> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.13/learn-about-cortex-xsoar/onboarding-in-cortex-xsoar/single-server-deployment/system-requirements.md).

# System Requirements

Cortex XSOAR requires the following software and hardware. Ensure you meet all minimum system requirements.

* [Cortex XSOAR Server](#UUID-c279608d-2564-89ba-da68-ad127b0dcffc_id640b463e-e06c-43c6-b3a2-43858afab451)
* [Web Browsers](#UUID-c279608d-2564-89ba-da68-ad127b0dcffc_id8a5d1687-edbf-457c-b71c-26f3d6fa1c13)
* [Required URLs](#UUID-c279608d-2564-89ba-da68-ad127b0dcffc_id4961c4a5-668d-41ee-b5bc-b52afe68da25)

A WebSocket communications protocol is used in Cortex XSOAR for bi-directional data transfer between the client browser and the server. Verify that the Websocket protocol is allowed on your network, including for proxies.

{% hint style="info" %}

### Note

Linux kernel 5.2 and specific later versions include a bug that may cause XSOAR to panic on x64 platforms due to corrupted memory. Therefore, make sure if XSOAR is running on kernel version 5.3 and later, one of the following fixed kernel versions is used:

* 5.3.15 and later
* 5.4.2 and later
* 5.5 and later

You can identify your kernel version by running the **`uname -a`** or **`uname -r`** command.
{% endhint %}

### **Cortex XSOAR Server**

Cortex XSOAR server has specific operating system and hardware requirements.

{% hint style="info" %}

### Tip

* It is recommended that you disable swap for consistent performance.
* It is recommended that you use a dedicated server to run Cortex XSOAR and not run additional programs or software on the machine. If you run additional programs on the machine, performance will be affected.
  {% endhint %}

**Operating Systems**

You can deploy Cortex XSOAR on the following operating systems, and must meet the minimum hardware requirements.

| Operating System | Supported Versions                                |
| ---------------- | ------------------------------------------------- |
| Ubuntu           | 18.04, 20.04, 22.04, 24.04                        |
| RHEL             | <p>8.x, 9.x</p><p>Includes all minor versions</p> |
| Oracle Linux     | 7.x, 8.9, 9.3, 9.4                                |
| Amazon Linux     | 2, Amazon Linux 2023                              |
| Rocky Linux      | 9.5, 9.6                                          |

{% hint style="info" %}

### Note

* Make sure the latest Cortex XSOAR version is installed.
* RHEL 7x reached End of Life (EOL) on June 30, 2024, and is no longer a supported operating system.
* CentOS 8.x reached EOL on December 31, 2021, and is no longer a supported operating system.
* CentOS 7.x reached EOL on June 30, 2024, and is no longer a supported operating system.
  {% endhint %}

**Operating System Git**

Cortex XSOAR uses git for all version control commands. By default, the Cortex XSOAR installation includes git, and the git files are installed at **`/usr/local/demisto/git/`**.

You also have the option to use your operating system's git. If you are installing Cortex XSOAR for the first time, use the **`-git false`** flag during installation to skip the Cortex XSOAR git installation. If you have already installed Cortex XSOAR with git, you can manually delete the Cortex XSOAR git files, located at **`/usr/local/demisto/git/`**.

If you do not install Cortex XSOAR git or you delete the Cortex XSOAR git files, Cortex XSOAR will use the default operating system git. The minimum git version must be 2.21.0 or later.

**Hardware Requirements**

| Component | Dev Environment Minimum | Production Minimum                     |
| --------- | ----------------------- | -------------------------------------- |
| CPU       | 8 CPU cores             | 16 CPU cores                           |
| Memory    | 16GB RAM                | 32GB RAM                               |
| Storage   | 500GB SSD               | 1TB SSD with minimum 3k dedicated IOPS |

If your hard drive is partitioned, we recommend a minimum of 450GB for the /var partition for the development environment, and 900GB for the /var partition for the production environment.

When deploying Cortex XSOAR with BoltDB, we recommend a limit of 1 million indicators for the development environment and 5-7 million indicators for the production environment. If you will have more indicators, we recommend using [Elasticsearch](https://app.gitbook.com/s/ocx7Q2eheJysMwmfd13T/elasticsearch/elasticsearch-setup/elasticsearch-system-requirements).

**Docker/Podman Requirements**

Cortex XSOAR requires [Docker](/xsoar-6-administrator-guide/6.13/learn-about-cortex-xsoar/onboarding-in-cortex-xsoar/docker.md) or [Podman](/xsoar-6-administrator-guide/6.13/learn-about-cortex-xsoar/onboarding-in-cortex-xsoar/podman.md) for container management. Cortex XSOAR installs either Docker or Podman automatically based on your operating system. [IPv4 forwarding](https://docs.docker.com/network/bridge/#enable-forwarding-from-docker-containers-to-the-outside-world) is required.

You may need to take additional steps to set up Docker or Podman, depending on your operating system.

Podman, by default, uses the **`$HOME/.local/share/containers/storage`** directory, and we recommend reserving 150GB for the /home partition.

| Operating System | Action                                                                                                                                          |
| ---------------- | ----------------------------------------------------------------------------------------------------------------------------------------------- |
| Oracle Linux     | Manually [install Docker](/xsoar-6-administrator-guide/6.13/learn-about-cortex-xsoar/onboarding-in-cortex-xsoar/docker/docker-installation.md). |

### **Web Browsers**

Cortex XSOAR supports the following web browsers:

| Web Browser    | Version        |
| -------------- | -------------- |
| Chrome         | 95.x and later |
| Firefox        | 93.x and later |
| Safari         | 13.x and later |
| Microsoft Edge | 81.x and later |

It is always recommended to use the latest browser versions.

### **Required URLs**

You need to allow the following URLs for Cortex XSOAR to operate properly.

| Function                             | Service                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              | Port               | Direction |
| ------------------------------------ | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ------------------ | --------- |
| Web interface                        | HTTPS                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                | 443 (configurable) | Inbound   |
| Engine connectivity                  | HTTPS                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                | 443 (configurable) | Inbound   |
| Integrations                         | Integration-specific ports                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |                    | Outbound  |
| Docker/Podman                        | <ul><li><https://registry-1.docker.io></li><li><https://registry.fedoraproject.org></li><li><https://registry.access.redhat.com></li><li><https://docker.io></li><li><https://registry.docker.io></li><li><https://docker-images-prod.6aa30f8b08e16409b46e0173d6de2f56.r2.cloudflarestorage.com></li><li><p><https://auth.docker.io></p><p>This URL may change according to Docker’s discretion.</p></li><li><p><https://production.cloudflare.docker.com></p><p>This URL may change according to Docker’s discretion.</p></li></ul><div data-gb-custom-block data-tag="hint" data-style="info" class="hint hint-info"><p><strong>Note</strong></p><p>Docker URLs may change. For the current list, see <a href="https://docs.docker.com/desktop/setup/allow-list/"><https://docs.docker.com/desktop/setup/allow-list/></a>. Note that some URLs in the allow list are for Docker Desktop and are not required for Cortex XSOAR.</p></div>                                                                                                                                                                                                                                                                                                                                                                           | 443                | Outbound  |
| Unit42 Intel Inventory (TIM license) | <https://unit42intel.xsoar.paloaltonetworks.com>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     | 443                | Outbound  |
| Marketplace                          | <ul><li><p><https://marketplace.xsoar.paloaltonetworks.com/></p><p>Download content packs and view the Marketplace (to view content pack images, the domain should also be reachable from the browser).</p></li><li><p>storage.googleapis.com</p><p>Download content packs and view the Marketplace. This domain stores content pack artifacts (to view content pack images, the domain should also be reachable from the browser). It is possible to further limit the url prefix to: <a href="https://storage.googleapis.com/marketplace-dist/"><https://storage.googleapis.com/marketplace-dist/></a></p></li><li><p>api.demisto.com</p><p>Download content Packs and view the Marketplace (this file maps the Marketplace URL to the Cortex XSOAR version).</p><div data-gb-custom-block data-tag="hint" data-style="info" class="hint hint-info"><p><strong>Note</strong></p><p>You must add marketplace.xsoar.paloaltonetworks.com, storage.googleapis.com, and api.demisto.com otherwise you cannot access the Marketplace.</p></div></li><li><p>xsoar-authentication-proxy.paloaltonetworks.com</p><p>Login and register users.</p></li><li><p>xsoar-marketplace-review\.paloaltonetworks.com</p><p>Review content packs.</p></li><li><p>xsoar-contrib.pan.dev</p><p>Contribute content packs.</p></li></ul> | 443                | Outbound  |

{% hint style="info" %}

### Note

If you use SSL inspection and experience difficulty connecting the the required URLs, or the integration URL, we recommend excluding the required URLs from your SSL offloading on Firewall/Proxy.
{% endhint %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.13/learn-about-cortex-xsoar/onboarding-in-cortex-xsoar/single-server-deployment/system-requirements.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
