connectors.
The following IP ranges apply to all supported regions, including: Australia, Canada, European Union, India, Japan, Singapore, United Kingdom, United States, and United States — delayed update (GxP).
Allow these IP ranges through your firewall:
| Regiones | Rangos de IP |
|---|---|
| Australia, Canada, European Union, India, Japan, Singapore, United Kingdom, United States, and United States — delayed update (GxP) | |
- Aviso de obsolescencia
- Qué está cambiando
- Línea temporal
- Qué debe hacer
- Portal de Test Cloud
- Dominios
- IP ranges to enable a firewall for the customer-managed key
- IP ranges for notifications
- Retransmisión
- Action Center
- Dominios
- AI Center
- Dominios
- AI Computer Vision
- AI Trust Layer: trae tu propio LLM
- Rangos de IP
- Apps
- Dominios
- Rangos de IP
- Tipos de contenido para añadir a la lista de permitidos
- Automation Cloud Robots - Serverless
- Rangos de IP
- Automation Hub
- Dominios
- Automation Ops
- Dominios
- Rangos de IP
- IXP (Extracción y Procesamiento Inteligentes)
- Dominios
- Intervalos de IP entrantes
- Rangos de IP
- Data Fabric
- Dominios
- Document Understanding
- Dominios
- Rango de IP alternativo de Cloudflare
- Insights
- Dominios
- Rangos de IP
- Integration Service
- Rangos de IP
- Orchestrator
- Dominios
- Rangos de IP
- Servidores MCP
- Process Mining
- Dominios
- Soluciones
- Dominios
- Studio Web
- Dominios
- Task Mining
- Dominios
- Test Manager
- Dominios
- SAP Heatmap and CIA RFC IP ranges
- SAP Heatmap and CIA Web Service IP ranges
- IP ranges for connectors