Skip to main content
Version: v0.1 (Stable)

System Requirements

ActonOS is engineered with minimal footprint requirements, running comfortably on compact x86_64 MiniPCs, home servers, cloud VMs, and NAS appliances.

Bare-Metal MiniPC Specificationsโ€‹

For dedicated appliance installations using the bootable ActonOS ISO:

ComponentMinimum SpecificationRecommended Specification
Processor (CPU)Intel Celeron N5105 / N95 or AMD equivalent (x86_64, 4 cores)Intel Processor N100 / Core i3 / Core i5 or AMD Ryzen 5 / 7
System Memory (RAM)2 GB DDR4 / LPDDR48 GB โ€“ 16 GB DDR4/DDR5
Storage32 GB eMMC or SATA SSD128 GB+ NVMe SSD (PCIe 3.0 / 4.0)
Networking1ร— Gigabit Ethernet (RJ-45)1ร— 2.5 GbE LAN + Wi-Fi 6 (802.11ax) & Bluetooth 5.2
Display (Optional)HDMI / DisplayPort (first-boot debug only)Headless (automated captive portal setup)
Boot ModeUEFI 64-bitUEFI with Secure Boot support
Recommended Hardware

Sub-$150 MiniPCs featuring the Intel N100 processor (such as Beelink EQ12, Minisforum UN100, or GMKtec NucBox G2) deliver an optimal balance of energy efficiency (6Wโ€“15W TDP), multi-agent processing power, and 24/7 reliability.


Docker Host Specificationsโ€‹

For running ActonOS inside a container on existing infrastructure (Ubuntu, Debian, Fedora, Arch, TrueNAS, Synology, Unraid, or macOS/Windows via Docker Desktop/WSL2):

MetricMinimum SpecificationRecommended Specification
Host OSLinux Kernel 5.15+ / macOS 12+ / Windows 10/11 WSL2Linux Kernel 6.1+ (Debian 12 / Ubuntu 22.04 LTS / Arch)
Docker EngineDocker Engine 24.0+ or Docker Desktop 4.25+Docker Engine 26.0+ with Docker Compose v2
Assigned CPU2 Virtual CPUs4+ Virtual CPUs
Assigned Memory1.5 GB RAM4 GB+ RAM
Disk Space10 GB free space for /data50 GB+ SSD storage

Network & Firewall Requirementsโ€‹

ActonOS requires minimal outbound internet connectivity to communicate with LLM API providers and SaaS platforms.

Port / ProtocolDirectionPurposeRequired?
8080/TCPInbound (Local LAN)HTTP Web Dashboard & REST/WebSocket APIYes (unless reverse proxied)
443/TCPOutboundHTTPS connection to LLM APIs, OAuth providers, and Tool HubYes
41641/UDPInbound / OutboundDirect WireGuard peer connections for Tailscale tsnetOptional (falls back to DERP relay)
53/UDP & 53/TCPInboundCaptive Portal DNS redirection on Bare-metal Wi-Fi hotspotBare-metal only
67/UDP & 68/UDPInboundDHCP server for Captive Portal setup hotspotBare-metal only
No Port Forwarding Required

When using the built-in Tailscale tsnet remote access engine, you do not need to open any inbound router ports or configure dynamic DNS. ActonOS establishes an end-to-end encrypted mesh tunnel directly to your Tailscale network.