Updated March 31, 20262 min read
User account
| Identity provider | Documentation |
|---|---|
| Microsoft 365 | Microsoft Azure (Entra ID user account section) and SSO sign-in via OAuth |
| Google Workspace | Google Cloud (user account section) and Google Workspace SSO |
On-Premises hosting
Operating system
- Ubuntu Server 24.04.4 LTS
- Fresh installation, without modifications
Required resources
| Company size | vCPU | RAM | SSD storage |
|---|---|---|---|
| 1 to 30 employees | 4 | 16 GB | 128 GB |
| 31 to 100 employees | 8 | 32 GB | 256 GB |
| 101 to 200 employees | 16 | 64 GB | 512 GB |
Inbound network connections
The following inbound openings are required:
- Port 22 open to the installation address we give you in writing at deployment
- Port 9001 open to that same address
- Port 80 open to the Internet, or restricted to your private network (will be redirected to 443)
- Port 443 open to the Internet, or restricted to your private network
Outbound network connections
The server must be able to reach the following destinations, otherwise the installation fails or the platform stays non-functional:
| Destination | Reason |
|---|---|
| The Hilo Tech router (443) — hostname supplied in your deployment runbook | All AI model calls (text, image, audio, video) |
ghcr.io (443) |
Downloading and updating the application images |
docker.io, registry-1.docker.io (443) |
Third-party components of the base installation |
| Let's Encrypt (443) | Automatic SSL certificate issuance and renewal |
loki.hilotech.ca, prometheus.hilotech.ca (443) |
Platform monitoring by our team |
Domain, DNS & SSL
Need a hand?
Our team can walk through these steps with you in a meeting with screen sharing.