資料來源:Autodesk
如果您使用租賃產品、Autodesk A360或相關線上服務時,可能遇到因為代理伺服器阻擋,因而導致無法使用線上服務的狀況
可能影響的線上服務如下:
● 登入線上服務: Autodesk A360 、Subscription Center(現在的Autodesk Account)網站
● Autodesk A360 Team
● Autodesk A360 Collaboration for Revit
● Autodesk 雲端彩現
● Autodesk A360 同步
● AutoCAD 歡迎畫面
● AutoCAD 線上說明
● 內容瀏覽器:SEEK、Contecnt Explorer..等與網路有關的外掛
● AutoCAD 線上地圖(Bing Maps)
※ 前三項需要付費才能使用
解決方案:
一、 用戶端設定Proxy例外規則
1. 開啟網際網路設定畫面
2. 檢查連線的LAN設定
3. 檢查Proxy 伺服器的進階
4. 在例外輸入以下資料,讓電腦在連線時,跳過 Proxy 伺服器,
*.autodesk.com
*.google-analytics.com
*.cloudfront.net
*.virtualearth.net
*.autocadws.com
*.newrelic.com
*.akamaiedge.net
*.amazonaws.com
*.getsatisfaction.com
*.autodesk360.com
*.skyscraper.autodesk.com
二、 檢查認證代理伺服器是否有開啟http(port:80)與https(port:443)的通道,並允許所有用戶可以不經過代理認證存取下列網域
*.autodesk.com
*.google-analytics.com
*.cloudfront.net
*.virtualearth.net
*.autocadws.com
*.newrelic.com
*.akamaiedge.net
*.amazonaws.com
*.getsatisfaction.com
*.autodesk360.com
*.skyscraper.autodesk.com
*.ssl.google-analytics.com
*.js-agent.newrelic.com
三、 通透式代理伺服器
An intercepting proxy (also known as a forced proxy or transparent proxy) combines a proxy server with a gateway or router (commonly with NAT capabilities). Connections made by client browsers through the gateway are diverted to the proxy without client-side configuration (or, often, knowledge). Connections may also be diverted from a SOCKS server or other circuit-level proxies.
Transparent proxies will not prevent access to Autodesk Server components.
其他常見問題
Common questions:
Why can’t we use IP addresses for the firewall rules?
The Single Sign-On solution from Autodesk takes advantage of Akamai for network route optimization. Because the Akamai network has many (1000s) of edge nodes which change over time, it is not advisable to filter based on IP addresses. If filtering is required, then it should be done by URL (*.autodesk.com).
Why should we enable special rules in the proxy server for certain URLs?
Authentication information is not currently sent to the proxy server; hence an exception rule is required on the proxy to enable these communications anonymously.
What if we don’t use proxy servers and access the control list directly on the firewall?
If the rules can be added with DNS names you could use the above mentioned URLs to allow the traffic.
We have secureNAT on our clients. Why I can’t I access any of Autodesk A360 services?
The issue is due to the ISA Firewall service performing reverse DNS name resolution to determine whether a rule applies for every request from SecureNAT client. Try adding Akamai hosts (*. edgekey.net & *.akamaiedge.net) to the exception lists to resolve the issue.
----------------
===========
協勤資訊_Mingway