Skip to content

Install on Debian

For Debian 12 (bookworm) and 13 (trixie), on amd64 and arm64. Or use the one-liner.

Terminal window
sudo install -d -m 0755 /etc/apt/keyrings
curl -fsSL https://pkg.updawg.net/updawg.asc | sudo tee /etc/apt/keyrings/updawg.asc > /dev/null

If gpg is installed, check the fingerprint before going on:

Terminal window
gpg --show-keys /etc/apt/keyrings/updawg.asc

It must be 4FFF 29A6 2F24 ACF3 E043 76EE DFD5 B8C2 CBCF 67C5.

Terminal window
echo "deb [signed-by=/etc/apt/keyrings/updawg.asc] https://pkg.updawg.net/apt stable main" \
| sudo tee /etc/apt/sources.list.d/updawg.list
sudo apt-get update

signed-by means this key is trusted for this repository only, and no other key is trusted for it. Replace stable with beta for every build as soon as it passes its tests.

Terminal window
sudo apt-get install updawg-agent
sudo UPDAWG_TOKEN=enr_... updawgctl enroll
sudo systemctl restart updawgd

The package starts updawgd, which waits while the host is not enrolled; the restart is what makes it pick up the identity enroll wrote. sudo updawgctl status shows where it stands.

Path What
/usr/bin/updawgd, /usr/bin/updawgctl The agent and its command line
/usr/lib/systemd/system/updawgd.service The service, enabled and started on install
/etc/updawg/agent.toml Its configuration — a conffile, so an upgrade never replaces your edits
/var/lib/updawg/ Its identity and state, written on enrolment

Upgrades arrive with your ordinary apt-get upgrade, and restart the service only if it was running.