Linux workstation

Debian 12 (Bookworm) native package

debootstrap

Bootstrap a basic Debian system

Packages / Debian 12 (Bookworm) / admin / debootstrap

Package: debootstrap (1.0.128+nmu2+deb12u2)

Maintainers:

Debian Install System Team

Bootstrap a basic Debian system

Other Packages Related to debootstrap:

  • dep: [wget]

    retrieves files from the web

  • rec: [gnupg]

    GNU privacy guard - a free PGP replacement

  • rec: [debian-archive-keyring]

    GnuPG archive keys of the Debian archive

  • rec: [arch-test] (>= 0.11~)

    detect architectures supported by your machine/kernel

  • sug: squid-deb-proxy-client

    Package not available

  • sug: [ubuntu-archive-keyring]

    GnuPG keys of the Ubuntu archive - transition package

  • sug: [binutils]

    GNU assembler, linker and binary utilities

  • sug: [xz-utils]

    XZ-format compression utilities

  • sug: [zstd]

    fast lossless compression algorithm -- CLI tool

Download debootstrap

ArchitecturePackage SizeInstalled SizeFiles
all49 KiB325 KiB[list of files]

Chemins de fichiers du paquet (0)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

No package-associated file paths were observed for the displayed build metadata.

Field source: Debian 12 (Bookworm) main arm64 revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

Utiliser ce paquet

OpenFactory peut démarrer ce système d'exploitation dans une machine virtuelle du navigateur, ou lancer une construction qui inclut le nom natif du paquet de cet enregistrement.

Versions, suites et dépôts

Chaque ligne est une métadonnée d'index pour une version, une architecture, une suite et un dépôt. Noms, URL et tailles viennent de la source ; un lien est un emplacement de récupération mutable, pas une redistribution OpenFactory.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
1.0.128+nmu2+deb12u2bookworm / mainallDebian 12 · main · arm6444 KiB283 KiBpool/main/d/debootstrap/debootstrap_1.0.128+nmu2+deb12u2_all.deb
1.0.128+nmu2+deb12u2bookworm / mainallDebian 12 · main · amd6444 KiB283 KiBpool/main/d/debootstrap/debootstrap_1.0.128+nmu2+deb12u2_all.deb
1.0.141~bpo12+1bookworm-backports / mainallDebian 12 backports · main · amd6449 KiB325 KiBpool/main/d/debootstrap/debootstrap_1.0.141~bpo12+1_all.deb
1.0.141~bpo12+1bookworm-backports / mainallDebian 12 backports · main · arm6449 KiB325 KiBpool/main/d/debootstrap/debootstrap_1.0.141~bpo12+1_all.deb

Field source: Debian 12 (Bookworm) main arm64 revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

Empreintes et dates d'observation

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

1.0.128+nmu2+deb12u2 / allObserved Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 63f354316e9bbe747b143b7b0d83e5f237c90314a17734fba9ff202c2ef02760

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '63f354316e9bbe747b143b7b0d83e5f237c90314a17734fba9ff202c2ef02760' 'debootstrap_1.0.128+nmu2+deb12u2_all.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) main arm64 revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

1.0.128+nmu2+deb12u2 / allObserved Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 63f354316e9bbe747b143b7b0d83e5f237c90314a17734fba9ff202c2ef02760

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '63f354316e9bbe747b143b7b0d83e5f237c90314a17734fba9ff202c2ef02760' 'debootstrap_1.0.128+nmu2+deb12u2_all.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) main amd64 revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

1.0.141~bpo12+1 / allObserved Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: d1f22958e102750824362e5c55af172c46de941582d77150905480e5ba830c2e

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'd1f22958e102750824362e5c55af172c46de941582d77150905480e5ba830c2e' 'debootstrap_1.0.141~bpo12+1_all.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) backports main amd64 revision bookworm-backports-main-amd64:b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6

1.0.141~bpo12+1 / allObserved Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: d1f22958e102750824362e5c55af172c46de941582d77150905480e5ba830c2e

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'd1f22958e102750824362e5c55af172c46de941582d77150905480e5ba830c2e' 'debootstrap_1.0.141~bpo12+1_all.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) backports main arm64 revision bookworm-backports-main-arm64:9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5

Complétude de la fiche

Sources et provenance

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision bookworm-backports-main-amd64:b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    43c0dc1b38775aa77216f1aca0b9e47abde4ef3b6f223fd965a6464f45da709d
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6
    Observed SHA-256: b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-backports-main-arm64:9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    43c0dc1b38775aa77216f1aca0b9e47abde4ef3b6f223fd965a6464f45da709d
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5
    Observed SHA-256: 9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    77737fa4b34f2693e982cc9ee35736816c35a7778fc2d326cc1bbf5b301fe1aa
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5
    Observed SHA-256: 9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    77737fa4b34f2693e982cc9ee35736816c35a7778fc2d326cc1bbf5b301fe1aa
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00
    Observed SHA-256: 2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00
    Result: match verified