What it checks
- Firmware mode — UEFI required, legacy BIOS not supported
- Secure Boot disabled — our kernel isn't signed by a Microsoft-trusted key
- RAM ≥ 8 GB, CPU ≥ 4 cores
- CPU architecture matches the ISO you downloaded (x86_64 vs ARM64)
- Target disk ≥ 10 GiB
- Wired ethernet present (required for first-boot cert issuance)
- Outbound HTTPS to the Ayewo portal API reachable
Run on your current OS — not inside the Ayewo ISO. The script reads your live hardware. You can run it on any Linux system (including a live USB of Ubuntu/Debian/Fedora), in WSL on Windows, or on macOS.
Run it
One-liner (Linux / WSL / macOS)
curl -sL https://www.hudsoninfosec.com/ayewo-preflight.sh | bash
Or download and inspect first
curl -O https://www.hudsoninfosec.com/ayewo-preflight.sh
less ayewo-preflight.sh
bash ayewo-preflight.sh
Reading the results
- All PASS — write the ISO with confidence.
- Any FAIL — fix the underlying issue (usually Secure Boot or firmware mode) and rerun. Do not write the ISO yet.
- WARN only — the node will probably boot, but review each warning. The node's own
hardware-precheck.service will re-check on first boot and flag any remaining issues via the heartbeat.
If your hardware can't boot the ISO
You have two options within 7 days of purchase:
- Swap to a virtual node order (runs in any hypervisor — VMware, Hyper-V, Proxmox, KVM, Parallels, UTM)
- Get a full refund
See the ISO FAQ §9 — Refund & Swap Policy.