--- apiVersion: apps/v1 kind: Deployment metadata: name: macos labels: name: macos spec: replicas: 1 selector: matchLabels: app: macos template: metadata: labels: app: macos spec: containers: - name: macos image: dockurr/macos env: - name: VERSION value: "14" - name: DISK_SIZE value: "64G" - name: KVM value: "N" ports: - containerPort: 8006 name: http protocol: TCP - containerPort: 5900 name: vnc protocol: TCP securityContext: capabilities: add: - NET_ADMIN privileged: true volumeMounts: - mountPath: /storage name: storage - mountPath: /dev/kvm name: dev-kvm - mountPath: /dev/net/tun name: dev-tun terminationGracePeriodSeconds: 120 volumes: - name: storage persistentVolumeClaim: claimName: macos-pvc - hostPath: path: /dev/kvm name: dev-kvm - hostPath: path: /dev/net/tun type: CharDevice name: dev-tun