<feed xmlns='http://www.w3.org/2005/Atom'>
<title>idevicerestore/src/deviceinterfaced.h, branch master</title>
<subtitle>Restore/upgrade firmware of iOS devices</subtitle>
<link rel='alternate' type='text/html' href='https://cgit.sukimashita.com/idevicerestore.git/'/>
<entry>
<title>macOS: Avoid deviceinterfaced races during DFU reconnect</title>
<updated>2026-09-06T23:46:30+00:00</updated>
<author>
<name>Peter A</name>
</author>
<published>2026-08-22T15:07:04+00:00</published>
<link rel='alternate' type='text/html' href='https://cgit.sukimashita.com/idevicerestore.git/commit/?id=35dee10f82711101a7d30d03f0ec781ac23221e9'/>
<id>35dee10f82711101a7d30d03f0ec781ac23221e9</id>
<content type='text'>
During Port DFU-to-DFU re-enumeration, macOS deviceinterfaced daemon can
acquire the USB interface first, making idevicerestore time out waiting
for DFU reconnection.

Add experimental flag: --exclusive-usb that keeps deviceinterfaced from
claiming the USB device for the duration of the restore, by booting it
out or repeatedly terminating it when bootout is denied (SIP on), then
reloading and starting it again on exit.

idevicerestore itself does not need to run as root for this. Only the
launchctl subcommands that manage the system-domain deviceinterfaced
daemon (bootout, bootstrap, kickstart, kill) are elevated individually
via sudo, which may prompt for a password on the controlling terminal.
Read-only queries (print) are run unprivileged. Document how to allow
these specific commands via a scoped sudoers(5) NOPASSWD rule for
unattended use.

Co-authored-by: Nikias Bassen &lt;nikias@gmx.li&gt;
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
During Port DFU-to-DFU re-enumeration, macOS deviceinterfaced daemon can
acquire the USB interface first, making idevicerestore time out waiting
for DFU reconnection.

Add experimental flag: --exclusive-usb that keeps deviceinterfaced from
claiming the USB device for the duration of the restore, by booting it
out or repeatedly terminating it when bootout is denied (SIP on), then
reloading and starting it again on exit.

idevicerestore itself does not need to run as root for this. Only the
launchctl subcommands that manage the system-domain deviceinterfaced
daemon (bootout, bootstrap, kickstart, kill) are elevated individually
via sudo, which may prompt for a password on the controlling terminal.
Read-only queries (print) are run unprivileged. Document how to allow
these specific commands via a scoped sudoers(5) NOPASSWD rule for
unattended use.

Co-authored-by: Nikias Bassen &lt;nikias@gmx.li&gt;
</pre>
</div>
</content>
</entry>
</feed>
