中文
In development · first public release in preparation

Restart the host,
not the VMs.

keelOS is a virtualization host for the one server at home or in a small office. A small hypervisor stays in memory while the host system is upgraded and restarted. Virtual machines pause for about 25 seconds, then carry on where they were: no shutdown, no dropped TCP connections.

The keelOS web interface: the list of virtual machines on a development host
24–26 sa guest is paused while the host restarts, with ping, iperf and fio running. TCP connections survive.
≈ 50 sfrom shutdown -r to SSH on the host, skipping the firmware. Through the firmware it takes 146 s.
100 / 100consecutive host restarts without a failure.
17 VMsresumed together after one host restart that took 65.5 s.

Measured on our development server (2 × Xeon Gold 6144, 32 threads), September 2026.

How it works

The part that holds your VMs does not restart with the host.

In most hosts the hypervisor is part of the host kernel, so a kernel update takes every VM down with it. keelOS separates the two.

Virtual machines Host system (FreeBSD) keel hypervisor paused ≈ 25 s version A restart ≈ 50 s version B stays in memory: guest memory, vCPU state, IOMMU time
01

A hypervisor that stays

UEFI loads the keel hypervisor before the host system. It holds guest memory and vCPU state and is not touched by a host upgrade. Only an upgrade of the hypervisor itself needs a full restart with the VMs shut down; it is kept small (about 80 KB) so that this stays rare.

02

A host that can restart

FreeBSD runs on top of it with the drivers, ZFS, the network and bhyve's device models. It is a read-only image running from RAM, and it restarts without going back through the firmware.

03

Guests that wait

When the host restarts, guests are suspended, the new host comes up, and the guests resume. Disk data is intact and the guest clocks are corrected.

Features

Built for the machine that runs everything.

A NAS, a router, a Windows desktop and a few Linux servers on one box: each in its own VM, none of them stopped by a host update.

AI

Want AI to watch or run your machine?

keelOS has an MCP server built in. Connect an AI assistant and it can report on the host and the VMs, read a guest's console, and start, stop or create VMs for you. A token decides what it may do, on which VMs, from which addresses and until when. Every change goes into the audit log. A skill teaches the assistant what is normal on keelOS and where to ask before acting.

Passthrough that survives a host restart

Give a whole disk controller or NVMe drive to a NAS VM. Devices are matched by vendor, model and serial number, not by slot. The hypervisor owns the IOMMU, so the device keeps working while the host restarts.

SR-IOV networking

Hand virtual functions of the network card to VMs and let the card do the switching. Tested with Intel X710 and the common I350. A VM with a VF is still shut down and started again on a host restart; keeping it running is in testing.

Windows 11 without workarounds

Virtual TPM 2.0 and Secure Boot pass the installer's hardware check. BitLocker works, and the TPM state is kept across host restarts.

ZFS underneath

VM disks are zvols or files on ZFS, presented as virtio-blk, NVMe or AHCI. A snapshot covers the whole guest: configuration, firmware variables and disks.

Web, command line and API

One program and no database. The web interface has serial and graphical consoles and speaks English, Chinese and Japanese. Everything it does goes through an HTTPS API with scoped tokens and an audit log.

RDP straight to the console

Connect any RDP client to the screen of any VM, including one that is still booting. Nothing is installed in the guest.

Memory that is not wasted

Pages a guest leaves zeroed are reclaimed and lent to the host as disk cache, and returned when the guest needs them. No overcommit.

Old systems welcome

Windows XP, Server 2003 and Windows 7 boot with SeaBIOS on IDE, PCnet and UHCI: the drivers those systems ship with.

An image, not an installer

Write the image to a USB stick and boot. A short wizard puts keelOS at the front of one disk; upgrades replace the image and restart the host once.

Guests

What runs on it.

Each of these was installed and run on our development hosts.

SystemNotes
Windows 11Virtual TPM 2.0 and Secure Boot; BitLocker works.
Windows 10, Server 2022UEFI; AHCI or NVMe disks; e1000 or virtio network.
Windows XP, Server 2003, Windows 7SeaBIOS; IDE, PCnet and UHCI with the in-box drivers.
Linux, FreeBSD, NetBSD, Haikuvirtio or AHCI.
fnOSThe NAS system. Tested and fully supported.
Router systemsOpenWrt, ImmortalWrt, iStoreOS, OPNsense, pfSense CE, VyOS and RouterOS CHR.

Product names belong to their owners and are used here only to say what was tested.

Licence

Free to use.

keelOS is not open source, and it costs nothing.

Personal use

Free. Use it at home as you like.

Commercial use

Also free, with our permission. In return, we list your company's name on this page.

What it is built on

FreeBSD, bhyve and OpenZFS. Their licence notices ship with every release.

The licence text and the way to ask for commercial permission will be published with the first release.

Download

No public release yet.

keelOS has been in development since 26 September 2026. Releases will be published on GitHub.

1

Write the image

Put the ISO on a USB stick with dd, Rufus or balenaEtcher.

2

Boot and answer

Pick one disk. keelOS takes a small part at its front.

3

Open the web interface

Create the pool for your VMs and start the first one.

Needs a 64-bit Intel CPU with VT-x, and VT-d for passthrough.

What keelOS does not do: No multi-tenancy, software-defined networking, automatic scheduling or shared storage. It is for the one machine of a person or a small office.