System requirements
The requirements in one table.
Host#
| Item | Minimum | Recommended | Notes |
|---|---|---|---|
| CPU | 4 vCPU | More cores run more devices at once | Intel VT-x or AMD-V, with nested virtualization on for the appliance before you start it |
| Memory | 8 GB | 16 GB | Small environment (2 to 3 devices, one virtual machine, or a dozen routers and switches): 8 GB. Medium (4 to 8 devices, 3 or 4 virtual machines): 16 GB. Large (10 to 20 devices, 6 to 8 virtual machines): 32 GB. Security appliances follow their vendor's own numbers |
| Disk | 200 GB virtual disk, thin-provisioned | Room for your images and environments | The disk takes space on the host only as it fills. Large monitoring cards declare up to 200 GB |
| Network | One interface | One interface | DHCP is fine |
| Hypervisor | Proxmox VE, VMware Workstation, VirtualBox | Install steps are given for all three | |
| Browser | A current Chromium-based browser | Nothing to install on your laptop | |
Sizing for environments is covered in Requirements and sizing.
Appliance#
| Delivery | ONEP appliance as an .ova |
|---|---|
| Base | Ubuntu 22.04 LTS |
| System disk | 200 GB, thin-provisioned |
| Images | You bring your own images, or fetch them through Discover |
| Inbound ports | 443/tcp, 80/tcp (redirects to HTTPS), and a WireGuard UDP port when remote access is enabled |
| SSH | Port 22 is closed by the appliance firewall |
| TLS certificate | Created by the appliance on first boot |
| Devices | Router and switch images, virtual machines, containers |
| Consoles | Serial; graphical desktop in the browser; container shell |
| Monitoring | /health and /metrics (Prometheus text format) |
| Internet use | ONEP sends nothing to ONEP on its own. ONEP itself connects out only for what you ask for: Discover downloads, the first build of a Content Hub card, container pulls, the model download in Settings › AI, an external AI service you configure, and Report a Problem when you press Submit. The appliance's operating system may fetch its own security updates from package mirrors, and needs DNS and time (NTP) on your network |