AOS Hub / Docs

AOS support status

AOS is an early preview. This page records the operational boundary reflected by the current implementation and tests. It is not a long-term compatibility promise.

AreaStatus
Hermetic package and system buildsImplemented
Bootable imagesx86_64-linux workflow implemented
UEFI bootRequired
Raw, QCOW2, VMDK, dynamic VHD outputImplemented
Build-time system modulesImplemented
Runtime host.nix storage provisioningImplemented, first boot only
Other runtime host.nix settingsEarly-preview configuration generations implemented
Platform-trusted metadataImplemented for documented transports
Native AWS, GCP, Azure, DigitalOcean, OpenStack metadataImplemented
Other native cloud metadata APIsUnsupported
Signed metadata on GCP, Azure, DigitalOcean, native OpenStackNo detached-signature channel
DHCP and single-address static networkingImplemented
MTU, VLAN, and bond high-level optionsIncomplete rendering
APM machine-wide packagesAdd/remove reconciliation implemented; upgrade and rollback incomplete
Exposed APM service confinementImplemented, early preview
Stock unprivileged user package profileNot provisioned
Configuration generation rollbackImplemented
Durable image, kernel, and UKI upgradeEarly-preview A/B path implemented with boot counting and redundant ESP synchronization
Image rollbackEarly-preview path implemented
Opaque runtime credential referencesImplemented for system credentials, desired credentials, and TPM2 credstore
System-package/configuration generation pruningImplemented
A/B image-generation pruningNot implemented
Secure Boot, lockdown, measured boot, dm-verityFleet-test fixtures implemented
Package supply-chain and runtime attestationFleet-test implementation for exposed system packages
SELinux modulePresent, not enabled by presets
Audit, firewall, kernel hardeningImplemented in server baseline
Encrypted ZFS bare-metal storageEarly-preview installer and boot path implemented
ZFS memory bounding and dataset policyImplemented; budget, geometry gates, and boot-time verification
ZFS pool lifecycle (event daemon, scrub, trim, health, metrics)Implemented
ZFS pool creation outside the installerNot implemented; the installer is the only path that creates a pool
NVIDIA GPU supportOpen kernel modules and matching GSP firmware implemented
In-band IPMIKernel interfaces and ipmitool module implemented
Hardware watchdog and SMART monitoringOpt-in
Remote log shippingNo complete module