Allowlist URLs for Model Hub in air-gapped installations

For air-gapped installations using a non-transparent proxy setup, you must add the following URLs to an allowlist in your firewall rules to ensure the Model Hub functions correctly.

Hugging Face

  • * huggingface.co
  • cdn-lfs.huggingface.co*
  • *cdn-lfs-us-1\.huggingface\.co
  • *cdn-lfs-eu-1\.huggingface\.co
  • *cdn-lfs-us-1\.hf\.co
  • *cdn-lfs-eu-1\.hf\.co
  • *cdn-lfs\.hf\.co
  • *cas-bridge.xethub.hf.co http_access allow hf_xet
  • *transfer.xethub.hf.co http_access allow hf_tr
  • *cas-server.xethub.hf.co http_access allow hf_cas
  • *.cloudfront.net (CDN)

Nvidia NGC Catalog

  • prod.otel.kaizen.nvidia.com (NVIDIA open telemetry)
  • api.ngc.nvidia.com
  • xfiles.ngc.nvidia.com

GitHub (for latest Model Hub catalog)

  • github.com/cloudera/Model-hub

You must ensure that these URLs are properly added to the allowlist to maintain access to up-to-date model catalogs.