- 入门指南
- 数据安全性与合规性
- 组织
- 身份验证和安全性
- 许可
- 租户和服务
- 帐户和角色
- Ai Trust Layer
- 外部应用程序
- 通知
- 日志记录
- 数据导出
- 在您的组织中进行测试
- 故障排除
- 迁移到 Test Cloud
为 Test Cloud 公共部门配置防火墙
Test Cloud Public Sector 所需域名及出站网络要求,包含门户域名与各服务专属防火墙规则。。
有关常规网络配置和防火墙信息,请参阅“配置防火墙”
Test Cloud 公共部门版门户
下表列出了 Test Cloud 公共部门版门户所使用的域名:
| 场景 | 要允许的域 |
|---|---|
| UiPath Test Cloud 公共部门版 |
https://govcloud.uipath.ushttps://govcloud.uipath.us/portal_/cloudrpahttps://govcloud.uipath.us/portal_/signinwithssohttps://govcloud.uipath.us/<accountname>/https://govcloud.uipath.us/<accountname>/<tenantname>/portal
|
| 登录流程(通过 SSO 配置) |
https://login.microsoftonline.com
|
| 使用 Azure Active Directory (Azure AD) 帐户登录 |
https://aadcdn.msftauth.nethttps://govcloud.uipath.ushttps://login.microsoftonline.com
|
| 使用 UiPath Assistant 帐户(基本电子邮件)登录 |
*-signalr.service.signalr.net
对于与使用基本身份验证登录相关的事件: https://account.uipath.comhttps://govcloud.uipath.ushttps://platform-cdn.uipath.com
|
| 使用 UiPath Studio 帐户(基本电子邮件)登录 |
https://api.nuget.org*-signalr.service.signalr.nethttps://gallery.uipath.comhttps://pkgs.dev.azure.com
对于与使用基本身份验证登录相关的事件: https://account.uipath.comhttps://govcloud.uipath.ushttps://platform-cdn.uipath.com
|
| 静态资产:字体、样式和 CDN 托管脚本 | 字体: https://use.typekit.nethttps://fonts.gstatic.comhttps://platform-cdn.uipath.com
图像: https://s.gravatar.comhttps://secure.gravatar.comhttps://*.wp.comhttps://*.googleusercontent.comhttps://i.ytimg.comhttps://platform-cdn.uipath.com
CSS: https://fonts.googleapis.com/csshttps://use.typekit.nethttps://p.typekit.nethttps://platform-cdn.uipath.comhttps://staticresources.uipath.us
脚本: https://primer.typekit.nethttps://use.typekit.nethttps://platform-cdn.uipath.com
|
| 通过 Auth0 登录(适用于欧盟) |
uipath.eu.auth0.com
|
| 更新服务 |
ctldl.windowsupdate.com
要配置网络连接,请使用Microsoft 文档。 |
| App Insights/Google 跟踪代码管理器 |
https://usgovvirginia-0.in.applicationinsights.azure.ushttps://www.googletagmanager.com/gtm.js?id=GTM-PLLP8Phttps://code.jquery.com/jquery-3.5.1.min.js
|
如果您使用 Azure 存储桶,则它们不得位于租户的区域或故障转移区域中。
出站 IP 范围
为确保 UiPath 服务正常运行,我们建议允许以下 IP:
52.247.128.100
52.227.65.197
52.245.221.122
52.247.128.100
52.227.65.197
52.245.221.122
Action Center
域
下表列出了我们根据您计划使用的功能建议允许的 Action Center 使用的域:
| 场景 | 要允许的域 |
|---|---|
| 导航到 Action Center 页面 |
https://govcloud.uipath.us/<accountName>/<tenantName>/actions_https://govcloud.uipath.us/<accountName>/<tenantName>/processes_https://govcloud.uipath.us/<accountName>/<tenantName>/bupproxyservice_https://uipath-acc-pgov.uipath.us
|
Automation Hub
域
下表列出了 Automation Hub 使用的域:
| 场景 | 要允许的域 |
|---|---|
| 导航到 Automation Hub 页面 |
https://govcloud.uipath.ushttp://*.userpilot.iohttps://dc.services.visualstudio.comhttps://ah-prod-ts-blue-eu.uipath.comhttps://ah-prod-ts-blue-us.uipath.comhttps://ah-prod-ts-blue-ja.uipath.comhttps://ah-prod-ts-blue-au.uipath.comhttps://ah-prod-ts-blue-ca.uipath.comhttps://ah-prod-ts-blue-sea.uipath.comhttps://ah-prod-ts-blue-uk.uipath.comhttps://ah-prod-ts-blue-in.uipath.comhttps://ah-gxp-ts-blue-us.uipath.com
|
| 使用 Automation Hub 的 OpenAPI |
https://automation-hub.uipath.comhttp://ah-gxp-openapi-us.uipath.com
|
| 在 Automation Hub 中访问公共部门 |
https://govcloud.uipath.us
|
Automation Ops
域
下表列出了 Automation Ops 使用的域:
| 场景 | 要允许的域 |
|---|---|
| 导航至 Automation Ops 页面 |
https://usgovvirginia-0.in.applicationinsights.azure.ushttps://govcloud.uipath.ushttps://staticresources.uipath.us*-signalr.signalr.azure.ushttps://use.typekit.nethttps://p.typekit.net
|
Data Service
域
下表列出了 Data Service 使用的域:
| 场景 | 要允许的域 |
|---|---|
| 所有 Data Service 操作 |
https://govcloud.uipath.us
|
| 正在获取静态前端内容 |
https://staticds.uipath.us
|
Document Understanding
域
下表列出了 Document Understanding 使用的域:
| 模块或场景 | 要允许的域 |
|---|---|
| 网络和存储 | https://*.uipath.us |
| 遥测和 SignalR | https://*.azure.us |
| 公共端点 | 请参阅“公共端点”页面,获取公共端点 URL 的完整列表。 |
Insights
域
下表列出了 Insights 使用的域:
| 场景 | 要允许的域 |
|---|---|
| 导航到 Insights 主页 |
https://govcloud.uipath.ushttps://*.lookercdn.comhttps://uipath-insights-statics.azureedge.net/https://*.looker.uipath.com/https://insights-looker-prod.uipath.us
|
出站静态 IP 范围
通过出站静态 IP 范围,您可以仅将日志导出功能的 IP 列表添加到允许列表,而无需向所有外部 IP 开放网络访问。
为确保日志导出功能正常运行,请务必将 Test Cloud 公共部门版门户部分中的出站 IP 范围添加到允许列表。
由于 Microsoft 端对日志导出存在限制,当您的 Azure Blob 存储账号和 Insights 基础架构位于 Azure 中的同一区域下时,则无法设置入站 IP 限制。因此,Blob 存储账户不支持使用 USGov 弗吉尼亚区域。有关此限制的更多信息,请选中 Microsoft Azure Blob 存储文档中的“IP 网络规则限制”页面。
Orchestrator
域
机器人会将流量发送到这些 Test Cloud 公共部门 Orchestrator 域。我们建议您允许它们,以确保自动化正常运行,如下表所述:
| 模块或功能 | 要允许的域 |
|---|---|
| UiPath Orchestrator |
https://govcloud.uipath.ushttps://orch-cdn.uipath.comhttps://account.uipath.com
|
| Automation Cloud 公共部门版机器人 - VM |
https://govcloud.uipath.ushttps://download.uipath.com
|
| 存储 | 如果使用 Amazon S3 存储桶: *.s3.amazonaws.com
|
| 包和库订阅源 (库、租户流程等) |
https://pkgs.dev.azure.com
|
| Azure SignalR |
*.service.signalr.net
|
| Studio 和 Robot 自动更新功能 |
https://download.uipath.com
|
| 流量管理器 (内部) |
*.trafficmanager.net
|
Process Mining
域
下表列出了 Process Mining 使用的域:
| 模块或场景 | 要允许的域 |
|---|---|
| 身份服务器 |
https://govcloud.uipath.us
|
| 静态资产 |
https://fonts.googleapis.comhttps://fonts.gstatic.comhttps://content.usage.uipath.comhttps://s.gravatar.comhttps://i1.wp.com
|
| Azure SignalR |
*.signalr.azure.us
|
| 遥测 |
https://*.in.applicationinsights.azure.us
|
| 上传文件 |
*.blob.core.usgovcloudapi.net
|
Test Manager
域
下表列出了我们根据您计划使用的功能建议允许的 Test Manager 使用的域:
| 模块或功能 | 要允许的域 |
|---|---|
| UiPath Test Manager |
https://govcloud.uipath.us
|
| Azure SignalR |
*.signalr.azure.us
|