Package Search Help

You can use boolean logic (e.g. AND/OR/NOT) for complex search queries. For more help and examples, see the search documentation.

Search by package name:
my-package (implicit)
name:my-package (explicit)

Search by package filename:
my-package.ext (implicit)
filename:my-package.ext (explicit)

Search by package tag:
latest (implicit)
tag:latest (explicit)

Search by package version:
1.0.0 (implicit)
version:1.0.0 (explicit)
prerelease:true (prereleases)
prerelease:false (no prereleases)

Search by package architecture:
architecture:x86_64 

Search by package distribution:
distribution:el 

Search by package license:
license:MIT 

Search by package format:
format:deb 

Search by package status:
status:in_progress 

Search by package file checksum:
checksum:5afba 

Search by package security status:
severity:critical 

Search by package vulnerabilities:
vulnerabilities:>1 
vulnerabilities:<1000 

Search by # of package downloads:
downloads:>8 
downloads:<100 

Search by package type:
type:binary 
type:source 

Search by package size (bytes):
size:>50000 
size:<10000 

Search by dependency name/version:
dependency:log4j 
dependency:log4j=1.0.0 
dependency:log4j>1.0.0 

Search by uploaded date:
uploaded:>"1 day ago" 
uploaded:<"August 14, 2022 EST" 

Search by entitlement token (identifier):
entitlement:3lKPVJPosCsY 

Search by policy violation:
policy_violated:true
deny_policy_violated:true
license_policy_violated:true
vulnerability_policy_violated:true

Search by repository:
repository:repo-name

Search queries for all Debian-specific (and related) package types

Search by component:
deb_component:unstable

Search queries for all Maven-specific (and related) package types

Search by group ID:
maven_group_id:org.apache

Search queries for all Docker-specific (and related) package types

Search by image digest:
docker_image_digest:sha256:7c5..6d4
(full hashref only)

Search by layer digest:
docker_layer_digest:sha256:4c4..ae4
(full hashref only)

Field type modifiers (depending on the type, you can influence behaviour)

For all queries, you can use:
~foo for negation

For string queries, you can use:
^foo to anchor to start of term
foo$ to anchor to end of term
foo*bar for fuzzy matching

For number/date or version queries, you can use:
>foo for values greater than
>=foo for values greater / equal
<foo for values less than
<=foo for values less / equal

Need a secure and centralised artifact repository to deliver Alpine, Cargo, CocoaPods, Composer, Conan, Conda, CRAN, Dart, Debian, Docker, Go, Helm, Hex, LuaRocks, Maven, npm, NuGet, P2, Python, RedHat, Ruby, Swift, Terraform, Vagrant, Raw & More packages?

Cloudsmith is the new standard in Package / Artifact Management and Software Distribution.

With support for all major package formats, you can trust us to manage your software supply chain.

Start My Free Trial
 Open-Source opennms opennms (The OpenNMS Group, Inc.) / foundation-2016 Project
OpenNMS Horizon (Foundation 2016): OpenNMS Horizon, Foundation 2016 version. Graciously hosted by Cloudsmith.
Note: Packages in this repository are licensed as GNU Affero General Public License v3.0 only (dependencies may be licensed differently).

Tool-Specific Instructions

Although we use GPG (and RSA) keys across each repository and package format, client-side tools might have specific instructions that differ (or require manual steps). To add or use the signing key for these tools, please click on the package format specific tabs above.

Public GPG Key

GPG-based keys/signatures are used by:
Debian logo RedHat logo

The public GPG key for the opennms/foundation-2016 is:

-----BEGIN PGP PUBLIC KEY BLOCK-----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=429p
-----END PGP PUBLIC KEY BLOCK-----

It has the following long (20 bytes) and short (8 bytes) fingerprints:

701E145FE26283F8C073BAAE697677243260D071
697677243260D071

You can download the GPG key or fetch it via the command-line:

curl -1sLf 'https://packages.opennms.com/public/foundation-2016/gpg.697677243260D071.key'

Please note that the GPG key for this repository has been manually specified by The OpenNMS Group, Inc.. It contains the following comment:

No comment provided

Public RSA Key

RSA-based keys/signatures are used by:

The public RSA key for the opennms/foundation-2016 is:

-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtWNZkd7xmOK/2oDFtIcy
e0rg9voqWgmTcKTECN7Dm/c44BgKTS8RrNCoedl71gbaQNoHiA3i+x+M8jds+FJh
CJ1g82EDCqH8Je5+hGkIlV4RbykcgX3ufOYJDkRHitXZ2+ZWHd6efMC18Bq+N2Bx
JK+QstI8UKojD5GM4kukZlnPOMGilZNHNlRGCwxT3NCK40lSKZLS5dVlwR2vAvYq
PNMl7XrArBafoHaPB48I29DKVqkV2TI/SBGtqHYW5wrwBE+x6e+cHPTPzXZQadNm
1mIVpgPr/YkWJQ3M8J8CnQzByPbQNx1p3hHyRaRCBsuEWfuFmTJvBrLy2kvUsLjd
hQIDAQAB
-----END PUBLIC KEY-----

It has the following long (16 bytes) and short (8 bytes) fingerprints:

ACD31A17BD0A7EB88CBBF959813A12B9
8CBBF959813A12B9

You can download the RSA key or fetch it via the command-line:

curl -1sLf 'https://packages.opennms.com/public/foundation-2016/rsa.8CBBF959813A12B9.key'

Need Help?

If you couldn't find what you needed in our documentation, then you can always chat to a member of our team instead. It's our mission to be your dedicated off-site team for package management, and we mean it. Come and chat with us, anytime.

What's this page? All Cloudsmith repositories and packages are signed using GPG (or RSA) keys where supported. GPG (or RSA) signatures and checksums provide reliable mechanisms to ensure that the packages that you download/install are neither corrupt nor modified. GPG is generally preferred, but RSA is used for some package formats (such as Alpine). Learn more in the signing keys documentation.

Top