mirror of
https://github.com/dockur/macos.git
synced 2026-03-11 08:34:24 +00:00
Compare commits
184 commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
297714126c | ||
|
|
056dfdd026 | ||
|
|
4cdd13585d | ||
|
|
1b3f506bbe | ||
|
|
9288c856e4 | ||
|
|
67a172743c | ||
|
|
333948ef19 | ||
|
|
dd59b97af6 | ||
|
|
5c26b95ee4 | ||
|
|
b3450d11eb | ||
|
|
61ff166d16 | ||
|
|
211601d12b | ||
|
|
e032e349ee | ||
|
|
2f0e962edd | ||
|
|
05a699ba9a | ||
|
|
72468237d3 | ||
|
|
20068d21a3 | ||
|
|
6672deb920 | ||
|
|
fb7cd67691 | ||
|
|
c3d9de925c | ||
|
|
b1d47f113b | ||
|
|
8def1efbc0 | ||
|
|
9a8afcf237 | ||
|
|
e461eba7b3 | ||
|
|
3935b89941 | ||
|
|
9c8458d30b | ||
|
|
61d30d1672 | ||
|
|
0daaa39547 | ||
|
|
2d21f714c3 | ||
|
|
d3c2d44855 | ||
|
|
cfd279b7e1 | ||
|
|
8423965cf8 | ||
|
|
4c529524ad | ||
|
|
7f1202725c | ||
|
|
6c6f929adf | ||
|
|
feac11ef9a | ||
|
|
9d19aeeaf3 | ||
|
|
edaa2d2bfc | ||
|
|
a92a2cb0a0 | ||
|
|
944d58a982 | ||
|
|
eda63efc6e | ||
|
|
45b966703e | ||
|
|
1f31b50ff8 | ||
|
|
05dad712f3 | ||
|
|
4e804a1ef9 | ||
|
|
5b25e4c64d | ||
|
|
f9ea2f2781 | ||
|
|
35c7419044 | ||
|
|
8e7572b1ff | ||
|
|
125f14164b | ||
|
|
1ed6749ccd | ||
|
|
fc99211115 | ||
|
|
d4add50eb4 | ||
|
|
c787b8dd13 | ||
|
|
54e08a9425 | ||
|
|
733266fd6c | ||
|
|
08ac3ab823 | ||
|
|
a737399811 | ||
|
|
109b84fd6f | ||
|
|
fb044b9158 | ||
|
|
a82c3b58fd | ||
|
|
0cd494674c | ||
|
|
7d85112d12 | ||
|
|
f15a2d6ae5 | ||
|
|
827f458cae | ||
|
|
27a66f4748 | ||
|
|
9fb20e6ef5 | ||
|
|
e1977b9cdc | ||
|
|
db7d2d32a4 | ||
|
|
fa9319e74e | ||
|
|
b6a318f6e9 | ||
|
|
d93c75b979 | ||
|
|
9115d132f6 | ||
|
|
88c3f6219e | ||
|
|
e0a357091d | ||
|
|
69b79d9ba9 | ||
|
|
132033171d | ||
|
|
88a476ef4c | ||
|
|
08255c5a45 | ||
|
|
a410d8a123 | ||
|
|
6060d36387 | ||
|
|
0ffd7852fe | ||
|
|
431d9e544f | ||
|
|
1bf46b7e0b | ||
|
|
bbbc853178 | ||
|
|
453ec734ba | ||
|
|
cdf3e9df63 | ||
|
|
8e23be901f | ||
|
|
431b4b6ce9 | ||
|
|
a4735a328f | ||
|
|
6d588e42e1 | ||
|
|
5698b772b3 | ||
|
|
874bfa197b | ||
|
|
6d65c6cfbb | ||
|
|
9e07cb5367 | ||
|
|
de76cca895 | ||
|
|
69fb95c90f | ||
|
|
d07d09ea48 | ||
|
|
422ded1364 | ||
|
|
3277ec9eea | ||
|
|
2f0ee294e0 | ||
|
|
ad46446f1b | ||
|
|
e94516ebec | ||
|
|
876b858c69 | ||
|
|
35922a1714 | ||
|
|
70f6feb864 | ||
|
|
5ccb6fde73 | ||
|
|
90e5afd771 | ||
|
|
0d270138f2 | ||
|
|
3768d0f3df | ||
|
|
8d10ce8f68 | ||
|
|
250a09a2ac | ||
|
|
82865eb6d5 | ||
|
|
eb50bf405a | ||
|
|
44be8f5869 | ||
|
|
028b71f593 | ||
|
|
c2422ba1a4 | ||
|
|
72971f2df5 | ||
|
|
7aec69abd4 | ||
|
|
b37ed52881 | ||
|
|
431e95d798 | ||
|
|
17a2f29834 | ||
|
|
5cae89f75f | ||
|
|
22fedbfa72 | ||
|
|
01e809c0aa | ||
|
|
e0c84427f8 | ||
|
|
6f833321b3 | ||
|
|
c6ec08c0b5 | ||
|
|
ddff7a3f92 | ||
|
|
fba0a66658 | ||
|
|
f6831a5ba6 | ||
|
|
7225019302 | ||
|
|
be5b26a754 | ||
|
|
b993d8c0bd | ||
|
|
cea3262937 | ||
|
|
b709ec3057 | ||
|
|
40fe37786b | ||
|
|
ee97b791e0 | ||
|
|
5ddafa7568 | ||
|
|
c2aa3c6f43 | ||
|
|
c9c3d82a54 | ||
|
|
48ae8e666b | ||
|
|
b6be959712 | ||
|
|
2fa64cf373 | ||
|
|
4528b3ecd6 | ||
|
|
1cf4f3d154 | ||
|
|
0e69a19220 | ||
|
|
471a809902 | ||
|
|
c0865239d5 | ||
|
|
bb640e7ecf | ||
|
|
60ddd4d611 | ||
|
|
2ce297f9c5 | ||
|
|
55ecf49757 | ||
|
|
8c6314b5ab | ||
|
|
cffe7321eb | ||
|
|
0e999a5f5d | ||
|
|
4d566a22aa | ||
|
|
9b7bc11294 | ||
|
|
24377bb04a | ||
|
|
d6a0a37026 | ||
|
|
a65c619da8 | ||
|
|
00ecf9fff4 | ||
|
|
3e5fe3430a | ||
|
|
7e761f8b17 | ||
|
|
9ebb1f4a38 | ||
|
|
c4e3ccc43b | ||
|
|
c12f9c489b | ||
|
|
21d57d24c9 | ||
|
|
ed8bc829da | ||
|
|
f07c15ba82 | ||
|
|
416abbc1f0 | ||
|
|
e116eec294 | ||
|
|
3b110b1ca1 | ||
|
|
e07aadf4e1 | ||
|
|
45a3fdfcdc | ||
|
|
5b021f883e | ||
|
|
9bcc4bb095 | ||
|
|
0b23f617a9 | ||
|
|
ba8dd2848b | ||
|
|
76e2781c46 | ||
|
|
978f72009a | ||
|
|
41383565e7 | ||
|
|
fc6e44a803 | ||
|
|
07e0c5be59 |
24 changed files with 1007 additions and 284 deletions
19
.devcontainer/010 - macOS Sequoia/devcontainer.json
Normal file
19
.devcontainer/010 - macOS Sequoia/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 15 (Sequoia)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "15"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "../codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
19
.devcontainer/030 - macOS Ventura/devcontainer.json
Normal file
19
.devcontainer/030 - macOS Ventura/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 13 (Ventura)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "13"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "../codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
19
.devcontainer/040 - macOS Monterey/devcontainer.json
Normal file
19
.devcontainer/040 - macOS Monterey/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 12 (Monterey)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "12"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "../codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
19
.devcontainer/050 - macOS Big Sur/devcontainer.json
Normal file
19
.devcontainer/050 - macOS Big Sur/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 11 (Big Sur)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "11"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "../codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
19
.devcontainer/060 - macOS Catalina/devcontainer.json
Normal file
19
.devcontainer/060 - macOS Catalina/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 10 (Catalina)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "10"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "../codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
21
.devcontainer/codespaces.yml
Normal file
21
.devcontainer/codespaces.yml
Normal file
|
|
@ -0,0 +1,21 @@
|
|||
services:
|
||||
macos:
|
||||
container_name: macos
|
||||
image: ghcr.io/dockur/macos
|
||||
environment:
|
||||
RAM_SIZE: "half"
|
||||
DISK_SIZE: "max"
|
||||
CPU_CORES: "max"
|
||||
devices:
|
||||
- /dev/kvm
|
||||
- /dev/net/tun
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
ports:
|
||||
- 8006:8006
|
||||
- 5900:5900/tcp
|
||||
- 5900:5900/udp
|
||||
volumes:
|
||||
- ./macos:/storage
|
||||
restart: on-failure
|
||||
stop_grace_period: 2m
|
||||
19
.devcontainer/devcontainer.json
Normal file
19
.devcontainer/devcontainer.json
Normal file
|
|
@ -0,0 +1,19 @@
|
|||
{
|
||||
"name": "macOS 14 (Sonoma)",
|
||||
"service": "macos",
|
||||
"containerEnv": {
|
||||
"VERSION": "14"
|
||||
},
|
||||
"forwardPorts": [8006],
|
||||
"portsAttributes": {
|
||||
"8006": {
|
||||
"label": "Web",
|
||||
"onAutoForward": "notify"
|
||||
}
|
||||
},
|
||||
"otherPortsAttributes": {
|
||||
"onAutoForward": "ignore"
|
||||
},
|
||||
"dockerComposeFile": "codespaces.yml",
|
||||
"initializeCommand": "docker system prune --all --force"
|
||||
}
|
||||
|
|
@ -1,4 +1,5 @@
|
|||
.dockerignore
|
||||
.devcontainer
|
||||
.git
|
||||
.github
|
||||
.gitignore
|
||||
|
|
|
|||
2
.github/ISSUE_TEMPLATE/1-issue.yml
vendored
2
.github/ISSUE_TEMPLATE/1-issue.yml
vendored
|
|
@ -21,6 +21,7 @@ body:
|
|||
attributes:
|
||||
label: Docker compose
|
||||
description: The compose file (or otherwise the `docker run` command used).
|
||||
render: yaml
|
||||
validations:
|
||||
required: true
|
||||
- type: textarea
|
||||
|
|
@ -28,6 +29,7 @@ body:
|
|||
attributes:
|
||||
label: Docker log
|
||||
description: The logfile of the container (as shown by `docker logs macos`).
|
||||
render: shell
|
||||
validations:
|
||||
required: true
|
||||
- type: textarea
|
||||
|
|
|
|||
2
.github/ISSUE_TEMPLATE/3-bug.yml
vendored
2
.github/ISSUE_TEMPLATE/3-bug.yml
vendored
|
|
@ -23,6 +23,7 @@ body:
|
|||
attributes:
|
||||
label: Docker compose
|
||||
description: The compose file (or otherwise the `docker run` command used).
|
||||
render: yaml
|
||||
validations:
|
||||
required: true
|
||||
- type: textarea
|
||||
|
|
@ -30,6 +31,7 @@ body:
|
|||
attributes:
|
||||
label: Docker log
|
||||
description: The logfile of the container (as shown by `docker logs macos`).
|
||||
render: shell
|
||||
validations:
|
||||
required: true
|
||||
- type: textarea
|
||||
|
|
|
|||
18
.github/workflows/build.yml
vendored
18
.github/workflows/build.yml
vendored
|
|
@ -2,16 +2,6 @@ name: Build
|
|||
|
||||
on:
|
||||
workflow_dispatch:
|
||||
push:
|
||||
branches:
|
||||
- master
|
||||
paths-ignore:
|
||||
- '**/*.md'
|
||||
- '**/*.yml'
|
||||
- '.gitignore'
|
||||
- '.dockerignore'
|
||||
- '.github/**'
|
||||
- '.github/workflows/**'
|
||||
|
||||
concurrency:
|
||||
group: build
|
||||
|
|
@ -32,7 +22,7 @@ jobs:
|
|||
steps:
|
||||
-
|
||||
name: Checkout
|
||||
uses: actions/checkout@v4
|
||||
uses: actions/checkout@v6
|
||||
with:
|
||||
fetch-depth: 0
|
||||
-
|
||||
|
|
@ -50,7 +40,7 @@ jobs:
|
|||
labels: |
|
||||
org.opencontainers.image.title=${{ vars.NAME }}
|
||||
env:
|
||||
DOCKER_METADATA_ANNOTATIONS_LEVELS: manifest,index
|
||||
DOCKER_METADATA_ANNOTATIONS_LEVELS: manifest
|
||||
-
|
||||
name: Set up Docker Buildx
|
||||
uses: docker/setup-buildx-action@v3
|
||||
|
|
@ -69,12 +59,12 @@ jobs:
|
|||
password: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: Build Docker image
|
||||
uses: docker/build-push-action@v5
|
||||
uses: docker/build-push-action@v6
|
||||
with:
|
||||
context: .
|
||||
push: true
|
||||
provenance: false
|
||||
platforms: linux/amd64,linux/arm64
|
||||
platforms: linux/amd64
|
||||
tags: ${{ steps.meta.outputs.tags }}
|
||||
labels: ${{ steps.meta.outputs.labels }}
|
||||
annotations: ${{ steps.meta.outputs.annotations }}
|
||||
|
|
|
|||
11
.github/workflows/check.yml
vendored
11
.github/workflows/check.yml
vendored
|
|
@ -7,14 +7,19 @@ jobs:
|
|||
name: shellcheck
|
||||
runs-on: ubuntu-latest
|
||||
steps:
|
||||
- uses: actions/checkout@v4
|
||||
- uses: actions/checkout@v6
|
||||
- name: Run ShellCheck
|
||||
uses: ludeeus/action-shellcheck@master
|
||||
env:
|
||||
SHELLCHECK_OPTS: -x --source-path=src -e SC1091 -e SC2001 -e SC2002 -e SC2034 -e SC2064 -e SC2153 -e SC2317 -e SC2028
|
||||
- name: Lint Dockerfile
|
||||
uses: hadolint/hadolint-action@v3.1.0
|
||||
uses: hadolint/hadolint-action@v3.3.0
|
||||
with:
|
||||
dockerfile: Dockerfile
|
||||
ignore: DL3008,DL3020,DL3029,DL3059
|
||||
ignore: DL3008,DL3018,DL3020,DL3029,DL3059
|
||||
failure-threshold: warning
|
||||
-
|
||||
name: Validate JSON and YML files
|
||||
uses: GrantBirki/json-yaml-validate@v4
|
||||
with:
|
||||
yaml_exclude_regex: ".*\\kubernetes\\.yml$"
|
||||
|
|
|
|||
22
.github/workflows/hub.yml
vendored
22
.github/workflows/hub.yml
vendored
|
|
@ -12,13 +12,15 @@ jobs:
|
|||
dockerHubDescription:
|
||||
runs-on: ubuntu-latest
|
||||
steps:
|
||||
- uses: actions/checkout@v4
|
||||
-
|
||||
name: Docker Hub Description
|
||||
uses: peter-evans/dockerhub-description@v4
|
||||
with:
|
||||
username: ${{ secrets.DOCKERHUB_USERNAME }}
|
||||
password: ${{ secrets.DOCKERHUB_TOKEN }}
|
||||
repository: ${{ secrets.DOCKERHUB_REPO }}
|
||||
short-description: ${{ github.event.repository.description }}
|
||||
readme-filepath: ./readme.md
|
||||
-
|
||||
name: Checkout repo
|
||||
uses: actions/checkout@v6
|
||||
-
|
||||
name: Docker Hub Description
|
||||
uses: peter-evans/dockerhub-description@v5
|
||||
with:
|
||||
username: ${{ secrets.DOCKERHUB_USERNAME }}
|
||||
password: ${{ secrets.DOCKERHUB_TOKEN }}
|
||||
repository: ${{ secrets.DOCKERHUB_REPO }}
|
||||
short-description: ${{ github.event.repository.description }}
|
||||
readme-filepath: ./readme.md
|
||||
|
|
|
|||
66
.github/workflows/review.yml
vendored
Normal file
66
.github/workflows/review.yml
vendored
Normal file
|
|
@ -0,0 +1,66 @@
|
|||
on:
|
||||
pull_request:
|
||||
|
||||
name: "Review"
|
||||
|
||||
permissions:
|
||||
contents: read
|
||||
pull-requests: write
|
||||
checks: write
|
||||
|
||||
jobs:
|
||||
review:
|
||||
name: review
|
||||
runs-on: ubuntu-latest
|
||||
steps:
|
||||
-
|
||||
name: Checkout
|
||||
uses: actions/checkout@v6
|
||||
-
|
||||
name: Spelling
|
||||
uses: reviewdog/action-misspell@v1
|
||||
with:
|
||||
locale: "US"
|
||||
level: warning
|
||||
pattern: |
|
||||
*.md
|
||||
*.sh
|
||||
reporter: github-pr-review
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: Hadolint
|
||||
uses: reviewdog/action-hadolint@v1
|
||||
with:
|
||||
level: warning
|
||||
reporter: github-pr-review
|
||||
hadolint_ignore: DL3008 DL3018 DL3020 DL3029 DL3059
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: YamlLint
|
||||
uses: reviewdog/action-yamllint@v1
|
||||
with:
|
||||
level: warning
|
||||
reporter: github-pr-review
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: ActionLint
|
||||
uses: reviewdog/action-actionlint@v1
|
||||
with:
|
||||
level: warning
|
||||
reporter: github-pr-review
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: Shellformat
|
||||
uses: reviewdog/action-shfmt@v1
|
||||
with:
|
||||
level: warning
|
||||
shfmt_flags: "-i 2 -ci -bn"
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
-
|
||||
name: Shellcheck
|
||||
uses: reviewdog/action-shellcheck@v1
|
||||
with:
|
||||
level: warning
|
||||
reporter: github-pr-review
|
||||
shellcheck_flags: -x -e SC1091 -e SC2001 -e SC2002 -e SC2034 -e SC2064 -e SC2153 -e SC2317 -e SC2028
|
||||
github_token: ${{ secrets.GITHUB_TOKEN }}
|
||||
5
.github/workflows/test.yml
vendored
5
.github/workflows/test.yml
vendored
|
|
@ -1,11 +1,6 @@
|
|||
on:
|
||||
workflow_dispatch:
|
||||
pull_request:
|
||||
paths:
|
||||
- '**/*.sh'
|
||||
- '.github/workflows/test.yml'
|
||||
- '.github/workflows/check.yml'
|
||||
- 'Dockerfile'
|
||||
|
||||
name: "Test"
|
||||
permissions: {}
|
||||
|
|
|
|||
56
Dockerfile
56
Dockerfile
|
|
@ -1,34 +1,24 @@
|
|||
FROM --platform=linux/amd64 debian:trixie-slim AS builder
|
||||
# syntax=docker/dockerfile:1
|
||||
|
||||
ARG VERSION_OPENCORE="v21"
|
||||
ARG REPO_OPENCORE="https://github.com/thenickdude/KVM-Opencore"
|
||||
FROM --platform=$BUILDPLATFORM alpine:3.22 AS builder
|
||||
|
||||
ARG DEBCONF_NOWARNINGS="yes"
|
||||
ARG DEBIAN_FRONTEND="noninteractive"
|
||||
ARG DEBCONF_NONINTERACTIVE_SEEN="true"
|
||||
ARG VERSION_OPENCORE="1.0.4"
|
||||
ARG REPO_OPENCORE="https://github.com/acidanthera/OpenCorePkg"
|
||||
ADD $REPO_OPENCORE/releases/download/$VERSION_OPENCORE/OpenCore-$VERSION_OPENCORE-RELEASE.zip /tmp/opencore.zip
|
||||
|
||||
RUN set -eu && \
|
||||
apt-get update && \
|
||||
apt-get --no-install-recommends -y install \
|
||||
guestfish \
|
||||
linux-image-generic && \
|
||||
apt-get clean && \
|
||||
rm -rf /var/lib/apt/lists/* /tmp/* /var/tmp/*
|
||||
|
||||
COPY --chmod=755 ./src/build.sh /run
|
||||
COPY --chmod=644 ./config.plist /run
|
||||
|
||||
ADD $REPO_OPENCORE/releases/download/$VERSION_OPENCORE/OpenCore-$VERSION_OPENCORE.iso.gz /tmp/opencore.iso.gz
|
||||
|
||||
RUN gzip -d /tmp/opencore.iso.gz
|
||||
RUN run/build.sh /tmp/opencore.iso /run/config.plist
|
||||
RUN apk --update --no-cache add unzip && \
|
||||
unzip /tmp/opencore.zip -d /tmp/oc && \
|
||||
cp /tmp/oc/Utilities/macserial/macserial.linux /macserial && \
|
||||
rm -rf /tmp/* /var/tmp/* /var/cache/apk/*
|
||||
|
||||
FROM scratch AS runner
|
||||
COPY --from=qemux/qemu-docker:5.11 / /
|
||||
COPY --from=qemux/qemu:7.29 / /
|
||||
|
||||
ARG VERSION_ARG="0.0"
|
||||
ARG VERSION_KVM_OPENCORE="v21"
|
||||
ARG VERSION_OSX_KVM="326053dd61f49375d5dfb28ee715d38b04b5cd8e"
|
||||
ARG REPO_OSX_KVM="https://raw.githubusercontent.com/kholia/OSX-KVM"
|
||||
ARG REPO_KVM_OPENCORE="https://github.com/thenickdude/KVM-Opencore"
|
||||
|
||||
ARG DEBCONF_NOWARNINGS="yes"
|
||||
ARG DEBIAN_FRONTEND="noninteractive"
|
||||
|
|
@ -37,27 +27,29 @@ ARG DEBCONF_NONINTERACTIVE_SEEN="true"
|
|||
RUN set -eu && \
|
||||
apt-get update && \
|
||||
apt-get --no-install-recommends -y install \
|
||||
python3 && \
|
||||
mtools && \
|
||||
apt-get clean && \
|
||||
echo "$VERSION_ARG" > /run/version && \
|
||||
rm -rf /var/lib/apt/lists/* /tmp/* /var/tmp/*
|
||||
|
||||
COPY --chmod=755 ./src /run/
|
||||
COPY --from=builder /images /images
|
||||
COPY --chmod=755 ./assets /assets/
|
||||
COPY --chmod=755 --from=builder /macserial /usr/local/bin/
|
||||
|
||||
ADD --chmod=755 $REPO_OSX_KVM/$VERSION_OSX_KVM/fetch-macOS-v2.py /run/
|
||||
ADD --chmod=755 \
|
||||
ADD --chmod=644 \
|
||||
$REPO_OSX_KVM/$VERSION_OSX_KVM/OVMF_CODE.fd \
|
||||
$REPO_OSX_KVM/$VERSION_OSX_KVM/OVMF_VARS.fd \
|
||||
$REPO_OSX_KVM/$VERSION_OSX_KVM/OVMF_VARS-1024x768.fd \
|
||||
$REPO_OSX_KVM/$VERSION_OSX_KVM/OVMF_VARS-1920x1080.fd /usr/share/OVMF/
|
||||
|
||||
EXPOSE 8006 5900
|
||||
VOLUME /storage
|
||||
ADD $REPO_KVM_OPENCORE/releases/download/$VERSION_KVM_OPENCORE/OpenCore-$VERSION_KVM_OPENCORE.iso.gz /opencore.iso.gz
|
||||
|
||||
ENV RAM_SIZE "3G"
|
||||
ENV CPU_CORES "2"
|
||||
ENV DISK_SIZE "32G"
|
||||
ENV VERSION "sonoma"
|
||||
VOLUME /storage
|
||||
EXPOSE 5900 8006
|
||||
|
||||
ENV VERSION="14"
|
||||
ENV RAM_SIZE="4G"
|
||||
ENV CPU_CORES="1"
|
||||
ENV DISK_SIZE="64G"
|
||||
|
||||
ENTRYPOINT ["/usr/bin/tini", "-s", "/run/entry.sh"]
|
||||
|
|
|
|||
|
|
@ -1015,7 +1015,7 @@
|
|||
<key>HibernateSkipsPicker</key>
|
||||
<false/>
|
||||
<key>HideAuxiliary</key>
|
||||
<true/>
|
||||
<false/>
|
||||
<key>InstanceIdentifier</key>
|
||||
<string></string>
|
||||
<key>LauncherOption</key>
|
||||
|
|
@ -1033,11 +1033,11 @@
|
|||
<key>PollAppleHotKeys</key>
|
||||
<true/>
|
||||
<key>ShowPicker</key>
|
||||
<true/>
|
||||
<false/>
|
||||
<key>TakeoffDelay</key>
|
||||
<integer>0</integer>
|
||||
<key>Timeout</key>
|
||||
<integer>15</integer>
|
||||
<integer>0</integer>
|
||||
</dict>
|
||||
<key>Debug</key>
|
||||
<dict>
|
||||
|
|
@ -1063,7 +1063,7 @@
|
|||
<key>Security</key>
|
||||
<dict>
|
||||
<key>AllowSetDefault</key>
|
||||
<true/>
|
||||
<false/>
|
||||
<key>ApECID</key>
|
||||
<integer>0</integer>
|
||||
<key>AuthRestart</key>
|
||||
|
|
@ -1083,7 +1083,7 @@
|
|||
<key>PasswordSalt</key>
|
||||
<data></data>
|
||||
<key>ScanPolicy</key>
|
||||
<integer>17761027</integer>
|
||||
<integer>18809603</integer>
|
||||
<key>SecureBootModel</key>
|
||||
<string>Disabled</string>
|
||||
<key>Vault</key>
|
||||
|
|
@ -1189,7 +1189,7 @@
|
|||
<key>SystemAudioVolume</key>
|
||||
<data>Rg==</data>
|
||||
<key>boot-args</key>
|
||||
<string>-v keepsyms=1 amfi_get_out_of_my_way=1 tlbto_us=0 vti=9</string>
|
||||
<string>keepsyms=1</string>
|
||||
<key>csr-active-config</key>
|
||||
<data>Jg8=</data>
|
||||
<key>prev-lang:kbd</key>
|
||||
|
|
@ -1260,11 +1260,13 @@
|
|||
<key>AdviseFeatures</key>
|
||||
<false/>
|
||||
<key>MLB</key>
|
||||
<string>C02119700QXJG36JC</string>
|
||||
<string>C02717306J9JG361M</string>
|
||||
<key>MaxBIOSVersion</key>
|
||||
<false/>
|
||||
<key>ProcessorType</key>
|
||||
<integer>0</integer>
|
||||
<key>ROM</key>
|
||||
<string>0022412e3d4a</string>
|
||||
<data>m7zhIYfl</data>
|
||||
<key>SpoofVendor</key>
|
||||
<true/>
|
||||
<key>SystemMemoryStatus</key>
|
||||
|
|
@ -1272,9 +1274,9 @@
|
|||
<key>SystemProductName</key>
|
||||
<string>iMacPro1,1</string>
|
||||
<key>SystemSerialNumber</key>
|
||||
<string>C02FPBZPHX87</string>
|
||||
<string>C02TM2ZBHX87</string>
|
||||
<key>SystemUUID</key>
|
||||
<string>213FA768-A62C-4299-8598-47AA666E436F</string>
|
||||
<string>007076A6-F2A2-4461-BBE5-BAD019F8025A</string>
|
||||
</dict>
|
||||
<key>UpdateDataHub</key>
|
||||
<true/>
|
||||
|
|
@ -1869,7 +1871,7 @@
|
|||
<key>ReloadOptionRoms</key>
|
||||
<false/>
|
||||
<key>RequestBootVarRouting</key>
|
||||
<true/>
|
||||
<false/>
|
||||
<key>ResizeGpuBars</key>
|
||||
<integer>-1</integer>
|
||||
<key>ResizeUsePciRbIo</key>
|
||||
|
|
@ -1,15 +1,19 @@
|
|||
services:
|
||||
osx:
|
||||
macos:
|
||||
image: dockurr/macos
|
||||
container_name: macos
|
||||
environment:
|
||||
VERSION: "sonoma"
|
||||
VERSION: "14"
|
||||
devices:
|
||||
- /dev/kvm
|
||||
- /dev/net/tun
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
ports:
|
||||
- 8006:8006
|
||||
- 5900:5900/tcp
|
||||
- 5900:5900/udp
|
||||
volumes:
|
||||
- ./macos:/storage
|
||||
restart: always
|
||||
stop_grace_period: 2m
|
||||
|
|
|
|||
103
kubernetes.yml
103
kubernetes.yml
|
|
@ -1,73 +1,86 @@
|
|||
---
|
||||
apiVersion: v1
|
||||
kind: PersistentVolumeClaim
|
||||
metadata:
|
||||
name: macos-pvc
|
||||
spec:
|
||||
accessModes:
|
||||
- ReadWriteOnce
|
||||
- ReadWriteOnce
|
||||
resources:
|
||||
requests:
|
||||
storage: 32Gi
|
||||
storage: 64Gi
|
||||
---
|
||||
apiVersion: v1
|
||||
kind: Pod
|
||||
apiVersion: apps/v1
|
||||
kind: Deployment
|
||||
metadata:
|
||||
name: macos
|
||||
labels:
|
||||
name: macos
|
||||
spec:
|
||||
terminationGracePeriodSeconds: 120 # the Kubernetes default is 30 seconds and it may be not enough
|
||||
containers:
|
||||
- name: macos
|
||||
image: dockurr/macos
|
||||
ports:
|
||||
- containerPort: 8006
|
||||
protocol: TCP
|
||||
- containerPort: 5000
|
||||
protocol: TCP
|
||||
- containerPort: 5000
|
||||
protocol: UDP
|
||||
resources:
|
||||
limits:
|
||||
devices.kubevirt.io/kvm: 1
|
||||
securityContext:
|
||||
privileged: true
|
||||
env:
|
||||
- name: RAM_SIZE
|
||||
value: 3G
|
||||
- name: CPU_CORES
|
||||
value: "2"
|
||||
replicas: 1
|
||||
selector:
|
||||
matchLabels:
|
||||
app: macos
|
||||
template:
|
||||
metadata:
|
||||
labels:
|
||||
app: macos
|
||||
spec:
|
||||
containers:
|
||||
- name: macos
|
||||
image: dockurr/macos
|
||||
env:
|
||||
- name: VERSION
|
||||
value: "14"
|
||||
- name: DISK_SIZE
|
||||
value: "32G"
|
||||
volumeMounts:
|
||||
value: "64G"
|
||||
ports:
|
||||
- containerPort: 8006
|
||||
name: http
|
||||
protocol: TCP
|
||||
- containerPort: 5900
|
||||
name: vnc
|
||||
protocol: TCP
|
||||
securityContext:
|
||||
capabilities:
|
||||
add:
|
||||
- NET_ADMIN
|
||||
privileged: true
|
||||
volumeMounts:
|
||||
- mountPath: /storage
|
||||
name: storage
|
||||
volumes:
|
||||
- name: storage
|
||||
persistentVolumeClaim:
|
||||
claimName: macos-pvc
|
||||
- mountPath: /dev/kvm
|
||||
name: dev-kvm
|
||||
- mountPath: /dev/net/tun
|
||||
name: dev-tun
|
||||
terminationGracePeriodSeconds: 120
|
||||
volumes:
|
||||
- name: storage
|
||||
persistentVolumeClaim:
|
||||
claimName: macos-pvc
|
||||
- hostPath:
|
||||
path: /dev/kvm
|
||||
name: dev-kvm
|
||||
- hostPath:
|
||||
path: /dev/net/tun
|
||||
type: CharDevice
|
||||
name: dev-tun
|
||||
---
|
||||
apiVersion: v1
|
||||
kind: Service
|
||||
metadata:
|
||||
name: macos
|
||||
spec:
|
||||
type: NodePort
|
||||
selector:
|
||||
name: macos
|
||||
internalTrafficPolicy: Cluster
|
||||
ports:
|
||||
- name: tcp-8006
|
||||
protocol: TCP
|
||||
- name: http
|
||||
port: 8006
|
||||
targetPort: 8006
|
||||
nodePort: 48006
|
||||
- name: tcp-5900
|
||||
protocol: TCP
|
||||
targetPort: 8006
|
||||
- name: vnc
|
||||
port: 5900
|
||||
protocol: TCP
|
||||
targetPort: 5900
|
||||
nodePort: 43389
|
||||
- name: udp-5900
|
||||
protocol: UDP
|
||||
port: 5900
|
||||
targetPort: 5900
|
||||
nodePort: 43388
|
||||
selector:
|
||||
app: macos
|
||||
type: ClusterIP
|
||||
|
|
|
|||
234
readme.md
234
readme.md
|
|
@ -1,4 +1,4 @@
|
|||
<h1 align="center">OSX<br />
|
||||
<h1 align="center">macOS<br />
|
||||
<div align="center">
|
||||
<a href="https://github.com/dockur/macos/"><img src="https://github.com/dockur/macos/raw/master/.github/logo.png" title="Logo" style="max-width:100%;" width="128" /></a>
|
||||
</div>
|
||||
|
|
@ -7,21 +7,22 @@
|
|||
[![Build]][build_url]
|
||||
[![Version]][tag_url]
|
||||
[![Size]][tag_url]
|
||||
[![Package]][pkg_url]
|
||||
[![Pulls]][hub_url]
|
||||
|
||||
</div></h1>
|
||||
|
||||
OSX (macOS) inside a Docker container.
|
||||
MacOS inside a Docker container.
|
||||
|
||||
## Features
|
||||
## Features ✨
|
||||
|
||||
- KVM acceleration
|
||||
- Image downloader
|
||||
- Web-based viewer
|
||||
- Automatic download
|
||||
|
||||
## Usage
|
||||
## Usage 🐳
|
||||
|
||||
Via Docker Compose:
|
||||
##### Via Docker Compose:
|
||||
|
||||
```yaml
|
||||
services:
|
||||
|
|
@ -29,99 +30,112 @@ services:
|
|||
image: dockurr/macos
|
||||
container_name: macos
|
||||
environment:
|
||||
VERSION: "sonoma"
|
||||
VERSION: "14"
|
||||
devices:
|
||||
- /dev/kvm
|
||||
- /dev/net/tun
|
||||
cap_add:
|
||||
- NET_ADMIN
|
||||
ports:
|
||||
- 8006:8006
|
||||
- 5900:5900/tcp
|
||||
- 5900:5900/udp
|
||||
volumes:
|
||||
- ./macos:/storage
|
||||
restart: always
|
||||
stop_grace_period: 2m
|
||||
```
|
||||
|
||||
Via Docker CLI:
|
||||
##### Via Docker CLI:
|
||||
|
||||
```bash
|
||||
docker run -it --rm -p 8006:8006 --device=/dev/kvm --cap-add NET_ADMIN --stop-timeout 120 dockurr/macos
|
||||
docker run -it --rm --name macos -e "VERSION=14" -p 8006:8006 --device=/dev/kvm --device=/dev/net/tun --cap-add NET_ADMIN -v "${PWD:-.}/macos:/storage" --stop-timeout 120 docker.io/dockurr/macos
|
||||
```
|
||||
|
||||
Via Kubernetes:
|
||||
##### Via Kubernetes:
|
||||
|
||||
```shell
|
||||
kubectl apply -f kubernetes.yml
|
||||
kubectl apply -f https://raw.githubusercontent.com/dockur/macos/refs/heads/master/kubernetes.yml
|
||||
```
|
||||
|
||||
## FAQ
|
||||
##### Via Github Codespaces:
|
||||
|
||||
* ### How do I use it?
|
||||
[](https://codespaces.new/dockur/macos)
|
||||
|
||||
## FAQ 💬
|
||||
|
||||
### How do I use it?
|
||||
|
||||
Very simple! These are the steps:
|
||||
|
||||
- Start the container and connect to [port 8006](http://localhost:8006) using your web browser.
|
||||
|
||||
- Select `macOS Base System` by pressing the enter key to begin the installation.
|
||||
- Start the container and connect to [port 8006](http://127.0.0.1:8006/) using your web browser.
|
||||
|
||||
- Choose `Disk Utility` and then select the largest `Apple Inc. VirtIO Block Media` disk.
|
||||
|
||||
- Click the `Erase` button to format the disk, and give it any recognizable name you like.
|
||||
- Click the `Erase` button to format the disk to APFS, and give it any name you like.
|
||||
|
||||
- Close the current window and proceed the installation by clicking `Reinstall macOS`.
|
||||
|
||||
- When prompted where you want to install macOS, select the disk you just created previously.
|
||||
- When prompted where you want to install it, select the disk you created previously.
|
||||
|
||||
- There will be several reboots, select `macOS Installer` each time until it shows your own disk.
|
||||
- After all files are copied, select your region, language, and keyboard settings.
|
||||
|
||||
- After all files are copied, select your region, language, and account settings.
|
||||
- When the `Migration Assistant` wants to transfer data, select `Not now` (bottom left).
|
||||
|
||||
- Once you see the desktop, your macOS installation is ready for use.
|
||||
- On the `Apple ID` screen, select `Set Up Later` (bottom left) and then proceed using `Skip`.
|
||||
|
||||
- On the `Create a Computer Account` screen, fill in a username and password and `Continue`.
|
||||
|
||||
Enjoy your brand new machine, and don't forget to star this repo!
|
||||
|
||||
* ### How do I select the macOS version?
|
||||
### How do I select the version of macOS?
|
||||
|
||||
By default, macOS Sonoma will be installed. But you can add the `VERSION` environment variable to your compose file, in order to specify an alternative macOS version to be downloaded:
|
||||
By default, macOS 14 (Sonoma) will be installed, but you can add the `VERSION` environment variable in order to specify an alternative:
|
||||
|
||||
```yaml
|
||||
environment:
|
||||
VERSION: "sonoma"
|
||||
VERSION: "15"
|
||||
```
|
||||
|
||||
Select from the values below:
|
||||
|
||||
| **Value** | **Version** |
|
||||
|----|-----|
|
||||
| `sonoma` | macOS Sonoma |
|
||||
| `ventura` | macOS Ventura |
|
||||
| `monterey` | macOS Monterey |
|
||||
| `big-sur` | macOS Big Sur |
|
||||
| **Value** | **Version** | **Name** |
|
||||
|-------------|----------------|------------------|
|
||||
| `15` | macOS 15 | Sequoia |
|
||||
| `14` | macOS 14 | Sonoma |
|
||||
| `13` | macOS 13 | Ventura |
|
||||
| `12` | macOS 12 | Monterey |
|
||||
| `11` | macOS 11 | Big Sur |
|
||||
|
||||
* ### How do I change the storage location?
|
||||
> [!NOTE]
|
||||
> Support for macOS 15 (Sequoia) is still in its infancy, as it does not allow you to sign in to your Apple Account yet.
|
||||
|
||||
### How do I change the storage location?
|
||||
|
||||
To change the storage location, include the following bind mount in your compose file:
|
||||
|
||||
```yaml
|
||||
volumes:
|
||||
- /var/macos:/storage
|
||||
- ./macos:/storage
|
||||
```
|
||||
|
||||
Replace the example path `/var/macos` with the desired storage folder.
|
||||
Replace the example path `./macos` with the desired storage folder or named volume.
|
||||
|
||||
* ### How do I change the size of the disk?
|
||||
### How do I change the size of the disk?
|
||||
|
||||
To expand the default size of 32 GB, add the `DISK_SIZE` setting to your compose file and set it to your preferred capacity:
|
||||
To expand the default size of 64 GB, add the `DISK_SIZE` setting to your compose file and set it to your preferred capacity:
|
||||
|
||||
```yaml
|
||||
environment:
|
||||
DISK_SIZE: "256G"
|
||||
```
|
||||
|
||||
This can also be used to resize the existing disk to a larger capacity without any data loss.
|
||||
> [!TIP]
|
||||
> This can also be used to resize the existing disk to a larger capacity without any data loss.
|
||||
|
||||
* ### How do I change the amount of CPU or RAM?
|
||||
### How do I change the amount of CPU or RAM?
|
||||
|
||||
By default, the container will be allowed to use a maximum of 2 CPU cores and 3 GB of RAM.
|
||||
By default, macOS will be allowed to use a single CPU core and 4 GB of RAM.
|
||||
|
||||
If you want to adjust this, you can specify the desired amount using the following environment variables:
|
||||
|
||||
|
|
@ -131,39 +145,161 @@ kubectl apply -f kubernetes.yml
|
|||
CPU_CORES: "4"
|
||||
```
|
||||
|
||||
Please note that macOS requires the CPU core count to always be a power of 2.
|
||||
> [!IMPORTANT]
|
||||
> If your system has an AMD processor (instead of Intel), it is not advisable to enable multiple cores before the installation is completed and you have verified that everything runs stable for a while. Because in many cases it will introduce issues, which are difficult to pinpoint if you do not have experience with its behavior on a single core first.
|
||||
|
||||
* ### How do I verify if my system supports KVM?
|
||||
### How do I assign an individual IP address to the container?
|
||||
|
||||
To verify if your system supports KVM, run the following commands:
|
||||
By default, the container uses bridge networking, which shares the IP address with the host.
|
||||
|
||||
If you want to assign an individual IP address to the container, you can create a macvlan network as follows:
|
||||
|
||||
```bash
|
||||
docker network create -d macvlan \
|
||||
--subnet=192.168.0.0/24 \
|
||||
--gateway=192.168.0.1 \
|
||||
--ip-range=192.168.0.100/28 \
|
||||
-o parent=eth0 vlan
|
||||
```
|
||||
|
||||
Be sure to modify these values to match your local subnet.
|
||||
|
||||
Once you have created the network, change your compose file to look as follows:
|
||||
|
||||
```yaml
|
||||
services:
|
||||
macos:
|
||||
container_name: macos
|
||||
..<snip>..
|
||||
networks:
|
||||
vlan:
|
||||
ipv4_address: 192.168.0.100
|
||||
|
||||
networks:
|
||||
vlan:
|
||||
external: true
|
||||
```
|
||||
|
||||
An added benefit of this approach is that you won't have to perform any port mapping anymore, since all ports will be exposed by default.
|
||||
|
||||
> [!IMPORTANT]
|
||||
> This IP address won't be accessible from the Docker host due to the design of macvlan, which doesn't permit communication between the two. If this is a concern, you need to create a [second macvlan](https://blog.oddbit.com/post/2018-03-12-using-docker-macvlan-networks/#host-access) as a workaround.
|
||||
|
||||
### How can macOS acquire an IP address from my router?
|
||||
|
||||
After configuring the container for [macvlan](#how-do-i-assign-an-individual-ip-address-to-the-container), it is possible for macOS to become part of your home network by requesting an IP from your router, just like your other devices.
|
||||
|
||||
To enable this mode, in which the container and macOS will have separate IP addresses, add the following lines to your compose file:
|
||||
|
||||
```yaml
|
||||
environment:
|
||||
DHCP: "Y"
|
||||
devices:
|
||||
- /dev/vhost-net
|
||||
device_cgroup_rules:
|
||||
- 'c *:* rwm'
|
||||
```
|
||||
|
||||
### How do I pass-through a disk?
|
||||
|
||||
It is possible to pass-through disk devices or partitions directly by adding them to your compose file in this way:
|
||||
|
||||
```yaml
|
||||
devices:
|
||||
- /dev/sdb:/disk1
|
||||
- /dev/sdc1:/disk2
|
||||
```
|
||||
|
||||
Use `/disk1` if you want it to become your main drive, and use `/disk2` and higher to add them as secondary drives.
|
||||
|
||||
### How do I pass-through a USB device?
|
||||
|
||||
To pass-through a USB device, first lookup its vendor and product id via the `lsusb` command, then add them to your compose file like this:
|
||||
|
||||
```yaml
|
||||
environment:
|
||||
ARGUMENTS: "-device usb-host,vendorid=0x1234,productid=0x1234"
|
||||
devices:
|
||||
- /dev/bus/usb
|
||||
```
|
||||
|
||||
### How do I share files with the host?
|
||||
|
||||
To share files with the host, add the following volume to your compose file:
|
||||
|
||||
```yaml
|
||||
volumes:
|
||||
- ./example:/shared
|
||||
```
|
||||
|
||||
Then start macOS and execute the following command:
|
||||
|
||||
```shell
|
||||
sudo -S mount_9p shared
|
||||
```
|
||||
|
||||
In Finder’s menu bar, click on “Go – Computer” to access this shared folder, it will show the contents of `./example`.
|
||||
|
||||
### How do I verify if my system supports KVM?
|
||||
|
||||
First check if your software is compatible using this chart:
|
||||
|
||||
| **Product** | **Linux** | **Win11** | **Win10** | **macOS** |
|
||||
|---|---|---|---|---|
|
||||
| Docker CLI | ✅ | ✅ | ❌ | ❌ |
|
||||
| Docker Desktop | ❌ | ✅ | ❌ | ❌ |
|
||||
| Podman CLI | ✅ | ✅ | ❌ | ❌ |
|
||||
| Podman Desktop | ✅ | ✅ | ❌ | ❌ |
|
||||
|
||||
After that you can run the following commands in Linux to check your system:
|
||||
|
||||
```bash
|
||||
sudo apt install cpu-checker
|
||||
sudo kvm-ok
|
||||
```
|
||||
|
||||
If you receive an error from `kvm-ok` indicating that KVM acceleration can't be used, check the virtualization settings in the BIOS.
|
||||
If you receive an error from `kvm-ok` indicating that KVM cannot be used, please check whether:
|
||||
|
||||
* ### Is this project legal?
|
||||
- the virtualization extensions (`Intel VT-x` or `AMD SVM`) are enabled in your BIOS.
|
||||
|
||||
Yes, this project contains only open-source code and does not distribute any copyrighted material. So under all applicable laws, this project will be considered legal.
|
||||
- you enabled "nested virtualization" if you are running the container inside a virtual machine.
|
||||
|
||||
## Acknowledgements
|
||||
- you are not using a cloud provider, as most of them do not allow nested virtualization for their VPS's.
|
||||
|
||||
Special thanks to [OSX-KVM](https://github.com/kholia/OSX-KVM), [KVM-Opencore](https://github.com/thenickdude/KVM-Opencore) and [seitenca](https://github.com/seitenca), this project would not exist without their invaluable work.
|
||||
If you did not receive any error from `kvm-ok` but the container still complains about a missing KVM device, it could help to add `privileged: true` to your compose file (or `sudo` to your `docker` command) to rule out any permission issue.
|
||||
|
||||
## Stars
|
||||
### How do I run Windows in a container?
|
||||
|
||||
You can use [dockur/windows](https://github.com/dockur/windows) for that. It shares many of the same features, and even has completely automatic installation.
|
||||
|
||||
### How do I run a Linux desktop in a container?
|
||||
|
||||
You can use [qemus/qemu](https://github.com/qemus/qemu) in that case.
|
||||
|
||||
### Is this project legal?
|
||||
|
||||
Yes, this project contains only open-source code and does not distribute any copyrighted material. Neither does it try to circumvent any copyright protection measures. So under all applicable laws, this project will be considered legal.
|
||||
|
||||
However, by installing Apple's macOS, you must accept their end-user license agreement, which does not permit installation on non-official hardware. So only run this container on hardware sold by Apple, as any other use will be a violation of their terms and conditions.
|
||||
|
||||
## Acknowledgements 🙏
|
||||
|
||||
Special thanks to [seitenca](https://github.com/seitenca), this project would not exist without her invaluable work.
|
||||
|
||||
## Stars 🌟
|
||||
[](https://starchart.cc/dockur/macos)
|
||||
|
||||
## Disclaimer
|
||||
## Disclaimer ⚖️
|
||||
|
||||
The product names, logos, brands, and other trademarks referred to within this project are the property of their respective trademark holders. This project is not affiliated, sponsored, or endorsed by Apple Inc.
|
||||
*Only run this container on Apple hardware, any other use is not permitted by their EULA. The product names, logos, brands, and other trademarks referred to within this project are the property of their respective trademark holders. This project is not affiliated, sponsored, or endorsed by Apple Inc.*
|
||||
|
||||
[build_url]: https://github.com/dockur/macos/
|
||||
[hub_url]: https://hub.docker.com/r/dockurr/macos/
|
||||
[tag_url]: https://hub.docker.com/r/dockurr/macos/tags
|
||||
[pkg_url]: https://github.com/dockur/macos/pkgs/container/macos
|
||||
|
||||
[Build]: https://github.com/dockur/macos/actions/workflows/build.yml/badge.svg
|
||||
[Size]: https://img.shields.io/docker/image-size/dockurr/macos/latest?color=066da5&label=size
|
||||
[Pulls]: https://img.shields.io/docker/pulls/dockurr/macos.svg?style=flat&label=pulls&logo=docker
|
||||
[Version]: https://img.shields.io/docker/v/dockurr/macos/latest?arch=amd64&sort=semver&color=066da5
|
||||
[Package]: https://img.shields.io/badge/dynamic/json?url=https%3A%2F%2Fipitio.github.io%2Fbackage%2Fdockur%2Fmacos%2Fmacos.json&query=%24.downloads&logo=github&style=flat&color=066da5&label=pulls
|
||||
|
|
|
|||
238
src/boot.sh
238
src/boot.sh
|
|
@ -2,35 +2,32 @@
|
|||
set -Eeuo pipefail
|
||||
|
||||
# Docker environment variables
|
||||
: "${BOOT_MODE:="full"}" # Boot mode
|
||||
: "${SECURE:="off"}" # Secure boot
|
||||
: "${BOOT_MODE:="macos"}" # Boot mode
|
||||
|
||||
BOOT_DESC=""
|
||||
BOOT_OPTS=""
|
||||
BOOT_DRIVE_ID="OpenCoreBoot"
|
||||
BOOT_DRIVE="/images/OpenCore.img"
|
||||
|
||||
SECURE="off"
|
||||
OVMF="/usr/share/OVMF"
|
||||
|
||||
case "${BOOT_MODE,,}" in
|
||||
full)
|
||||
BOOT_DESC=" 1920x1080"
|
||||
msg="Configuring boot..."
|
||||
html "$msg"
|
||||
[[ "$DEBUG" == [Yy1]* ]] && echo "$msg"
|
||||
|
||||
case "${HEIGHT,,}" in
|
||||
"1080" )
|
||||
DEST="$PROCESS"
|
||||
ROM="OVMF_CODE.fd"
|
||||
VARS="OVMF_VARS-1920x1080.fd"
|
||||
;;
|
||||
hd)
|
||||
BOOT_DESC=" 1024x768"
|
||||
"768" )
|
||||
DEST="${PROCESS}_hd"
|
||||
ROM="OVMF_CODE.fd"
|
||||
VARS="OVMF_VARS-1024x768.fd"
|
||||
;;
|
||||
default)
|
||||
BOOT_DESC=""
|
||||
*)
|
||||
ROM="OVMF_CODE.fd"
|
||||
VARS="OVMF_VARS.fd"
|
||||
;;
|
||||
*)
|
||||
error "Unknown BOOT_MODE, value \"${BOOT_MODE}\" is not recognized!"
|
||||
exit 33
|
||||
DEST="${PROCESS}_${HEIGHT}"
|
||||
;;
|
||||
esac
|
||||
|
||||
|
|
@ -44,20 +41,213 @@ osk=$(echo "bheuneqjbexolgurfrjbeqfthneqrqcyrnfrqbagfgrny(p)NccyrPbzchgreVap" |
|
|||
BOOT_OPTS+=" -device isa-applesmc,osk=$osk"
|
||||
|
||||
# OVMF
|
||||
BOOT_OPTS+=" -drive if=pflash,format=raw,readonly=on,file=$OVMF/$ROM"
|
||||
BOOT_OPTS+=" -drive if=pflash,format=raw,file=$OVMF/$VARS"
|
||||
DEST="$STORAGE/$DEST"
|
||||
|
||||
# OpenCoreBoot
|
||||
DISK_OPTS+=" -device virtio-blk-pci,drive=${BOOT_DRIVE_ID},scsi=off,bus=pcie.0,addr=0x5,iothread=io2,bootindex=$BOOT_INDEX"
|
||||
DISK_OPTS+=" -drive file=$BOOT_DRIVE,id=$BOOT_DRIVE_ID,format=raw,cache=$DISK_CACHE,aio=$DISK_IO,readonly=on,if=none"
|
||||
if [ ! -s "$DEST.rom" ] || [ ! -f "$DEST.rom" ]; then
|
||||
[ ! -s "$OVMF/$ROM" ] || [ ! -f "$OVMF/$ROM" ] && error "UEFI boot file ($OVMF/$ROM) not found!" && exit 44
|
||||
if [[ "${LOGO:-}" == [Nn]* ]]; then
|
||||
cp "$OVMF/$ROM" "$DEST.tmp"
|
||||
else
|
||||
if ! /run/utk.bin "$OVMF/$ROM" replace_ffs LogoDXE "/var/www/img/${PROCESS,,}.ffs" save "$DEST.tmp"; then
|
||||
warn "failed to add custom logo to BIOS!"
|
||||
cp "$OVMF/$ROM" "$DEST.tmp"
|
||||
fi
|
||||
fi
|
||||
mv "$DEST.tmp" "$DEST.rom"
|
||||
! setOwner "$DEST.rom" && error "Failed to set the owner for \"$DEST.rom\" !"
|
||||
fi
|
||||
|
||||
if [ ! -s "$DEST.vars" ] || [ ! -f "$DEST.vars" ]; then
|
||||
[ ! -s "$OVMF/$VARS" ] || [ ! -f "$OVMF/$VARS" ]&& error "UEFI vars file ($OVMF/$VARS) not found!" && exit 45
|
||||
cp "$OVMF/$VARS" "$DEST.tmp"
|
||||
mv "$DEST.tmp" "$DEST.vars"
|
||||
! setOwner "$DEST.vars" && error "Failed to set the owner for \"$DEST.vars\" !"
|
||||
fi
|
||||
|
||||
BOOT_OPTS+=" -drive if=pflash,format=raw,readonly=on,file=$DEST.rom"
|
||||
BOOT_OPTS+=" -drive if=pflash,format=raw,file=$DEST.vars"
|
||||
|
||||
IMG="$STORAGE/boot.img"
|
||||
|
||||
if [ ! -f "$IMG" ]; then
|
||||
|
||||
FILE="OpenCore.img"
|
||||
IMG="/tmp/$FILE"
|
||||
rm -f "$IMG"
|
||||
|
||||
# OpenCoreBoot
|
||||
ISO="/opencore.iso"
|
||||
OUT="/tmp/extract"
|
||||
|
||||
rm -rf "$OUT"
|
||||
mkdir -p "$OUT"
|
||||
|
||||
msg="Building boot image"
|
||||
info "$msg..." && html "$msg..."
|
||||
|
||||
[ ! -f "$ISO" ] && gzip -dk "$ISO.gz"
|
||||
|
||||
if [ ! -f "$ISO" ] || [ ! -s "$ISO" ]; then
|
||||
error "Could not find image file \"$ISO\"." && exit 10
|
||||
fi
|
||||
|
||||
START=$(sfdisk -l "$ISO" | grep -i -m 1 "EFI System" | awk '{print $2}')
|
||||
mcopy -bspmQ -i "$ISO@@${START}S" ::EFI "$OUT"
|
||||
|
||||
CFG="$OUT/EFI/OC/config.plist"
|
||||
|
||||
PLIST="/assets/config.plist"
|
||||
[ -f "/config.plist" ] && PLIST="/config.plist"
|
||||
|
||||
cp "$PLIST" "$CFG"
|
||||
|
||||
ROM="${MAC//[^[:alnum:]]/}"
|
||||
ROM="${ROM,,}"
|
||||
BROM=$(echo "$ROM" | xxd -r -p | base64)
|
||||
RESOLUTION="${WIDTH}x${HEIGHT}@32"
|
||||
|
||||
sed -r -i -e 's|<data>m7zhIYfl</data>|<data>'"${BROM}"'</data>|g' "$CFG"
|
||||
sed -r -i -e 's|<string>iMacPro1,1</string>|<string>'"${MODEL}"'</string>|g' "$CFG"
|
||||
sed -r -i -e 's|<string>C02TM2ZBHX87</string>|<string>'"${SN}"'</string>|g' "$CFG"
|
||||
sed -r -i -e 's|<string>C02717306J9JG361M</string>|<string>'"${MLB}"'</string>|g' "$CFG"
|
||||
sed -r -i -e 's|<string>1920x1080@32</string>|<string>'"${RESOLUTION}"'</string>|g' "$CFG"
|
||||
sed -r -i -e 's|<string>007076A6-F2A2-4461-BBE5-BAD019F8025A</string>|<string>'"${UUID}"'</string>|g' "$CFG"
|
||||
|
||||
# Build image
|
||||
|
||||
MB=256
|
||||
CLUSTER=4
|
||||
START=2048
|
||||
SECTOR=512
|
||||
FIRST_LBA=34
|
||||
|
||||
SIZE=$(( MB*1024*1024 ))
|
||||
OFFSET=$(( START*SECTOR ))
|
||||
TOTAL=$(( SIZE-(FIRST_LBA*SECTOR) ))
|
||||
LAST_LBA=$(( TOTAL/SECTOR ))
|
||||
COUNT=$(( LAST_LBA-(START-1) ))
|
||||
|
||||
if ! truncate -s "$SIZE" "$IMG"; then
|
||||
rm -f "$IMG"
|
||||
error "Could not allocate space to create image $IMG ." && exit 11
|
||||
fi
|
||||
|
||||
PART="/tmp/partition.fdisk"
|
||||
|
||||
{ echo "label: gpt"
|
||||
echo "label-id: 1ACB1E00-3B8F-4B2A-86A4-D99ED21DCAEB"
|
||||
echo "device: $FILE"
|
||||
echo "unit: sectors"
|
||||
echo "first-lba: $FIRST_LBA"
|
||||
echo "last-lba: $LAST_LBA"
|
||||
echo "sector-size: $SECTOR"
|
||||
echo ""
|
||||
echo "${FILE}1 : start=$START, size=$COUNT, type=C12A7328-F81F-11D2-BA4B-00A0C93EC93B, uuid=05157F6E-0AE8-4D1A-BEA5-AC172453D02C, name=\"primary\""
|
||||
|
||||
} > "$PART"
|
||||
|
||||
sfdisk -q "$IMG" < "$PART"
|
||||
echo "drive c: file=\"$IMG\" partition=0 offset=$OFFSET" > /etc/mtools.conf
|
||||
|
||||
mformat -F -M "$SECTOR" -c "$CLUSTER" -T "$COUNT" -v "EFI" "C:"
|
||||
mcopy -bspmQ "$OUT/EFI" "C:"
|
||||
|
||||
rm -rf "$OUT"
|
||||
|
||||
info ""
|
||||
info "Model: $MODEL"
|
||||
info "Rom: $ROM"
|
||||
info "Serial: $SN"
|
||||
info "Board: $MLB"
|
||||
info ""
|
||||
|
||||
fi
|
||||
|
||||
! setOwner "$IMG" && error "Failed to set the owner for \"$IMG\" !"
|
||||
|
||||
BOOT_DRIVE_ID="OpenCore"
|
||||
|
||||
DISK_OPTS+=" -device virtio-blk-pci,drive=${BOOT_DRIVE_ID},bus=pcie.0,addr=0x5,bootindex=$BOOT_INDEX"
|
||||
DISK_OPTS+=" -drive file=$IMG,id=$BOOT_DRIVE_ID,format=raw,cache=unsafe,readonly=on,if=none"
|
||||
|
||||
CPU_VENDOR=$(lscpu | awk '/Vendor ID/{print $3}')
|
||||
CPU_FLAGS="vendor=GenuineIntel,vmware-cpuid-freq=on,-pdpe1gb"
|
||||
DEFAULT_FLAGS="vendor=GenuineIntel,vmx=off,vmware-cpuid-freq=on,-pdpe1gb"
|
||||
|
||||
if [[ "$CPU_VENDOR" == "AuthenticAMD" || "${KVM:-}" == [Nn]* ]]; then
|
||||
|
||||
if [ -z "${CPU_MODEL:-}" ]; then
|
||||
|
||||
case "${VERSION,,}" in
|
||||
"ventura" | "13"* )
|
||||
CPU_MODEL="Haswell-noTSX" ;;
|
||||
"monterey" | "12"* )
|
||||
CPU_MODEL="Haswell-noTSX" ;;
|
||||
"bigsur" | "big-sur" | "11"* )
|
||||
CPU_MODEL="Haswell-noTSX" ;;
|
||||
"catalina" | "10"* )
|
||||
CPU_MODEL="Haswell-noTSX" ;;
|
||||
*)
|
||||
CPU_MODEL="Skylake-Client-v4"
|
||||
DEFAULT_FLAGS+=",-spec-ctrl"
|
||||
;;
|
||||
esac
|
||||
|
||||
fi
|
||||
|
||||
if [[ "${KVM:-}" == [Nn]* ]] || [[ "${ARCH,,}" != "amd64" ]] || [[ "$OSTYPE" =~ ^darwin ]]; then
|
||||
DEFAULT_FLAGS+=",-pcid,-tsc-deadline,-invpcid,-xsavec,-xsaves,+ssse3,+sse4.2,+popcnt,+avx,+avx2,+aes,+fma,+bmi1,+bmi2,+smep,+xsave,+xsaveopt,+xgetbv1,+movbe,+rdrand,check"
|
||||
else
|
||||
DEFAULT_FLAGS+=",+pcid,+ssse3,+sse4.2,+popcnt,+avx,+avx2,+aes,+fma,+bmi1,+bmi2,+smep,+xsave,+xsavec,+xsaves,+xsaveopt,+xgetbv1,+movbe,+rdrand,check"
|
||||
fi
|
||||
|
||||
if [[ "$CPU_VENDOR" != "GenuineIntel" ]]; then
|
||||
CPU_MODEL="Haswell-noTSX"
|
||||
fi
|
||||
|
||||
if [ -z "${CPU_FLAGS:-}" ]; then
|
||||
CPU_FLAGS="$DEFAULT_FLAGS"
|
||||
else
|
||||
CPU_FLAGS="$DEFAULT_FLAGS,$CPU_FLAGS"
|
||||
fi
|
||||
|
||||
SM_BIOS=""
|
||||
CLOCKSOURCE="tsc"
|
||||
[[ "${ARCH,,}" == "arm64" ]] && CLOCKSOURCE="arch_sys_counter"
|
||||
CLOCK="/sys/devices/system/clocksource/clocksource0/current_clocksource"
|
||||
|
||||
if [ ! -f "$CLOCK" ]; then
|
||||
warn "file \"$CLOCK\" cannot not found?"
|
||||
else
|
||||
result=$(<"$CLOCK")
|
||||
result="${result//[![:print:]]/}"
|
||||
case "${result,,}" in
|
||||
"${CLOCKSOURCE,,}" )
|
||||
if [[ "$CPU_VENDOR" == "GenuineIntel" && "$CPU_CORES" == "1" && "${KVM:-}" != [Nn]* ]]; then
|
||||
CPU_CORES="2"
|
||||
fi ;;
|
||||
"kvm-clock" ) warn "Nested KVM virtualization detected, this might cause issues running macOS!" ;;
|
||||
"hyperv_clocksource_tsc_page" ) info "Nested Hyper-V virtualization detected, this might cause issues running macOS!" ;;
|
||||
"hpet" ) warn "unsupported clock source detected: '$result'. Please set host clock source to '$CLOCKSOURCE', otherwise it will cause issues running macOS!" ;;
|
||||
*) warn "unexpected clock source detected: '$result'. Please set host clock source to '$CLOCKSOURCE', otherwise it will cause issues running macOS!" ;;
|
||||
esac
|
||||
fi
|
||||
|
||||
case "$CPU_CORES" in
|
||||
"" | "0" | "3" ) CPU_CORES="2" ;;
|
||||
"5" ) CPU_CORES="4" ;;
|
||||
"9" ) CPU_CORES="8" ;;
|
||||
esac
|
||||
|
||||
case "$CPU_CORES" in
|
||||
"1" | "2" | "4" | "8" ) SMP="$CPU_CORES,sockets=1,dies=1,cores=$CPU_CORES,threads=1" ;;
|
||||
"6" | "7" ) SMP="$CPU_CORES,sockets=3,dies=1,cores=2,threads=1" ;;
|
||||
"10" | "11" ) SMP="$CPU_CORES,sockets=5,dies=1,cores=2,threads=1" ;;
|
||||
"12" | "13" ) SMP="$CPU_CORES,sockets=3,dies=1,cores=4,threads=1" ;;
|
||||
"14" | "15" ) SMP="$CPU_CORES,sockets=7,dies=1,cores=2,threads=1" ;;
|
||||
"16" | "32" | "64" ) SMP="$CPU_CORES,sockets=1,dies=1,cores=$CPU_CORES,threads=1" ;;
|
||||
*)
|
||||
error "Invalid amount of CPU_CORES, value \"${CPU_CORES}\" is not a power of 2!" && exit 35
|
||||
;;
|
||||
esac
|
||||
|
||||
USB="nec-usb-xhci,id=xhci"
|
||||
USB+=" -device usb-kbd,bus=xhci.0"
|
||||
USB+=" -global nec-usb-xhci.msi=off"
|
||||
|
|
|
|||
48
src/build.sh
48
src/build.sh
|
|
@ -1,48 +0,0 @@
|
|||
#!/usr/bin/env bash
|
||||
set -Eeuo pipefail
|
||||
|
||||
function msg() {
|
||||
local txt="$1"
|
||||
local bold="\x1b[1m"
|
||||
local normal="\x1b[0m"
|
||||
echo -e "${bold}### ${txt}${normal}"
|
||||
}
|
||||
|
||||
function cleanup() {
|
||||
if test "$GUESTFISH_PID" != ""; then
|
||||
guestfish --remote -- exit >/dev/null 2>&1 || true
|
||||
fi
|
||||
}
|
||||
|
||||
function fish() {
|
||||
echo "#" "$@"
|
||||
guestfish --remote -- "$@" || exit 1
|
||||
}
|
||||
|
||||
rm -rf /images
|
||||
msg "Mounting template ISO..."
|
||||
|
||||
trap 'cleanup' EXIT
|
||||
|
||||
export LIBGUESTFS_BACKEND=direct
|
||||
# shellcheck disable=SC2046
|
||||
eval $(guestfish --listen)
|
||||
if test "$GUESTFISH_PID" = ""; then
|
||||
echo "ERROR: Starting Guestfish failed!"
|
||||
exit 1
|
||||
fi
|
||||
|
||||
fish add "$1"
|
||||
fish run
|
||||
fish mount /dev/sda1 /
|
||||
fish ls /EFI
|
||||
|
||||
msg "Overriding config..."
|
||||
|
||||
fish copy-in "$2" /EFI/OC/
|
||||
fish umount-all
|
||||
|
||||
mkdir -p /images
|
||||
mv "$1" /images/OpenCore.img
|
||||
|
||||
msg "Finished succesfully!"
|
||||
11
src/entry.sh
11
src/entry.sh
|
|
@ -1,22 +1,27 @@
|
|||
#!/usr/bin/env bash
|
||||
set -Eeuo pipefail
|
||||
|
||||
: "${APP:="macOS"}"
|
||||
: "${VGA:="vmware"}"
|
||||
: "${DISK_TYPE:="blk"}"
|
||||
|
||||
APP="macOS"
|
||||
SUPPORT="https://github.com/dockur/macos"
|
||||
: "${PLATFORM:="x64"}"
|
||||
: "${SUPPORT:="https://github.com/dockur/macos"}"
|
||||
|
||||
cd /run
|
||||
|
||||
. start.sh # Startup hook
|
||||
. utils.sh # Load functions
|
||||
. reset.sh # Initialize system
|
||||
. server.sh # Start webserver
|
||||
. install.sh # Get the OSX images
|
||||
. disk.sh # Initialize disks
|
||||
. display.sh # Initialize graphics
|
||||
. network.sh # Initialize network
|
||||
. boot.sh # Configure boot
|
||||
. proc.sh # Initialize processor
|
||||
. memory.sh # Check available memory
|
||||
. config.sh # Configure arguments
|
||||
. finish.sh # Finish initialization
|
||||
|
||||
trap - ERR
|
||||
|
||||
|
|
|
|||
305
src/install.sh
305
src/install.sh
|
|
@ -2,63 +2,294 @@
|
|||
set -Eeuo pipefail
|
||||
|
||||
# Docker environment variables
|
||||
: "${VERSION:="sonoma"}" # OSX Version
|
||||
|
||||
TMP="$STORAGE/tmp"
|
||||
BASE_FILE="BaseSystem"
|
||||
: "${SN:=""}" # Device serial
|
||||
: "${MLB:=""}" # Board serial
|
||||
: "${MAC:=""}" # MAC address
|
||||
: "${UUID:=""}" # Unique ID
|
||||
: "${VERSION:=""}" # OSX Version
|
||||
: "${WIDTH:="1920"}" # Horizontal
|
||||
: "${HEIGHT:="1080"}" # Vertical
|
||||
: "${MODEL:="iMacPro1,1"}" # Device model
|
||||
|
||||
BASE_IMG_ID="InstallMedia"
|
||||
BASE_IMG="$STORAGE/base.dmg"
|
||||
BASE_TMP="$TMP/$BASE_FILE.dmg"
|
||||
|
||||
downloadImage() {
|
||||
function getRandom() {
|
||||
local length="${1}"
|
||||
local result=""
|
||||
local chars=("0" "1" "2" "3" "4" "5" "6" "7" "8" "9" "A" "B" "C" "D" "E" "F")
|
||||
|
||||
rm -rf "$TMP"
|
||||
mkdir -p "$TMP"
|
||||
for ((i=0; i<length; i++)); do
|
||||
result+="${chars[$((RANDOM % 16))]}"
|
||||
done
|
||||
|
||||
local msg="Downloading macOS ($VERSION) image"
|
||||
info "$msg..." && html "$msg..."
|
||||
echo "$result"
|
||||
return 0
|
||||
}
|
||||
|
||||
/run/progress.sh "$BASE_TMP" "" "$msg ([P])..." &
|
||||
delay() {
|
||||
|
||||
if ! /run/fetch-macOS-v2.py --action download -s "$VERSION" -n "$BASE_FILE" -o "$TMP"; then
|
||||
error "Failed to fetch macOS ($VERSION)!"
|
||||
fKill "progress.sh"
|
||||
return 1
|
||||
fi
|
||||
local i
|
||||
local delay="$1"
|
||||
local msg="Retrying failed download in X seconds..."
|
||||
|
||||
fKill "progress.sh"
|
||||
info "${msg/X/$delay}"
|
||||
|
||||
if [ ! -f "$BASE_TMP" ] || [ ! -s "$BASE_TMP" ]; then
|
||||
error "Failed to find file $BASE_TMP !"
|
||||
return 1
|
||||
fi
|
||||
|
||||
echo "$VERSION" > "$STORAGE/$PROCESS.version"
|
||||
|
||||
mv "$BASE_TMP" "$BASE_IMG"
|
||||
rm -rf "$TMP"
|
||||
for i in $(seq "$delay" -1 1); do
|
||||
html "${msg/X/$i}"
|
||||
sleep 1
|
||||
done
|
||||
|
||||
return 0
|
||||
}
|
||||
|
||||
function download() {
|
||||
local info=""
|
||||
local dest="$1"
|
||||
local board="$2"
|
||||
local version="$3"
|
||||
local type="latest"
|
||||
local appleSession=""
|
||||
local downloadLink=""
|
||||
local downloadSession=""
|
||||
local mlb="00000000000000000"
|
||||
local rc total size progress
|
||||
|
||||
local msg="Downloading macOS ${version^}"
|
||||
info "$msg recovery image..." && html "$msg..."
|
||||
|
||||
appleSession=$(curl --disable -v -H "Host: osrecovery.apple.com" \
|
||||
-H "Connection: close" \
|
||||
-A "InternetRecovery/1.0" https://osrecovery.apple.com/ 2>&1 | tr ';' '\n' | awk -F'session=|;' '{print $2}' | grep 1)
|
||||
info=$(curl --disable -s -X POST -H "Host: osrecovery.apple.com" \
|
||||
-H "Connection: close" \
|
||||
-A "InternetRecovery/1.0" \
|
||||
-b "session=\"${appleSession}\"" \
|
||||
-H "Content-Type: text/plain" \
|
||||
-d $'cid='"$(getRandom 16)"$'\nsn='"${mlb}"$'\nbid='"${board}"$'\nk='"$(getRandom 64)"$'\nfg='"$(getRandom 64)"$'\nos='"${type}" \
|
||||
https://osrecovery.apple.com/InstallationPayload/RecoveryImage | tr ' ' '\n')
|
||||
|
||||
downloadLink=$(echo "$info" | grep 'oscdn' | grep 'dmg')
|
||||
downloadSession=$(echo "$info" | grep 'expires' | grep 'dmg')
|
||||
|
||||
if [ -z "$downloadLink" ] || [ -z "$downloadSession" ]; then
|
||||
|
||||
local code="99"
|
||||
msg="Failed to connect to the Apple servers, reason:"
|
||||
|
||||
curl --silent --max-time 10 --output /dev/null --fail -H "Host: osrecovery.apple.com" -H "Connection: close" -A "InternetRecovery/1.0" https://osrecovery.apple.com/ || {
|
||||
code="$?"
|
||||
}
|
||||
|
||||
case "${code,,}" in
|
||||
"6" ) error "$msg could not resolve host!" ;;
|
||||
"7" ) error "$msg no internet connection available!" ;;
|
||||
"28" ) error "$msg connection timed out!" ;;
|
||||
"99" )
|
||||
[ -n "$info" ] && echo "$info" && echo
|
||||
error "$msg unknown error" ;;
|
||||
*) error "$msg $code" ;;
|
||||
esac
|
||||
|
||||
return 1
|
||||
fi
|
||||
|
||||
# Check if running with interactive TTY or redirected to docker log
|
||||
if [ -t 1 ]; then
|
||||
progress="--progress=bar:noscroll"
|
||||
else
|
||||
progress="--progress=dot:giga"
|
||||
fi
|
||||
|
||||
rm -f "$dest"
|
||||
/run/progress.sh "$dest" "0" "$msg ([P])..." &
|
||||
|
||||
{ wget "$downloadLink" -O "$dest" -q --header "Host: oscdn.apple.com" --header "Connection: close" --header "User-Agent: InternetRecovery/1.0" --header "Cookie: AssetToken=${downloadSession}" --timeout=30 --no-http-keep-alive --show-progress "$progress"; rc=$?; } || :
|
||||
|
||||
fKill "progress.sh"
|
||||
|
||||
if (( rc == 0 )) && [ -f "$dest" ]; then
|
||||
total=$(stat -c%s "$dest")
|
||||
size=$(formatBytes "$total")
|
||||
if [ "$total" -lt 100000 ]; then
|
||||
error "Invalid recovery image, file is only $size ?" && return 1
|
||||
fi
|
||||
html "Download finished successfully..."
|
||||
return 0
|
||||
fi
|
||||
|
||||
msg="Failed to download $downloadLink"
|
||||
(( rc == 3 )) && error "$msg , cannot write file (disk full?)" && return 1
|
||||
(( rc == 4 )) && error "$msg , network failure!" && return 1
|
||||
(( rc == 8 )) && error "$msg , server issued an error response!" && return 1
|
||||
|
||||
error "$msg , reason: $rc"
|
||||
return 1
|
||||
}
|
||||
|
||||
install() {
|
||||
|
||||
local board
|
||||
local version="$1"
|
||||
local dest="$2"
|
||||
|
||||
case "${version,,}" in
|
||||
"tahoe" | "26"* | "16"* )
|
||||
board="Mac-CFF7D910A743CAAF" ;;
|
||||
"sequoia" | "15"* )
|
||||
board="Mac-937A206F2EE63C01" ;;
|
||||
"sonoma" | "14"* )
|
||||
board="Mac-827FAC58A8FDFA22" ;;
|
||||
"ventura" | "13"* )
|
||||
board="Mac-4B682C642B45593E" ;;
|
||||
"monterey" | "12"* )
|
||||
board="Mac-B809C3757DA9BB8D" ;;
|
||||
"bigsur" | "big-sur" | "11"* )
|
||||
board="Mac-2BD1B31983FE1663" ;;
|
||||
"catalina" | "10"* )
|
||||
board="Mac-00BE6ED71E35EB86" ;;
|
||||
*)
|
||||
error "Unknown VERSION specified, value \"${version}\" is not recognized!"
|
||||
return 1 ;;
|
||||
esac
|
||||
|
||||
rm -f "$dest"
|
||||
|
||||
if ! makeDir "$STORAGE"; then
|
||||
error "Failed to create directory \"$STORAGE\" !" && return 1
|
||||
fi
|
||||
|
||||
find "$STORAGE" -maxdepth 1 -type f \( -iname '*.rom' -or -iname '*.vars' \) -delete
|
||||
find "$STORAGE" -maxdepth 1 -type f \( -iname 'data.*' -or -iname 'macos.*' \) -delete
|
||||
|
||||
if [ -f "/boot.dmg" ]; then
|
||||
cp "/boot.dmg" "$dest"
|
||||
return 0
|
||||
fi
|
||||
|
||||
local file="$STORAGE/boot.dmg"
|
||||
|
||||
if ! download "$file" "$board" "$version"; then
|
||||
delay 5
|
||||
if ! download "$file" "$board" "$version"; then
|
||||
rm -f "$file"
|
||||
exit 60
|
||||
fi
|
||||
fi
|
||||
|
||||
mv -f "$file" "$dest"
|
||||
return 0
|
||||
}
|
||||
|
||||
generateID() {
|
||||
|
||||
local file="$STORAGE/$PROCESS.id"
|
||||
|
||||
[ -n "$UUID" ] && return 0
|
||||
[ -s "$file" ] && UUID=$(<"$file")
|
||||
UUID="${UUID//[![:print:]]/}"
|
||||
[ -n "$UUID" ] && return 0
|
||||
|
||||
UUID=$(cat /proc/sys/kernel/random/uuid 2> /dev/null || uuidgen --random)
|
||||
UUID="${UUID^^}"
|
||||
UUID="${UUID//[![:print:]]/}"
|
||||
|
||||
echo "$UUID" > "$file"
|
||||
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
|
||||
|
||||
return 0
|
||||
}
|
||||
|
||||
generateAddress() {
|
||||
|
||||
local file="$STORAGE/$PROCESS.mac"
|
||||
|
||||
[ -n "$MAC" ] && return 0
|
||||
[ -s "$file" ] && MAC=$(<"$file")
|
||||
MAC="${MAC//[![:print:]]/}"
|
||||
[ -n "$MAC" ] && return 0
|
||||
|
||||
# Generate Apple MAC address based on Docker container ID in hostname
|
||||
MAC=$(echo "$HOST" | md5sum | sed 's/^\(..\)\(..\)\(..\)\(..\)\(..\).*$/00:16:cb:\3:\4:\5/')
|
||||
MAC="${MAC^^}"
|
||||
|
||||
echo "$MAC" > "$file"
|
||||
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
|
||||
|
||||
return 0
|
||||
}
|
||||
|
||||
generateSerial() {
|
||||
|
||||
local file="$STORAGE/$PROCESS.sn"
|
||||
local file2="$STORAGE/$PROCESS.mlb"
|
||||
|
||||
[ -n "$SN" ] && [ -n "$MLB" ] && return 0
|
||||
[ -s "$file" ] && SN=$(<"$file")
|
||||
[ -s "$file2" ] && MLB=$(<"$file2")
|
||||
SN="${SN//[![:print:]]/}"
|
||||
MLB="${MLB//[![:print:]]/}"
|
||||
[ -n "$SN" ] && [ -n "$MLB" ] && return 0
|
||||
|
||||
# Generate unique serial numbers for machine
|
||||
SN=$(/usr/local/bin/macserial --num 1 --model "${MODEL}" 2>/dev/null)
|
||||
|
||||
SN="${SN##*$'\n'}"
|
||||
[[ "$SN" != *" | "* ]] && error "$SN" && return 1
|
||||
|
||||
MLB=${SN#*|}
|
||||
MLB="${MLB#"${MLB%%[![:space:]]*}"}"
|
||||
SN="${SN%%|*}"
|
||||
SN="${SN%"${SN##*[![:space:]]}"}"
|
||||
|
||||
echo "$SN" > "$file"
|
||||
echo "$MLB" > "$file2"
|
||||
|
||||
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
|
||||
! setOwner "$file2" && error "Failed to set the owner for \"$file2\" !"
|
||||
|
||||
return 0
|
||||
}
|
||||
|
||||
if [[ "${VERSION}" == \"*\" || "${VERSION}" == \'*\' ]]; then
|
||||
VERSION="${VERSION:1:-1}"
|
||||
fi
|
||||
|
||||
VERSION=$(expr "$VERSION" : "^\ *\(.*[^ ]\)\ *$")
|
||||
|
||||
if [ -z "$VERSION" ]; then
|
||||
|
||||
VERSION="14"
|
||||
warn "no value specified for the VERSION variable, defaulting to \"${VERSION}\"."
|
||||
|
||||
fi
|
||||
|
||||
if [ ! -f "$BASE_IMG" ] || [ ! -s "$BASE_IMG" ]; then
|
||||
if ! downloadImage; then
|
||||
rm -rf "$TMP"
|
||||
exit 34
|
||||
|
||||
STORAGE="$STORAGE/${VERSION,,}"
|
||||
BASE_IMG="$STORAGE/base.dmg"
|
||||
|
||||
if [ ! -f "$BASE_IMG" ] || [ ! -s "$BASE_IMG" ]; then
|
||||
! install "$VERSION" "$BASE_IMG" && exit 34
|
||||
! setOwner "$BASE_IMG" && error "Failed to set the owner for \"$BASE_IMG\" !"
|
||||
fi
|
||||
|
||||
fi
|
||||
|
||||
STORED_VERSION=$(cat "$STORAGE/$PROCESS.version")
|
||||
|
||||
if [ "$VERSION" != "$STORED_VERSION" ]; then
|
||||
info "Different version detected, switching base image from $STORED_VERSION to $VERSION"
|
||||
if ! downloadImage; then
|
||||
rm -rf "$TMP"
|
||||
exit 34
|
||||
fi
|
||||
if ! generateID; then
|
||||
error "Failed to generate UUID!" && exit 35
|
||||
fi
|
||||
|
||||
DISK_OPTS="-device virtio-blk-pci,drive=${BASE_IMG_ID},scsi=off,bus=pcie.0,addr=0x6,iothread=io2"
|
||||
if ! generateSerial; then
|
||||
error "Failed to generate serial number!" && exit 36
|
||||
fi
|
||||
|
||||
if ! generateAddress; then
|
||||
error "Failed to generate MAC address!" && exit 37
|
||||
fi
|
||||
|
||||
DISK_OPTS="-device virtio-blk-pci,drive=${BASE_IMG_ID},bus=pcie.0,addr=0x6"
|
||||
DISK_OPTS+=" -drive file=$BASE_IMG,id=$BASE_IMG_ID,format=dmg,cache=unsafe,readonly=on,if=none"
|
||||
|
||||
return 0
|
||||
|
|
|
|||
Loading…
Reference in a new issue