Compare commits

...

76 commits

Author SHA1 Message Date
Kroese
297714126c
build: Update QEMU base image to v7.29 (#377)
Some checks failed
Update / dockerHubDescription (push) Has been cancelled
2025-11-22 05:00:34 +01:00
renovate[bot]
056dfdd026
chore(deps): update actions/checkout action to v6 (#375) 2025-11-21 12:35:52 +01:00
Kroese
4cdd13585d
fix: Continue booting when Fiano fails (#376)
Add error handling for logo replacement in BIOS
2025-11-21 12:33:10 +01:00
Kroese
1b3f506bbe
fix: Update Workspaces configuration (#374) 2025-11-14 06:33:48 +01:00
Kroese
9288c856e4
build: Update QEMU base image to v7.28 (#372) 2025-11-12 07:07:54 +01:00
Kroese
67a172743c
build: Use Github token (#366) 2025-10-29 14:05:31 +01:00
Kroese
333948ef19
fix: Inherit owner from parent folder (#359) 2025-10-22 04:03:24 +02:00
Kroese
dd59b97af6
build: Add code quality checks (#363) 2025-10-22 01:02:41 +02:00
Kroese
5c26b95ee4
build: Update QEMU base image to v7.27 (#362) 2025-10-21 23:19:57 +02:00
Kroese
b3450d11eb
docs: Update docker run command (#361) 2025-10-21 23:15:38 +02:00
Kroese
61ff166d16
build: Add review workflow for shell formatting (#360) 2025-10-21 22:38:09 +02:00
Kroese
211601d12b
build: Update QEMU base image to v7.26 (#358) 2025-10-19 18:02:33 +02:00
Kroese
e032e349ee
feat: Improve Github Codespaces configuration (#357) 2025-10-19 12:48:57 +02:00
Kroese
2f0e962edd
feat: Improve Github Codespaces configuration (#356) 2025-10-19 10:40:37 +02:00
Kroese
05a699ba9a
feat: Improve Github Codespaces configuration (#355) 2025-10-19 01:11:57 +02:00
Kroese
72468237d3
fix: Remove version variable in Codespaces (#354) 2025-10-17 19:02:01 +02:00
Kroese
20068d21a3
fix: Remove hostRequirements in Codespaces (#353) 2025-10-17 18:57:16 +02:00
Kroese
6672deb920
fix: Use temporary file when extracting ROM (#352) 2025-10-17 17:18:21 +02:00
Kroese
fb7cd67691
feat: Improve Github Codespaces configuration (#351) 2025-10-17 13:35:52 +02:00
Kroese
c3d9de925c
build: Update QEMU base image version to v7.25 (#350) 2025-10-17 13:33:28 +02:00
Kroese
b1d47f113b
feat: Load memory module (#349) 2025-10-17 13:31:46 +02:00
Kroese
8def1efbc0
build: Validate JSON and YML files (#348) 2025-10-17 10:05:33 +02:00
Kroese
9a8afcf237
feat: Make macOS version selectable in Codespaces (#347) 2025-10-16 08:55:31 +02:00
Kroese
e461eba7b3
feat: Improve Github Codespaces configuration (#346) 2025-10-16 00:01:30 +02:00
Kroese
3935b89941
feat: Improve Github Codespaces configuration (#345) 2025-10-15 23:45:21 +02:00
Kroese
9c8458d30b
fix: Use Skylake CPU model for macOS 14+ on AMD (#341) 2025-10-15 21:33:53 +02:00
Kroese
61d30d1672
docs: Add warning about AMD processors (#343) 2025-10-15 21:31:32 +02:00
Kroese
0daaa39547
docs: Add info about Migration Assistant (#344) 2025-10-15 21:30:24 +02:00
Kroese
2d21f714c3
feat: Add custom .yml for Github Codespaces (#342) 2025-10-15 11:53:22 +02:00
Kroese
d3c2d44855
build: Update QEMU base image to v7.24 (#339) 2025-10-13 15:06:02 +02:00
Kroese
cfd279b7e1
build: Update QEMU base image version to v7.23 (#336) 2025-10-12 02:02:37 +02:00
Kroese
8423965cf8
build: Run check for all files (#335)
Removed specific paths from pull request trigger.
2025-10-12 00:21:57 +02:00
Kroese
4c529524ad
build: Update QEMU base image to v7.22 (#332) 2025-10-08 22:06:07 +02:00
Kroese
7f1202725c
build: Update QEMU base image to v7.21 (#330) 2025-10-07 01:17:59 +02:00
Kroese
6c6f929adf
fix: Correct Tahoe version number (#329) 2025-10-03 11:17:16 +02:00
Kroese
feac11ef9a
feat: Add startup hook (#328) 2025-10-03 11:15:21 +02:00
renovate[bot]
9d19aeeaf3
chore(deps): update qemux/qemu docker tag to v7.20 (#327)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-10-03 05:42:16 +02:00
renovate[bot]
edaa2d2bfc
chore(deps): update peter-evans/dockerhub-description action to v5 (#325)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-10-01 23:40:04 +02:00
Kroese
a92a2cb0a0
build: Update QEMU base image version to 7.19 (#324) 2025-10-01 13:16:31 +02:00
Kroese
944d58a982
docs: Readme (#323) 2025-09-30 18:01:16 +02:00
Kroese
eda63efc6e
docs: Add macOS Tahoe support (#322) 2025-09-30 17:26:11 +02:00
Kroese
45b966703e
feat: Set default to Sonoma (#321) 2025-09-30 11:33:07 +02:00
Kroese
1f31b50ff8
feat: Added custom BIOS logo (#319) 2025-09-30 01:16:08 +02:00
renovate[bot]
05dad712f3
chore(deps): update qemux/qemu docker tag to v7.18 (#318)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-09-30 00:47:56 +02:00
Kroese
4e804a1ef9
feat: Update warning messages (#314) 2025-09-24 16:42:50 +02:00
Kroese
5b25e4c64d
build: Update QEMU base image version to 7.17 (#315) 2025-09-24 16:41:59 +02:00
Kroese
f9ea2f2781
fix: Move KVM warning (#313) 2025-09-23 16:16:11 +02:00
Kroese
35c7419044
feat: Disable VMX cpu flag (#312) 2025-09-23 15:24:23 +02:00
Kroese
8e7572b1ff
feat: Add additional KVM check (#311) 2025-09-23 08:57:35 +02:00
Kroese
125f14164b
feat: Disable unsupported CPU flags in TCG mode (#310) 2025-09-23 08:44:48 +02:00
Kroese
1ed6749ccd
build: Update QEMU base image to v7.16 (#309) 2025-09-22 22:02:37 +02:00
renovate[bot]
fc99211115
chore(deps): update hadolint/hadolint-action action to v3.3.0 (#307)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-09-22 21:34:24 +02:00
Kroese
d4add50eb4
fix: Variable expansion in retry loop (#308) 2025-09-22 21:32:25 +02:00
Kroese
c787b8dd13
feat: Show delay progress (#306)
Added a delay function to handle retry messages for failed downloads.
2025-09-22 07:21:26 +02:00
Kroese
54e08a9425
revert: Simplify conditional checks (#305)
This reverts commit 733266fd6c.
2025-09-21 23:06:48 +02:00
Kroese
733266fd6c
fix: Simplify conditional checks (#304) 2025-09-21 15:04:44 +02:00
Kroese
08ac3ab823
build: Update QEMU base image to v7.15 (#303)
Updated QEMU base image version from 7.14 to 7.15.
2025-09-21 04:47:39 +02:00
Kroese
a737399811
fix: Simplify conditional checks (#302) 2025-09-20 23:48:56 +02:00
Kroese
109b84fd6f
feat: Resume failed download (#301) 2025-09-20 14:46:28 +02:00
renovate[bot]
fb044b9158
chore(deps): update qemux/qemu docker tag to v7.14 (#300)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-09-18 23:47:29 +02:00
Kroese
a82c3b58fd
feat: Cleanup old files before installation (#299) 2025-09-17 18:35:00 +02:00
renovate[bot]
0cd494674c
chore(deps): update qemux/qemu docker tag to v7.13 (#298)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-09-17 18:27:20 +02:00
Kroese
7d85112d12
feat: Restrict AMD CPU's to a single core (#297) 2025-09-15 22:09:51 +02:00
Kroese
f15a2d6ae5
feat: Create subfolder only after version is checked (#296) 2025-09-15 17:58:15 +02:00
Kroese
827f458cae
feat: Seperate subfolders for each version (#295)
Allows for easier version management as there is no need to clear the /storage folder anymore when switching between macOS releases.
2025-09-15 17:37:53 +02:00
Kroese
27a66f4748
feat: Remove leading and trailing spaces from VERSION (#294) 2025-09-15 14:18:24 +02:00
Kroese
9fb20e6ef5
build: Disable automatic builds (#293)
Removed push trigger and paths to ignore from build workflow.
2025-09-14 11:52:53 +02:00
renovate[bot]
e1977b9cdc
chore(deps): update hadolint/hadolint-action action to v3.2.0 (#288)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-09-06 20:18:38 +02:00
Kroese
db7d2d32a4
feat: Add syntax parser directive (#286) 2025-08-27 21:39:13 +02:00
dependabot[bot]
fa9319e74e
build(deps): bump alpine from 3.21 to 3.22 (#263)
Bumps alpine from 3.21 to 3.22.

---
updated-dependencies:
- dependency-name: alpine
  dependency-version: '3.22'
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-27 21:06:11 +02:00
dependabot[bot]
b6a318f6e9
build(deps): bump actions/checkout from 4 to 5 (#282)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 5.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v4...v5)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '5'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-27 20:58:56 +02:00
renovate[bot]
d93c75b979
chore(deps): update qemux/qemu docker tag to v7.12 (#257) 2025-05-06 06:40:41 +02:00
Kroese
9115d132f6
docs: Add input types (#251) 2025-04-23 12:50:38 +02:00
Kroese
88c3f6219e
docs: Add quotes around $PWD (#247) 2025-04-16 12:13:46 +02:00
Kroese
e0a357091d
build: Update qemu-docker to v7.11 (#246) 2025-04-14 21:04:15 +02:00
Kroese
69b79d9ba9
build: Update qemu-docker to v7.10 (#245) 2025-04-08 07:58:04 +02:00
23 changed files with 379 additions and 85 deletions

View file

@ -1,6 +0,0 @@
{
"name": "macos",
"service": "macos",
"forwardPorts": [8006],
"dockerComposeFile": "compose.yml"
}

View file

@ -0,0 +1,19 @@
{
"name": "macOS 15 (Sequoia)",
"service": "macos",
"containerEnv": {
"VERSION": "15"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "../codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -0,0 +1,19 @@
{
"name": "macOS 13 (Ventura)",
"service": "macos",
"containerEnv": {
"VERSION": "13"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "../codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -0,0 +1,19 @@
{
"name": "macOS 12 (Monterey)",
"service": "macos",
"containerEnv": {
"VERSION": "12"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "../codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -0,0 +1,19 @@
{
"name": "macOS 11 (Big Sur)",
"service": "macos",
"containerEnv": {
"VERSION": "11"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "../codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -0,0 +1,19 @@
{
"name": "macOS 10 (Catalina)",
"service": "macos",
"containerEnv": {
"VERSION": "10"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "../codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -0,0 +1,21 @@
services:
macos:
container_name: macos
image: ghcr.io/dockur/macos
environment:
RAM_SIZE: "half"
DISK_SIZE: "max"
CPU_CORES: "max"
devices:
- /dev/kvm
- /dev/net/tun
cap_add:
- NET_ADMIN
ports:
- 8006:8006
- 5900:5900/tcp
- 5900:5900/udp
volumes:
- ./macos:/storage
restart: on-failure
stop_grace_period: 2m

View file

@ -0,0 +1,19 @@
{
"name": "macOS 14 (Sonoma)",
"service": "macos",
"containerEnv": {
"VERSION": "14"
},
"forwardPorts": [8006],
"portsAttributes": {
"8006": {
"label": "Web",
"onAutoForward": "notify"
}
},
"otherPortsAttributes": {
"onAutoForward": "ignore"
},
"dockerComposeFile": "codespaces.yml",
"initializeCommand": "docker system prune --all --force"
}

View file

@ -1,4 +1,5 @@
.dockerignore
.devcontainer
.git
.github
.gitignore

View file

@ -21,6 +21,7 @@ body:
attributes:
label: Docker compose
description: The compose file (or otherwise the `docker run` command used).
render: yaml
validations:
required: true
- type: textarea
@ -28,6 +29,7 @@ body:
attributes:
label: Docker log
description: The logfile of the container (as shown by `docker logs macos`).
render: shell
validations:
required: true
- type: textarea

View file

@ -23,6 +23,7 @@ body:
attributes:
label: Docker compose
description: The compose file (or otherwise the `docker run` command used).
render: yaml
validations:
required: true
- type: textarea
@ -30,6 +31,7 @@ body:
attributes:
label: Docker log
description: The logfile of the container (as shown by `docker logs macos`).
render: shell
validations:
required: true
- type: textarea

View file

@ -2,16 +2,6 @@ name: Build
on:
workflow_dispatch:
push:
branches:
- master
paths-ignore:
- '**/*.md'
- '**/*.yml'
- '.gitignore'
- '.dockerignore'
- '.github/**'
- '.github/workflows/**'
concurrency:
group: build
@ -32,7 +22,7 @@ jobs:
steps:
-
name: Checkout
uses: actions/checkout@v4
uses: actions/checkout@v6
with:
fetch-depth: 0
-

View file

@ -7,14 +7,19 @@ jobs:
name: shellcheck
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: actions/checkout@v6
- name: Run ShellCheck
uses: ludeeus/action-shellcheck@master
env:
SHELLCHECK_OPTS: -x --source-path=src -e SC1091 -e SC2001 -e SC2002 -e SC2034 -e SC2064 -e SC2153 -e SC2317 -e SC2028
- name: Lint Dockerfile
uses: hadolint/hadolint-action@v3.1.0
uses: hadolint/hadolint-action@v3.3.0
with:
dockerfile: Dockerfile
ignore: DL3008,DL3018,DL3020,DL3029,DL3059
failure-threshold: warning
-
name: Validate JSON and YML files
uses: GrantBirki/json-yaml-validate@v4
with:
yaml_exclude_regex: ".*\\kubernetes\\.yml$"

View file

@ -12,13 +12,15 @@ jobs:
dockerHubDescription:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
-
name: Docker Hub Description
uses: peter-evans/dockerhub-description@v4
with:
username: ${{ secrets.DOCKERHUB_USERNAME }}
password: ${{ secrets.DOCKERHUB_TOKEN }}
repository: ${{ secrets.DOCKERHUB_REPO }}
short-description: ${{ github.event.repository.description }}
readme-filepath: ./readme.md
-
name: Checkout repo
uses: actions/checkout@v6
-
name: Docker Hub Description
uses: peter-evans/dockerhub-description@v5
with:
username: ${{ secrets.DOCKERHUB_USERNAME }}
password: ${{ secrets.DOCKERHUB_TOKEN }}
repository: ${{ secrets.DOCKERHUB_REPO }}
short-description: ${{ github.event.repository.description }}
readme-filepath: ./readme.md

66
.github/workflows/review.yml vendored Normal file
View file

@ -0,0 +1,66 @@
on:
pull_request:
name: "Review"
permissions:
contents: read
pull-requests: write
checks: write
jobs:
review:
name: review
runs-on: ubuntu-latest
steps:
-
name: Checkout
uses: actions/checkout@v6
-
name: Spelling
uses: reviewdog/action-misspell@v1
with:
locale: "US"
level: warning
pattern: |
*.md
*.sh
reporter: github-pr-review
github_token: ${{ secrets.GITHUB_TOKEN }}
-
name: Hadolint
uses: reviewdog/action-hadolint@v1
with:
level: warning
reporter: github-pr-review
hadolint_ignore: DL3008 DL3018 DL3020 DL3029 DL3059
github_token: ${{ secrets.GITHUB_TOKEN }}
-
name: YamlLint
uses: reviewdog/action-yamllint@v1
with:
level: warning
reporter: github-pr-review
github_token: ${{ secrets.GITHUB_TOKEN }}
-
name: ActionLint
uses: reviewdog/action-actionlint@v1
with:
level: warning
reporter: github-pr-review
github_token: ${{ secrets.GITHUB_TOKEN }}
-
name: Shellformat
uses: reviewdog/action-shfmt@v1
with:
level: warning
shfmt_flags: "-i 2 -ci -bn"
github_token: ${{ secrets.GITHUB_TOKEN }}
-
name: Shellcheck
uses: reviewdog/action-shellcheck@v1
with:
level: warning
reporter: github-pr-review
shellcheck_flags: -x -e SC1091 -e SC2001 -e SC2002 -e SC2034 -e SC2064 -e SC2153 -e SC2317 -e SC2028
github_token: ${{ secrets.GITHUB_TOKEN }}

View file

@ -1,11 +1,6 @@
on:
workflow_dispatch:
pull_request:
paths:
- '**/*.sh'
- '.github/workflows/test.yml'
- '.github/workflows/check.yml'
- 'Dockerfile'
name: "Test"
permissions: {}

View file

@ -1,4 +1,6 @@
FROM --platform=$BUILDPLATFORM alpine:3.21 AS builder
# syntax=docker/dockerfile:1
FROM --platform=$BUILDPLATFORM alpine:3.22 AS builder
ARG VERSION_OPENCORE="1.0.4"
ARG REPO_OPENCORE="https://github.com/acidanthera/OpenCorePkg"
@ -10,7 +12,7 @@ RUN apk --update --no-cache add unzip && \
rm -rf /tmp/* /var/tmp/* /var/cache/apk/*
FROM scratch AS runner
COPY --from=qemux/qemu:7.08 / /
COPY --from=qemux/qemu:7.29 / /
ARG VERSION_ARG="0.0"
ARG VERSION_KVM_OPENCORE="v21"
@ -25,8 +27,6 @@ ARG DEBCONF_NONINTERACTIVE_SEEN="true"
RUN set -eu && \
apt-get update && \
apt-get --no-install-recommends -y install \
xxd \
fdisk \
mtools && \
apt-get clean && \
echo "$VERSION_ARG" > /run/version && \
@ -47,9 +47,9 @@ ADD $REPO_KVM_OPENCORE/releases/download/$VERSION_KVM_OPENCORE/OpenCore-$VERSION
VOLUME /storage
EXPOSE 5900 8006
ENV VERSION="13"
ENV VERSION="14"
ENV RAM_SIZE="4G"
ENV CPU_CORES="2"
ENV CPU_CORES="1"
ENV DISK_SIZE="64G"
ENTRYPOINT ["/usr/bin/tini", "-s", "/run/entry.sh"]

View file

@ -3,7 +3,7 @@ services:
image: dockurr/macos
container_name: macos
environment:
VERSION: "13"
VERSION: "14"
devices:
- /dev/kvm
- /dev/net/tun

View file

@ -31,7 +31,7 @@ spec:
image: dockurr/macos
env:
- name: VERSION
value: "13"
value: "14"
- name: DISK_SIZE
value: "64G"
ports:

View file

@ -1,4 +1,4 @@
<h1 align="center">OSX<br />
<h1 align="center">macOS<br />
<div align="center">
<a href="https://github.com/dockur/macos/"><img src="https://github.com/dockur/macos/raw/master/.github/logo.png" title="Logo" style="max-width:100%;" width="128" /></a>
</div>
@ -12,7 +12,7 @@
</div></h1>
OSX (macOS) inside a Docker container.
MacOS inside a Docker container.
## Features ✨
@ -30,7 +30,7 @@ services:
image: dockurr/macos
container_name: macos
environment:
VERSION: "13"
VERSION: "14"
devices:
- /dev/kvm
- /dev/net/tun
@ -49,7 +49,7 @@ services:
##### Via Docker CLI:
```bash
docker run -it --rm --name macos -p 8006:8006 --device=/dev/kvm --device=/dev/net/tun --cap-add NET_ADMIN -v ${PWD:-.}/macos:/storage --stop-timeout 120 dockurr/macos
docker run -it --rm --name macos -e "VERSION=14" -p 8006:8006 --device=/dev/kvm --device=/dev/net/tun --cap-add NET_ADMIN -v "${PWD:-.}/macos:/storage" --stop-timeout 120 docker.io/dockurr/macos
```
##### Via Kubernetes:
@ -78,17 +78,23 @@ kubectl apply -f https://raw.githubusercontent.com/dockur/macos/refs/heads/maste
- When prompted where you want to install it, select the disk you created previously.
- After all files are copied, select your region, language, and account settings.
- After all files are copied, select your region, language, and keyboard settings.
- When the `Migration Assistant` wants to transfer data, select `Not now` (bottom left).
- On the `Apple ID` screen, select `Set Up Later` (bottom left) and then proceed using `Skip`.
- On the `Create a Computer Account` screen, fill in a username and password and `Continue`.
Enjoy your brand new machine, and don't forget to star this repo!
### How do I select the version of macOS?
By default, macOS 13 (Ventura) will be installed, but you can add the `VERSION` environment variable in order to specify an alternative:
By default, macOS 14 (Sonoma) will be installed, but you can add the `VERSION` environment variable in order to specify an alternative:
```yaml
environment:
VERSION: "13"
VERSION: "15"
```
Select from the values below:
@ -129,7 +135,7 @@ kubectl apply -f https://raw.githubusercontent.com/dockur/macos/refs/heads/maste
### How do I change the amount of CPU or RAM?
By default, the container will be allowed to use a maximum of 2 CPU cores and 4 GB of RAM.
By default, macOS will be allowed to use a single CPU core and 4 GB of RAM.
If you want to adjust this, you can specify the desired amount using the following environment variables:
@ -139,6 +145,9 @@ kubectl apply -f https://raw.githubusercontent.com/dockur/macos/refs/heads/maste
CPU_CORES: "4"
```
> [!IMPORTANT]
> If your system has an AMD processor (instead of Intel), it is not advisable to enable multiple cores before the installation is completed and you have verified that everything runs stable for a while. Because in many cases it will introduce issues, which are difficult to pinpoint if you do not have experience with its behavior on a single core first.
### How do I assign an individual IP address to the container?
By default, the container uses bridge networking, which shares the IP address with the host.

View file

@ -2,13 +2,17 @@
set -Eeuo pipefail
# Docker environment variables
: "${BOOT_MODE:="macos"}" # Boot mode
: "${SECURE:="off"}" # Secure boot
: "${BOOT_MODE:="macos"}" # Boot mode
BOOT_DESC=""
BOOT_OPTS=""
OVMF="/usr/share/OVMF"
msg="Configuring boot..."
html "$msg"
[[ "$DEBUG" == [Yy1]* ]] && echo "$msg"
case "${HEIGHT,,}" in
"1080" )
DEST="$PROCESS"
@ -41,12 +45,23 @@ DEST="$STORAGE/$DEST"
if [ ! -s "$DEST.rom" ] || [ ! -f "$DEST.rom" ]; then
[ ! -s "$OVMF/$ROM" ] || [ ! -f "$OVMF/$ROM" ] && error "UEFI boot file ($OVMF/$ROM) not found!" && exit 44
cp "$OVMF/$ROM" "$DEST.rom"
if [[ "${LOGO:-}" == [Nn]* ]]; then
cp "$OVMF/$ROM" "$DEST.tmp"
else
if ! /run/utk.bin "$OVMF/$ROM" replace_ffs LogoDXE "/var/www/img/${PROCESS,,}.ffs" save "$DEST.tmp"; then
warn "failed to add custom logo to BIOS!"
cp "$OVMF/$ROM" "$DEST.tmp"
fi
fi
mv "$DEST.tmp" "$DEST.rom"
! setOwner "$DEST.rom" && error "Failed to set the owner for \"$DEST.rom\" !"
fi
if [ ! -s "$DEST.vars" ] || [ ! -f "$DEST.vars" ]; then
[ ! -s "$OVMF/$VARS" ] || [ ! -f "$OVMF/$VARS" ]&& error "UEFI vars file ($OVMF/$VARS) not found!" && exit 45
cp "$OVMF/$VARS" "$DEST.vars"
cp "$OVMF/$VARS" "$DEST.tmp"
mv "$DEST.tmp" "$DEST.vars"
! setOwner "$DEST.vars" && error "Failed to set the owner for \"$DEST.vars\" !"
fi
BOOT_OPTS+=" -drive if=pflash,format=raw,readonly=on,file=$DEST.rom"
@ -148,17 +163,43 @@ if [ ! -f "$IMG" ]; then
fi
! setOwner "$IMG" && error "Failed to set the owner for \"$IMG\" !"
BOOT_DRIVE_ID="OpenCore"
DISK_OPTS+=" -device virtio-blk-pci,drive=${BOOT_DRIVE_ID},bus=pcie.0,addr=0x5,bootindex=$BOOT_INDEX"
DISK_OPTS+=" -drive file=$IMG,id=$BOOT_DRIVE_ID,format=raw,cache=unsafe,readonly=on,if=none"
CPU_VENDOR=$(lscpu | awk '/Vendor ID/{print $3}')
DEFAULT_FLAGS="vendor=GenuineIntel,vmware-cpuid-freq=on,-pdpe1gb"
DEFAULT_FLAGS="vendor=GenuineIntel,vmx=off,vmware-cpuid-freq=on,-pdpe1gb"
if [[ "$CPU_VENDOR" == "AuthenticAMD" || "${KVM:-}" == [Nn]* ]]; then
if [ -z "${CPU_MODEL:-}" ]; then
case "${VERSION,,}" in
"ventura" | "13"* )
CPU_MODEL="Haswell-noTSX" ;;
"monterey" | "12"* )
CPU_MODEL="Haswell-noTSX" ;;
"bigsur" | "big-sur" | "11"* )
CPU_MODEL="Haswell-noTSX" ;;
"catalina" | "10"* )
CPU_MODEL="Haswell-noTSX" ;;
*)
CPU_MODEL="Skylake-Client-v4"
DEFAULT_FLAGS+=",-spec-ctrl"
;;
esac
fi
if [[ "${KVM:-}" == [Nn]* ]] || [[ "${ARCH,,}" != "amd64" ]] || [[ "$OSTYPE" =~ ^darwin ]]; then
DEFAULT_FLAGS+=",-pcid,-tsc-deadline,-invpcid,-xsavec,-xsaves,+ssse3,+sse4.2,+popcnt,+avx,+avx2,+aes,+fma,+bmi1,+bmi2,+smep,+xsave,+xsaveopt,+xgetbv1,+movbe,+rdrand,check"
else
DEFAULT_FLAGS+=",+pcid,+ssse3,+sse4.2,+popcnt,+avx,+avx2,+aes,+fma,+bmi1,+bmi2,+smep,+xsave,+xsavec,+xsaves,+xsaveopt,+xgetbv1,+movbe,+rdrand,check"
fi
if [[ "$CPU_VENDOR" != "GenuineIntel" ]] || [[ "${KVM:-}" == [Nn]* ]]; then
[ -z "${CPU_MODEL:-}" ] && CPU_MODEL="Haswell-noTSX"
DEFAULT_FLAGS+=",+pcid,+ssse3,+sse4.2,+popcnt,+avx,+avx2,+aes,+fma,+bmi1,+bmi2,+smep,+xsave,+xsavec,+xsaveopt,+xgetbv1,+movbe,+rdrand,check"
fi
if [ -z "${CPU_FLAGS:-}" ]; then
@ -178,14 +219,11 @@ else
result=$(<"$CLOCK")
result="${result//[![:print:]]/}"
case "${result,,}" in
"${CLOCKSOURCE,,}" ) ;;
"kvm-clock" )
if [[ "$CPU_VENDOR" != "GenuineIntel" ]] && [[ "${CPU_CORES,,}" == "2" ]]; then
warn "Restricted processor to a single core because nested KVM virtualization was detected!"
CPU_CORES="1"
else
warn "Nested KVM virtualization detected, this might cause issues running macOS!"
"${CLOCKSOURCE,,}" )
if [[ "$CPU_VENDOR" == "GenuineIntel" && "$CPU_CORES" == "1" && "${KVM:-}" != [Nn]* ]]; then
CPU_CORES="2"
fi ;;
"kvm-clock" ) warn "Nested KVM virtualization detected, this might cause issues running macOS!" ;;
"hyperv_clocksource_tsc_page" ) info "Nested Hyper-V virtualization detected, this might cause issues running macOS!" ;;
"hpet" ) warn "unsupported clock source detected: '$result'. Please set host clock source to '$CLOCKSOURCE', otherwise it will cause issues running macOS!" ;;
*) warn "unexpected clock source detected: '$result'. Please set host clock source to '$CLOCKSOURCE', otherwise it will cause issues running macOS!" ;;

View file

@ -9,15 +9,19 @@ set -Eeuo pipefail
cd /run
. start.sh # Startup hook
. utils.sh # Load functions
. reset.sh # Initialize system
. server.sh # Start webserver
. install.sh # Get the OSX images
. disk.sh # Initialize disks
. display.sh # Initialize graphics
. network.sh # Initialize network
. boot.sh # Configure boot
. proc.sh # Initialize processor
. memory.sh # Check available memory
. config.sh # Configure arguments
. finish.sh # Finish initialization
trap - ERR

View file

@ -7,14 +7,13 @@ set -Eeuo pipefail
: "${MLB:=""}" # Board serial
: "${MAC:=""}" # MAC address
: "${UUID:=""}" # Unique ID
: "${VERSION:=""}" # OSX Version
: "${WIDTH:="1920"}" # Horizontal
: "${HEIGHT:="1080"}" # Vertical
: "${VERSION:="13"}" # OSX Version
: "${MODEL:="iMacPro1,1"}" # Device model
BASE_IMG_ID="InstallMedia"
BASE_IMG="$STORAGE/base.dmg"
BASE_VERSION="$STORAGE/$PROCESS.version"
function getRandom() {
local length="${1}"
@ -29,7 +28,23 @@ function getRandom() {
return 0
}
function downloadImage() {
delay() {
local i
local delay="$1"
local msg="Retrying failed download in X seconds..."
info "${msg/X/$delay}"
for i in $(seq "$delay" -1 1); do
html "${msg/X/$i}"
sleep 1
done
return 0
}
function download() {
local info=""
local dest="$1"
local board="$2"
@ -113,12 +128,15 @@ function downloadImage() {
return 1
}
download() {
install() {
local board
local version="$1"
local dest="$2"
case "${version,,}" in
"tahoe" | "26"* | "16"* )
board="Mac-CFF7D910A743CAAF" ;;
"sequoia" | "15"* )
board="Mac-937A206F2EE63C01" ;;
"sonoma" | "14"* )
@ -136,15 +154,31 @@ download() {
return 1 ;;
esac
if [ -f "/boot.dmg" ]; then
cp "/boot.dmg" "$BASE_IMG"
else
local file="/BaseSystem.dmg"
! downloadImage "$file" "$board" "$version" && exit 60
mv -f "$file" "$BASE_IMG"
rm -f "$dest"
if ! makeDir "$STORAGE"; then
error "Failed to create directory \"$STORAGE\" !" && return 1
fi
echo "$version" > "$BASE_VERSION"
find "$STORAGE" -maxdepth 1 -type f \( -iname '*.rom' -or -iname '*.vars' \) -delete
find "$STORAGE" -maxdepth 1 -type f \( -iname 'data.*' -or -iname 'macos.*' \) -delete
if [ -f "/boot.dmg" ]; then
cp "/boot.dmg" "$dest"
return 0
fi
local file="$STORAGE/boot.dmg"
if ! download "$file" "$board" "$version"; then
delay 5
if ! download "$file" "$board" "$version"; then
rm -f "$file"
exit 60
fi
fi
mv -f "$file" "$dest"
return 0
}
@ -160,7 +194,9 @@ generateID() {
UUID=$(cat /proc/sys/kernel/random/uuid 2> /dev/null || uuidgen --random)
UUID="${UUID^^}"
UUID="${UUID//[![:print:]]/}"
echo "$UUID" > "$file"
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
return 0
}
@ -177,7 +213,9 @@ generateAddress() {
# Generate Apple MAC address based on Docker container ID in hostname
MAC=$(echo "$HOST" | md5sum | sed 's/^\(..\)\(..\)\(..\)\(..\)\(..\).*$/00:16:cb:\3:\4:\5/')
MAC="${MAC^^}"
echo "$MAC" > "$file"
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
return 0
}
@ -208,22 +246,35 @@ generateSerial() {
echo "$SN" > "$file"
echo "$MLB" > "$file2"
! setOwner "$file" && error "Failed to set the owner for \"$file\" !"
! setOwner "$file2" && error "Failed to set the owner for \"$file2\" !"
return 0
}
if [[ "${VERSION}" == \"*\" || "${VERSION}" == \'*\' ]]; then
VERSION="${VERSION:1:-1}"
fi
VERSION=$(expr "$VERSION" : "^\ *\(.*[^ ]\)\ *$")
if [ -z "$VERSION" ]; then
VERSION="14"
warn "no value specified for the VERSION variable, defaulting to \"${VERSION}\"."
fi
if [ ! -f "$BASE_IMG" ] || [ ! -s "$BASE_IMG" ]; then
! download "$VERSION" && exit 34
fi
STORED_VERSION=""
if [ -f "$BASE_VERSION" ]; then
STORED_VERSION=$(<"$BASE_VERSION")
STORED_VERSION="${STORED_VERSION//[![:print:]]/}"
fi
STORAGE="$STORAGE/${VERSION,,}"
BASE_IMG="$STORAGE/base.dmg"
if [ ! -f "$BASE_IMG" ] || [ ! -s "$BASE_IMG" ]; then
! install "$VERSION" "$BASE_IMG" && exit 34
! setOwner "$BASE_IMG" && error "Failed to set the owner for \"$BASE_IMG\" !"
fi
if [ "$VERSION" != "$STORED_VERSION" ]; then
info "Different version detected, switching base image from \"$STORED_VERSION\" to \"$VERSION\""
! download "$VERSION" && exit 34
fi
if ! generateID; then