Linux workstation

Debian 13 (Trixie) native package

openssh-sftp-server

secure shell (SSH) sftp server module, for SFTP access from remote machines

Packages / Debian 13 (Trixie) / net / openssh-sftp-server

[Source: openssh]

Package: openssh-sftp-server (1:10.0p1-7+deb13u4)

Maintainers:

Debian OpenSSH Maintainers

External Resources:

Homepage: [www.openssh.com]

Similar packages:

secure shell (SSH) sftp server module, for SFTP access from remote machines

Other Packages Related to openssh-sftp-server:

  • dep: [openssh-client] (= 1:10.0p1-7+deb13u4)

    secure shell (SSH) client, for secure access to remote machines

  • dep: [libc6] (>= 2.38)

    GNU C Library: Shared libraries

  • rec: [openssh-server]

    secure shell (SSH) server, for secure access from remote machines

  • rec: ssh-server

    Package not available

  • enh: [openssh-server]

    secure shell (SSH) server, for secure access from remote machines

  • enh: ssh-server

    Package not available

Download openssh-sftp-server

ArchitecturePackage SizeInstalled SizeFiles
amd6465 KiB181 KiB[list of files]
arm6460 KiB209 KiB[list of files]

Rutas de archivos del paquete (4)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

  • /usr/lib/openssh/sftp-server
  • /usr/lib/sftp-server
  • /usr/share/doc/openssh-sftp-server
  • /usr/share/man/man8/sftp-server.8.gz

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Usar este paquete

OpenFactory puede arrancar este sistema operativo en una máquina virtual del navegador, o iniciar una construcción que incluye el nombre nativo del paquete de este registro.

Versiones, suites y repositorios

Cada fila es metadato del índice de paquetes para una versión, arquitectura, suite y repositorio. Nombres, URL y tamaños vienen de la fuente; un enlace es un punto de descarga que puede cambiar, no una redistribución de OpenFactory.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
1:10.0p1-7+deb13u4trixie / mainamd64Debian 13 · main · amd6464 KiB173 KiBpool/main/o/openssh/openssh-sftp-server_10.0p1-7+deb13u4_amd64.deb
1:10.0p1-7+deb13u4trixie / mainarm64Debian 13 · main · arm6459 KiB209 KiBpool/main/o/openssh/openssh-sftp-server_10.0p1-7+deb13u4_arm64.deb
1:10.3p1-1~bpo13+1trixie-backports / mainamd64Debian 13 backports · main · amd6465 KiB181 KiBpool/main/o/openssh/openssh-sftp-server_10.3p1-1~bpo13+1_amd64.deb
1:10.3p1-1~bpo13+1trixie-backports / mainarm64Debian 13 backports · main · arm6460 KiB209 KiBpool/main/o/openssh/openssh-sftp-server_10.3p1-1~bpo13+1_arm64.deb
1:10.0p1-7+deb13u2trixie-security / mainamd64Debian 13 security · main · amd6464 KiB173 KiBpool/updates/main/o/openssh/openssh-sftp-server_10.0p1-7+deb13u2_amd64.deb
1:10.0p1-7+deb13u2trixie-security / mainarm64Debian 13 security · main · arm6459 KiB209 KiBpool/updates/main/o/openssh/openssh-sftp-server_10.0p1-7+deb13u2_arm64.deb

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Sumas de comprobación y fechas de observación

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

1:10.0p1-7+deb13u4 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 28a82485438fafc8d6a7552ab61cac827338c16f39e3790d6ebcc146d452e542

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '28a82485438fafc8d6a7552ab61cac827338c16f39e3790d6ebcc146d452e542' 'openssh-sftp-server_10.0p1-7+deb13u4_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

1:10.0p1-7+deb13u4 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: c949831340f9af9e70a6dab740fc9cdff6dd0b249bf9d7d640f6486036476e05

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'c949831340f9af9e70a6dab740fc9cdff6dd0b249bf9d7d640f6486036476e05' 'openssh-sftp-server_10.0p1-7+deb13u4_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

1:10.3p1-1~bpo13+1 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 20e172201c7338b750522b4db454feb3a3a62b025d5cc1ae0971c259b45d1bfd

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '20e172201c7338b750522b4db454feb3a3a62b025d5cc1ae0971c259b45d1bfd' 'openssh-sftp-server_10.3p1-1~bpo13+1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) backports main amd64 revision trixie-backports-main-amd64:d39821bb4fc48252327fb05d82ee36a9b8a1446ae693561c7389741ccb0a2c7b

1:10.3p1-1~bpo13+1 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 289d32279585bd4be868491fd5fbeab4d68780ab381dfba410f6bf5c78ee07a0

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '289d32279585bd4be868491fd5fbeab4d68780ab381dfba410f6bf5c78ee07a0' 'openssh-sftp-server_10.3p1-1~bpo13+1_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) backports main arm64 revision trixie-backports-main-arm64:acf4939d14c5d5ed995554b7d34e1431dd020622de39cce80c0a28de73e15357

1:10.0p1-7+deb13u2 / amd64Observed Aug 10, 2026 to Aug 30, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: ceafc87f74e71d2b8346f7715064bfee197bdf2848e0a425e370e5cc4317d1f4

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'ceafc87f74e71d2b8346f7715064bfee197bdf2848e0a425e370e5cc4317d1f4' 'openssh-sftp-server_10.0p1-7+deb13u2_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian Security revision trixie-security-main-amd64:dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e

1:10.0p1-7+deb13u2 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 92456a2b0a0d71168e016c4d01fad2758c11d40ba941ebec7c084d89d205d40d

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '92456a2b0a0d71168e016c4d01fad2758c11d40ba941ebec7c084d89d205d40d' 'openssh-sftp-server_10.0p1-7+deb13u2_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) security main arm64 revision trixie-security-main-arm64:a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8

Completitud del registro

Fuentes y procedencia

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision trixie-backports-main-amd64:d39821bb4fc48252327fb05d82ee36a9b8a1446ae693561c7389741ccb0a2c7b

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    d76b03d2e95d41787657f3526c331993526b4b17f6cc09094b0675bcbf57dc7c
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: d39821bb4fc48252327fb05d82ee36a9b8a1446ae693561c7389741ccb0a2c7b
    Observed SHA-256: d39821bb4fc48252327fb05d82ee36a9b8a1446ae693561c7389741ccb0a2c7b
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-backports-main-arm64:acf4939d14c5d5ed995554b7d34e1431dd020622de39cce80c0a28de73e15357

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    d76b03d2e95d41787657f3526c331993526b4b17f6cc09094b0675bcbf57dc7c
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: acf4939d14c5d5ed995554b7d34e1431dd020622de39cce80c0a28de73e15357
    Observed SHA-256: acf4939d14c5d5ed995554b7d34e1431dd020622de39cce80c0a28de73e15357
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Observed SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Observed SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-security-main-arm64:a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    fb4f5284b755510aafc1d8a39ef966c7ef714aaab3ecc24baae0a67c38518ab5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8
    Observed SHA-256: a1606cb4e67822be93a6484199cd3ca52e27a8be038314abcac98bbd484c43d8
    Result: match verified

  • Debian SecurityAug 30, 2026

    Authoritative source; repository metadata signature verified, revision trixie-security-main-amd64:dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    fb4f5284b755510aafc1d8a39ef966c7ef714aaab3ecc24baae0a67c38518ab5
    Signer fingerprint
    B0CAB9266E8C3929798B3EEEBDE6D2B9216EC7A8
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 2, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e
    Observed SHA-256: dc1fe8c451d5ad17fe1ab51a53a09aa339509450dccf3cc574b243af9d7bd45e
    Result: match verified

openssh-sftp-server Package for Debian 13 (Trixie) | OpenFactory