Linux workstation

Debian 12 (Bookworm) native package

mosquitto-clients

Mosquitto command line MQTT clients

Packages / Debian 12 (Bookworm) / net / mosquitto-clients

[Source: mosquitto]

Package: mosquitto-clients (2.0.11-1.2+deb12u2)

Maintainers:

Roger A. Light

External Resources:

Homepage: [mosquitto.org]

Similar packages:

Mosquitto command line MQTT clients

Other Packages Related to mosquitto-clients:

  • dep: [libmosquitto1] (= 2.0.11-1.2+deb12u2)

    MQTT version 5.0/3.1.1/3.1 client library

  • dep: [libc6] (>= 2.34)

    GNU C Library: Shared libraries

  • dep: [libcjson1] (>= 1.7.5)

    Ultralightweight JSON parser in ANSI C

Download mosquitto-clients

ArchitecturePackage SizeInstalled SizeFiles
amd64108 KiB287 KiB[list of files]
arm64106 KiB303 KiB[list of files]

Package file paths (10)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

  • /usr/bin/mosquitto_pub
  • /usr/bin/mosquitto_rr
  • /usr/bin/mosquitto_sub
  • /usr/share/doc/mosquitto-clients/changelog.Debian.gz
  • /usr/share/doc/mosquitto-clients/changelog.gz
  • /usr/share/doc/mosquitto-clients/copyright
  • /usr/share/lintian/overrides/mosquitto-clients
  • /usr/share/man/man1/mosquitto_pub.1.gz
  • /usr/share/man/man1/mosquitto_rr.1.gz
  • /usr/share/man/man1/mosquitto_sub.1.gz

Field source: Debian 12 (Bookworm) main amd64 revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

Use this package

OpenFactory can boot this operating system in a browser VM, or start a build that includes the native package name from this record.

Versions, suites, and repositories

Each row is recorded package-index metadata for one version, architecture, suite, and repository. Names, URLs, and sizes are source-reported; a link is a potentially mutable retrieval location, not an OpenFactory redistribution claim or proof that OpenFactory retained the artifact bytes.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
2.0.11-1.2+deb12u2bookworm / mainamd64Debian 12 · main · amd64109 KiB287 KiBpool/main/m/mosquitto/mosquitto-clients_2.0.11-1.2+deb12u2_amd64.deb
2.0.11-1.2+deb12u2bookworm / mainarm64Debian 12 · main · arm64107 KiB303 KiBpool/main/m/mosquitto/mosquitto-clients_2.0.11-1.2+deb12u2_arm64.deb
2.0.21-1~bpo12+1bookworm-backports / mainamd64Debian 12 backports · main · amd64113 KiB286 KiBpool/main/m/mosquitto/mosquitto-clients_2.0.21-1~bpo12+1_amd64.deb
2.0.21-1~bpo12+1bookworm-backports / mainarm64Debian 12 backports · main · arm64111 KiB306 KiBpool/main/m/mosquitto/mosquitto-clients_2.0.21-1~bpo12+1_arm64.deb
2.0.11-1.2+deb12u1bookworm-security / mainamd64Debian 12 security · main · amd64108 KiB287 KiBpool/updates/main/m/mosquitto/mosquitto-clients_2.0.11-1.2+deb12u1_amd64.deb
2.0.11-1.2+deb12u1bookworm-security / mainarm64Debian 12 security · main · arm64106 KiB303 KiBpool/updates/main/m/mosquitto/mosquitto-clients_2.0.11-1.2+deb12u1_arm64.deb

Field source: Debian 12 (Bookworm) main amd64 revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

Checksums and observation dates

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

2.0.11-1.2+deb12u2 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: a51d89c0185d4d4af752eabdfcd0c02682799e4903d40fa1a6c240a9a804b664

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'a51d89c0185d4d4af752eabdfcd0c02682799e4903d40fa1a6c240a9a804b664' 'mosquitto-clients_2.0.11-1.2+deb12u2_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) main amd64 revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

2.0.11-1.2+deb12u2 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 88ec20b5375b835a62f609a24186c9fe1782c673319f2f4e1e880dcaba4bc2d8

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '88ec20b5375b835a62f609a24186c9fe1782c673319f2f4e1e880dcaba4bc2d8' 'mosquitto-clients_2.0.11-1.2+deb12u2_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) main arm64 revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

2.0.21-1~bpo12+1 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: c78b99dfe9d8f5883c5380b91243a6abbbecf35c9962056882adf9f4e691f9b4

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'c78b99dfe9d8f5883c5380b91243a6abbbecf35c9962056882adf9f4e691f9b4' 'mosquitto-clients_2.0.21-1~bpo12+1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) backports main amd64 revision bookworm-backports-main-amd64:b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6

2.0.21-1~bpo12+1 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 688de0e771101eb1a9087c496c6d8c40180cd61acbc3e9120b9e58a6c7fbad96

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '688de0e771101eb1a9087c496c6d8c40180cd61acbc3e9120b9e58a6c7fbad96' 'mosquitto-clients_2.0.21-1~bpo12+1_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) backports main arm64 revision bookworm-backports-main-arm64:9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5

2.0.11-1.2+deb12u1 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 2441e6019f78565edfe0f2f90bfe66efd2536435f7a7a555e2c4c6d5069364b1

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '2441e6019f78565edfe0f2f90bfe66efd2536435f7a7a555e2c4c6d5069364b1' 'mosquitto-clients_2.0.11-1.2+deb12u1_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) security main amd64 revision bookworm-security-main-amd64:f6c2fe702b8cabb044e7bb46c5eaf3962abb6cfed5fcac896ffeb271b9d15104

2.0.11-1.2+deb12u1 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: 3a0b49c3e27f3f98bbdfdd44fa49c8acd45570a79484f83b02b1c95d5670fbca

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' '3a0b49c3e27f3f98bbdfdd44fa49c8acd45570a79484f83b02b1c95d5670fbca' 'mosquitto-clients_2.0.11-1.2+deb12u1_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 12 (Bookworm) security main arm64 revision bookworm-security-main-arm64:f9b8756324afddf50b1c19d6d46164158c0361909fddc40b48777ad665dfdb14

Catalog record completeness

Sources and provenance

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision bookworm-backports-main-amd64:b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    43c0dc1b38775aa77216f1aca0b9e47abde4ef3b6f223fd965a6464f45da709d
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6
    Observed SHA-256: b863aa021bef70ee6ca393bbb9267d954281b77fd02a1d485c8259303ffdc0e6
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-backports-main-arm64:9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    43c0dc1b38775aa77216f1aca0b9e47abde4ef3b6f223fd965a6464f45da709d
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5
    Observed SHA-256: 9a9a82396b83567fd3c9e3df7d9190b5685c1bf07ef2ad14e04ad353b0caf4d5
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-main-amd64:9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    77737fa4b34f2693e982cc9ee35736816c35a7778fc2d326cc1bbf5b301fe1aa
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5
    Observed SHA-256: 9e0b5aabb2465b3d2e7a7fe27f9913846277833f7a2826e7767acccff5b588c5
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-main-arm64:2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    77737fa4b34f2693e982cc9ee35736816c35a7778fc2d326cc1bbf5b301fe1aa
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00
    Observed SHA-256: 2ddb1737692e8c45c53e8d57c0ce4cd21c78c5703b830c3226b1423566a06c00
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-security-main-amd64:f6c2fe702b8cabb044e7bb46c5eaf3962abb6cfed5fcac896ffeb271b9d15104

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    6d12b591dde8841119e7e66de94b2af438681faebffabe08ea364290f7aaee1c
    Signer fingerprint
    ED541312A33F1128F10B1C6C54404762BBB6E853
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: f6c2fe702b8cabb044e7bb46c5eaf3962abb6cfed5fcac896ffeb271b9d15104
    Observed SHA-256: f6c2fe702b8cabb044e7bb46c5eaf3962abb6cfed5fcac896ffeb271b9d15104
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision bookworm-security-main-arm64:f9b8756324afddf50b1c19d6d46164158c0361909fddc40b48777ad665dfdb14

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    6d12b591dde8841119e7e66de94b2af438681faebffabe08ea364290f7aaee1c
    Signer fingerprint
    ED541312A33F1128F10B1C6C54404762BBB6E853
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: f9b8756324afddf50b1c19d6d46164158c0361909fddc40b48777ad665dfdb14
    Observed SHA-256: f9b8756324afddf50b1c19d6d46164158c0361909fddc40b48777ad665dfdb14
    Result: match verified