Linux workstation

Debian 13 (Trixie) native package

libreswan

Internet Key Exchange daemon

Packages / Debian 13 (Trixie) / net / libreswan

Package: libreswan (5.2-2.2)

Maintainers:

Daniel Kahn Gillmor

External Resources:

Homepage: [libreswan.org]

Internet Key Exchange daemon

Other Packages Related to libreswan:

  • dep: [dns-root-data]

    DNS root hints and DNSSEC trust anchor

  • dep: host

    Package not available

  • dep: [iproute2]

    networking and traffic control tools

  • dep: iproute (>= 20071016)

    Package not available

  • dep: [iptables]

    administration tools for packet filtering and NAT

  • dep: [libnss3-tools]

    Network Security Service tools

  • dep: [libaudit1] (>= 1:2.2.1)

    Dynamic library for security auditing

  • dep: [libc6] (>= 2.34)

    GNU C Library: Shared libraries

  • dep: [libcap-ng0] (>= 0.7.9)

    alternate POSIX capabilities library

  • dep: [libcrypt1] (>= 1:4.1.0)

    libcrypt shared library

  • dep: [libcurl3t64-gnutls] (>= 7.16.2)

    transitional package for libcurl4-gnutls

  • dep: [libevent-core-2.1-7t64] (>= 2.1.8-stable)

    Asynchronous event notification library (core)

  • dep: [libevent-pthreads-2.1-7t64] (>= 2.1.8-stable)

    Asynchronous event notification library (pthreads)

  • dep: [libldap2] (>= 2.6.2)

    OpenLDAP libraries

  • dep: [libldns3t64] (>= 1.7.1)

    ldns library for DNS programming - shared library

  • dep: [libnspr4] (>= 2:4.9-2~)

    NetScape Portable Runtime Library

  • dep: [libnss3] (>= 2:3.52)

    Network Security Service libraries

  • dep: [libpam0g] (>= 0.99.7.1)

    Pluggable Authentication Modules library

  • dep: [libselinux1] (>= 3.1~)

    SELinux runtime shared libraries

  • dep: [libunbound8] (>= 1.8.0)

    library implementing DNS resolution and validation

  • rec: [python3]

    interactive high-level object-oriented language (default python3 version)

Download libreswan

ArchitecturePackage SizeInstalled SizeFiles
amd641.4 MiB7.2 MiB[list of files]
arm641.3 MiB7.8 MiB[list of files]

Rutas de archivos del paquete (148)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

  • /etc/ipsec.conf
  • /etc/ipsec.d/policies/block
  • /etc/ipsec.d/policies/clear
  • /etc/ipsec.d/policies/clear-or-private
  • /etc/ipsec.d/policies/portexcludes.conf
  • /etc/ipsec.d/policies/private
  • /etc/ipsec.d/policies/private-or-clear
  • /etc/ipsec.secrets
  • /etc/logcheck/ignore.d.paranoid/libreswan
  • /etc/logcheck/ignore.d.server/libreswan
  • /etc/logcheck/ignore.d.workstation/libreswan
  • /etc/logrotate.d/libreswan
  • /etc/pam.d/pluto
  • /usr/libexec/ipsec/addconn
  • /usr/libexec/ipsec/algparse
  • /usr/libexec/ipsec/_asn1check
  • /usr/libexec/ipsec/cavp
  • /usr/libexec/ipsec/_dncheck
  • /usr/libexec/ipsec/ecdsasigkey
  • /usr/libexec/ipsec/_enumcheck
  • /usr/libexec/ipsec/_getpeercon_server
  • /usr/libexec/ipsec/_hunkcheck
  • /usr/libexec/ipsec/_import_crl
  • /usr/libexec/ipsec/_ipcheck
  • /usr/libexec/ipsec/_jambufcheck
  • /usr/libexec/ipsec/_keyidcheck
  • /usr/libexec/ipsec/letsencrypt
  • /usr/libexec/ipsec/newhostkey
  • /usr/libexec/ipsec/pluto
  • /usr/libexec/ipsec/_plutorun
  • /usr/libexec/ipsec/readwriteconf
  • /usr/libexec/ipsec/rsasigkey
  • /usr/libexec/ipsec/setup
  • /usr/libexec/ipsec/showhostkey
  • /usr/libexec/ipsec/showroute
  • /usr/libexec/ipsec/_stackmanager
  • /usr/libexec/ipsec/_timecheck
  • /usr/libexec/ipsec/_ttodatacheck
  • /usr/libexec/ipsec/_unbound-hook
  • /usr/libexec/ipsec/_updown
  • /usr/libexec/ipsec/_updown.xfrm
  • /usr/libexec/ipsec/_vendoridcheck
  • /usr/libexec/ipsec/whack
  • /usr/lib/systemd/system/ipsec.service
  • /usr/lib/systemd/system-preset/90-libreswan.preset
  • /usr/lib/tmpfiles.d/libreswan.conf
  • /usr/sbin/ipsec
  • /usr/share/doc/libreswan/changelog.Debian.gz
  • /usr/share/doc/libreswan/changelog.gz
  • /usr/share/doc/libreswan/copyright
  • /usr/share/doc/libreswan/CREDITS
  • /usr/share/doc/libreswan/examples/hub-spoke.conf
  • /usr/share/doc/libreswan/examples/ipv6.conf
  • /usr/share/doc/libreswan/examples/l2tp-cert.conf
  • /usr/share/doc/libreswan/examples/l2tp-psk.conf
  • /usr/share/doc/libreswan/examples/linux-linux.conf
  • /usr/share/doc/libreswan/examples/oe-authnull.conf
  • /usr/share/doc/libreswan/examples/oe-dnssec-client.conf
  • /usr/share/doc/libreswan/examples/oe-dnssec-server.conf
  • /usr/share/doc/libreswan/examples/oe-exclude-dns.conf
  • /usr/share/doc/libreswan/examples/oe-letsencrypt-client.conf
  • /usr/share/doc/libreswan/examples/oe-letsencrypt-README.txt
  • /usr/share/doc/libreswan/examples/oe-letsencrypt-server.conf
  • /usr/share/doc/libreswan/examples/oe-upgrade-authnull.conf
  • /usr/share/doc/libreswan/examples/sysctl.conf
  • /usr/share/doc/libreswan/examples/xauth.conf
  • /usr/share/doc/libreswan/ipsec.conf-sample
  • /usr/share/doc/libreswan/ipsec.d/policies/block
  • /usr/share/doc/libreswan/ipsec.d/policies/clear
  • /usr/share/doc/libreswan/ipsec.d/policies/clear-or-private
  • /usr/share/doc/libreswan/ipsec.d/policies/portexcludes.conf
  • /usr/share/doc/libreswan/ipsec.d/policies/private
  • /usr/share/doc/libreswan/ipsec.d/policies/private-or-clear
  • /usr/share/doc/libreswan/ipsec.secrets-sample
  • /usr/share/doc/libreswan/logrotate.d/libreswan
  • /usr/share/doc/libreswan/NEWS.Debian.gz
  • /usr/share/doc/libreswan/pam.d/pluto
  • /usr/share/doc/libreswan/README.Debian
  • /usr/share/doc/libreswan/README.md.gz
  • /usr/share/doc/libreswan/README.nss.gz
  • /usr/share/doc/libreswan/README.rfcs.gz
  • /usr/share/doc/libreswan/README.x509
  • /usr/share/doc/libreswan/README.XAUTH
  • /usr/share/doc/libreswan/TODO.Debian
  • /usr/share/lintian/overrides/libreswan
  • /usr/share/man/man5/ipsec.conf.5.gz
  • /usr/share/man/man5/ipsec.secrets.5.gz
  • /usr/share/man/man7/libreswan.7.gz
  • /usr/share/man/man8/ipsec.8.gz
  • /usr/share/man/man8/ipsec-add.8.gz
  • /usr/share/man/man8/ipsec-addconn.8.gz
  • /usr/share/man/man8/ipsec-algparse.8.gz
  • /usr/share/man/man8/ipsec-briefconnectionstatus.8.gz
  • /usr/share/man/man8/ipsec-briefstatus.8.gz
  • /usr/share/man/man8/ipsec-certutil.8.gz
  • /usr/share/man/man8/ipsec-checkconfig.8.gz
  • /usr/share/man/man8/ipsec-checknflog.8.gz
  • /usr/share/man/man8/ipsec-checknss.8.gz
  • /usr/share/man/man8/ipsec-connectionstatus.8.gz
  • /usr/share/man/man8/ipsec-crlutil.8.gz
  • /usr/share/man/man8/ipsec-delete.8.gz
  • /usr/share/man/man8/ipsec-down.8.gz
  • /usr/share/man/man8/ipsec-ecdsasigkey.8.gz
  • /usr/share/man/man8/ipsec-fetchcrls.8.gz
  • /usr/share/man/man8/ipsec-fipsstatus.8.gz
  • /usr/share/man/man8/ipsec-globalstatus.8.gz
  • /usr/share/man/man8/ipsec-import.8.gz
  • /usr/share/man/man8/ipsec-initnss.8.gz
  • /usr/share/man/man8/ipsec-letsencrypt.8.gz
  • /usr/share/man/man8/ipsec-listall.8.gz
  • /usr/share/man/man8/ipsec-listcacerts.8.gz
  • /usr/share/man/man8/ipsec-listcerts.8.gz
  • /usr/share/man/man8/ipsec-listcrls.8.gz
  • /usr/share/man/man8/ipsec-listen.8.gz
  • /usr/share/man/man8/ipsec-listpubkeys.8.gz
  • /usr/share/man/man8/ipsec-modutil.8.gz
  • /usr/share/man/man8/ipsec-newhostkey.8.gz
  • /usr/share/man/man8/ipsec-ondemand.8.gz
  • /usr/share/man/man8/ipsec-pk12util.8.gz
  • /usr/share/man/man8/ipsec-pluto.8.gz
  • /usr/share/man/man8/ipsec-_plutorun.8.gz
  • /usr/share/man/man8/ipsec-purgeocsp.8.gz
  • /usr/share/man/man8/ipsec-readwriteconf.8.gz
  • /usr/share/man/man8/ipsec-redirect.8.gz
  • /usr/share/man/man8/ipsec-replace.8.gz
  • /usr/share/man/man8/ipsec-rereadall.8.gz
  • /usr/share/man/man8/ipsec-rereadcerts.8.gz
  • /usr/share/man/man8/ipsec-rereadsecrets.8.gz
  • /usr/share/man/man8/ipsec-restart.8.gz
  • /usr/share/man/man8/ipsec-route.8.gz
  • /usr/share/man/man8/ipsec-rsasigkey.8.gz
  • /usr/share/man/man8/ipsec-setup.8.gz
  • /usr/share/man/man8/ipsec-showhostkey.8.gz
  • /usr/share/man/man8/ipsec-showroute.8.gz
  • /usr/share/man/man8/ipsec-showstates.8.gz
  • /usr/share/man/man8/ipsec-shuntstatus.8.gz
  • /usr/share/man/man8/ipsec-_stackmanager.8.gz
  • /usr/share/man/man8/ipsec-start.8.gz
  • /usr/share/man/man8/ipsec-status.8.gz
  • /usr/share/man/man8/ipsec-stop.8.gz
  • /usr/share/man/man8/ipsec-trafficstatus.8.gz
  • /usr/share/man/man8/ipsec-unroute.8.gz
  • /usr/share/man/man8/ipsec-up.8.gz
  • /usr/share/man/man8/ipsec-_updown.8.gz
  • /usr/share/man/man8/ipsec-_updown.xfrm.8.gz
  • /usr/share/man/man8/ipsec-vfychain.8.gz
  • /usr/share/man/man8/ipsec-whack.8.gz
  • /usr/share/man/man8/pluto.8.gz

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Usar este paquete

OpenFactory puede arrancar este sistema operativo en una máquina virtual del navegador, o iniciar una construcción que incluye el nombre nativo del paquete de este registro.

Versiones, suites y repositorios

Cada fila es metadato del índice de paquetes para una versión, arquitectura, suite y repositorio. Nombres, URL y tamaños vienen de la fuente; un enlace es un punto de descarga que puede cambiar, no una redistribución de OpenFactory.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
5.2-2.2trixie / mainamd64Debian 13 · main · amd641.4 MiB7.2 MiBpool/main/libr/libreswan/libreswan_5.2-2.2_amd64.deb
5.2-2.2trixie / mainarm64Debian 13 · main · arm641.3 MiB7.8 MiBpool/main/libr/libreswan/libreswan_5.2-2.2_arm64.deb

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Sumas de comprobación y fechas de observación

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

5.2-2.2 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: dffbb61c5d234eb4ea7a7f648b09d2ab4a617fe8c2885d71a416edf1f9c188a8

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'dffbb61c5d234eb4ea7a7f648b09d2ab4a617fe8c2885d71a416edf1f9c188a8' 'libreswan_5.2-2.2_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

5.2-2.2 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 8ffaadbc889264b63bbdaf174595163a1fe3c16906ab8c84059cb5ab3fc781f1

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '8ffaadbc889264b63bbdaf174595163a1fe3c16906ab8c84059cb5ab3fc781f1' 'libreswan_5.2-2.2_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

Completitud del registro

The completeness score measures metadata coverage, not software quality, security, compatibility, or suitability.

Summary and description
25/25
Artifact path and source digest
25/25
Dependency metadata
15/15
Package-file index
15/15
Homepage
5/5
License text
0/5
Source package or maintainer
10/10

Recorded total: 95/100

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3, Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908. The cross-OS mapping is catalog-derived from the source-reported homepage; it does not establish authorship or publisher identity

Fuentes y procedencia

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Observed SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Observed SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Result: match verified