Alibaba Cloud Linux 4 Agentic Edition (Agentic OS) manages certification, model, tool and other settings through a hierarchical configuration system, supporting multi-layer coverage of project-level and user-level configuration files. This article introduces the access methods of multiple authentication methods, model switching operations, as well as the hierarchical priority and core configuration item descriptions of configuration files.
1 Authentication method
The first startup of Agentic OS requires authentication to connect to the large language model service. Can be used later /authCommand to switch authentication mode.
Currently the following authentication methods are supported.
Alibaba Cloud Certification
Select "Aliyun Authentication" on the interactive interface to get a certain amount of free credit.
-
In an ECS environment, the terminal displays the authorization URL and QR code. Open the URL in the browser or scan the QR code with your mobile phone to complete the Alibaba Cloud account login and authorization
-
In non-ECS environments, use Alibaba Cloud AK/SK authentication
-
Get AK/SK:
-
Log in to the Alibaba Cloud console
-
exist AccessKey Management page creation Key
-
-
Users who are authenticated by Alibaba Cloud can use a free API call quota, which is suitable for individual development and testing.
Note: Alibaba Cloud authentication method only supports the use of Qianwen series text models and does not support multi-modal models.
Bailian certification
Bailian Certification has pre-made Base Url, you can choose Coding Plan, Token Plan, and custom model authentication method, and provide API Key for authentication.
OpenAI Compatible Endpoint API Key Authentication
Select "OpenAI Compatible" on the interactive interface and prepare the API Key. Supported OpenAI compatible endpoints include:
-
Custom Base URL: locally deployed models (such as vLLM, Ollama), third-party API proxy services, etc.
Certification management
|
operate |
Order |
|
View current certification status |
|
|
Switch authentication method |
|
FAQ: When authentication fails, check whether the API Key is correct (note the spaces before and after) and whether the network can access the corresponding API endpoint. Agentic OS supports configuring multiple authentications at the same time. It will be selected according to priority. It can also be configured through /auth Manual switching.
2 Model configuration
Switch model
use /auth The command switches the model used by the current session, selects the configured authentication configuration, and then selects "Set as active provider".
3 configuration files
Configuration levels and priorities
Agentic OS's system Shell entrance cosh uses JSON format configuration files to manage settings, with priority from high to low:
Command line parameters > Environment variables > Project configuration > User configuration > Default value
Configuration file location
|
type |
path |
illustrate |
|
System settings |
|
Administrator defaults |
|
User settings |
|
Personal global configuration |
|
Project settings |
|
Project-level configuration can be shared by the team |
Configuration file location
|
type |
path |
illustrate |
|
System settings |
|
Administrator defaults |
|
User settings |
|
Personal global configuration |
|
Project settings |
|
Project-level configuration can be shared by the team |
cosh-core merges configurations in the order system → user → project. Project configuration can set Agent, Hook, Skill, session,active_model and answer language preference, but ignored active_provider, Provider definition, MCP server and project audit settings.cosh-shell Only user files are read, not system or project files.
Core configuration items
ai --- AI and model settings
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
--- |
Currently active Provider |
|
|
string |
--- |
The name of the model currently in use |
|
|
string |
--- |
Answer language preference |
|
|
string |
--- |
thinking mode preference |
ai.providers. --- Provider definition
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
--- |
Provider type, such as |
|
|
string |
--- |
API base URL |
|
|
string |
--- |
API key, recommended |
|
|
string |
--- |
The Provider's default model |
|
|
string |
--- |
Authentication source such as |
|
|
string |
--- |
Alibaba Cloud Access Key ID |
|
|
string |
--- |
Alibaba Cloud Access Key Secret |
|
|
string |
--- |
Alibaba Cloud Security Token |
|
|
boolean |
false |
Whether to enable explicit caching |
agent --- Agent behavior settings
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
"recommend" |
Core approval mode: |
|
|
number |
50 |
The maximum number of rounds for a single Agent request |
|
|
number |
10 |
Maximum number of tool calls per round |
|
|
number |
128000 |
Session token restrictions |
|
|
array |
[] |
List of tools exempt from approval |
session --- session management
|
Configuration items |
type |
default value |
illustrate |
|
|
boolean |
true |
Whether to automatically persist sessions |
|
|
string |
"~/.copilot-shell/cosh-core/sessions" |
Session persistence directory |
session.compaction --- session compression
|
Configuration items |
type |
default value |
illustrate |
|
|
boolean |
true |
Enable compression |
|
|
boolean |
true |
automatic compression |
|
|
number |
0.70 |
The context ratio that triggers normal compression |
|
|
number |
0.90 |
The proportion of contexts that trigger emergency protection |
|
|
number |
0.30 |
Compressed target context ratio |
|
|
number |
2 |
Number of recent complete Agent runs retained |
|
|
number |
--- |
Optional absolute trigger token limit |
|
|
number |
--- |
Model context window override value |
|
|
number |
--- |
Model maximum output token coverage value |
must be maintained target_ratio <= trigger_ratio <= emergency_ratio。
shell --- Shell interactive settings
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
"auto" |
default shell |
|
|
string |
"cosh-core" |
default adapter |
|
|
string |
"smart" |
Analysis mode: |
|
|
string |
"auto" |
Shell approval mode: |
|
|
string |
"enhanced" |
Shell integration mode: |
|
|
number |
120 |
Enter the wait timeout seconds, |
|
|
array |
[] |
Trusted command list |
|
|
array |
[] |
List of trusted project roots |
shell.recommendations --- Shell recommendations
|
Configuration items |
type |
default value |
illustrate |
|
|
boolean |
true |
Whether to enable shell suggestions |
|
|
boolean |
false |
Whether to use Bash history to generate suggestions |
ui --- interface settings
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
"auto" |
UI language |
|
|
boolean |
true |
launch banner |
|
|
boolean |
false |
start hook |
|
|
boolean |
false |
debug mode |
|
|
string |
"warn" |
UI log level |
skills --- skill settings
|
Configuration items |
type |
default value |
illustrate |
|
|
boolean |
false |
Whether to enable custom skills |
|
|
array |
[] |
Custom skill path list |
logging --- log settings
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
"warn" |
Log level |
mcp.servers. --- MCP servers
MCP client can only be defined in system or user configuration. Each server uses command(stdio) or urlOne of (Streamable HTTP); omitted allowed_tools Indicates exposing all tools,[ ] Indicates that the tool is not exposed.
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
--- |
stdio server executable file path |
|
|
string |
--- |
Streamable HTTP endpoint |
|
|
array |
[] |
Command line parameters |
|
|
table |
{} |
environment variables |
|
|
number |
10000 |
Request timeout in milliseconds |
|
|
number |
30000 |
Start timeout in milliseconds |
|
|
array |
--- |
List of tools allowed to be exposed |
health --- health check
|
Configuration items |
type |
default value |
illustrate |
|
|
boolean |
true |
Whether to enable health checks |
|
|
string |
--- |
Role ID |
|
|
boolean |
false |
memory sensitive mode |
|
|
array |
["/"] |
List of key mount points |
|
|
boolean |
false |
Verbose output mode |
health.services Use TOML array table definition:
[[health.services]]
name = "nginx"
expected = "active"
audit --- Audit settings
System files include [audit] In the table, the system settings shall prevail; otherwise, the user settings shall be used. Project audit tables are ignored.
|
Configuration items |
type |
default value |
illustrate |
|
|
string |
"best_effort" |
Audit mode: |
|
|
number |
30 |
Number of days to retain audit data |
|
|
number |
1073741824 |
Maximum disk usage of audit data in bytes |