Help center support eXpress
We've collected answers to popular questions to make eXpress easy and convenient to use. Didn't find the answer to your question? Contact our support team.
- Welcome to eXpress
- eXpress Support
- Introducing eXpress & Glossary
- Installation & Updates & Requirements
- eXpress & ETS Apps
- Updates & Release Notes
- Network & Time Sync & Environment & Certificates
- Language & Spell Checking
- Android App
- iOS/iPadOS App
- Aurora App
- Windows Desktop App
- macOS Desktop App
- Linux Desktop App
- Web App
- Outlook Add-In for Conferences
- Server-Side Software
- Troubleshooting App Installation, Updates, and Operation
- Registering & Logging In
- User Profile
- Chats, Channels & Threads
- Contacts
- Tags & Tabs
- Files
- Calls & Conferences
- Push Notifications & Counters
- Fixing Background Work on Mobile
- Bots & SmartApps
- Diagnostics & Logs & Cache
- Admin Panel
- Jira Support Portal
- Technical Support for Admins
- Database Modifications Policy
- eXpress Documentation
- Privacy Policy
Linux Desktop App
- System Requirements for Linux
- App Formats for Linux
- Installation on Linux
- Certificate Installation on Linux
- Credential Storage on Linux
- Updating on Linux
- Uninstalling on Linux
System Requirements for Linux 
| Computer |
|
| Operating System |
|
| Additional Conditions |
After installing the libraries, log out and back in or restart the computer. |
| Required Permissions |
|
DEB Package Signing for Astra Linux With Closed Software Environment Enabled
If Astra Linux has the closed software environment (CSE, integrity control) mode enabled, the system blocks installation of packages that are not signed with a trusted digital signature. The standard eXpress DEB package does not have such a signature, so installation will fail.
For branded ETS apps, package signing for CSE operation is performed upon request — contact eXpress support. The obtained developer key must be added to trusted keys according to Astra Linux documentation.
App Formats for Linux 
| Package Format | Description |
|---|---|
| DEB | For Debian-based systems (Ubuntu, Astra Linux). |
| RPM | For Red Hat-based systems (ALT, Red OS, Fedora, RHEL-like). |
| AppImage | For any Linux OS. |
Installation on Linux 
Standard Installation
| Package Format | Description |
|---|---|
| DEB |
|
| RPM |
|
| AppImage |
|
Are There Repositories for Automatic Installation on Linux?
Public eXpress repositories for Linux are not available. Many organizations set up their own local repository: the latest package is automatically downloaded via permanent links (see Linux Application Formats), placed into the organization's repository, and then workstations are updated using standard package manager tools. The version and hash sums of the current package can be obtained automatically from the YML files listed in the same section.
Installing on ALT Linux 
Starting with version 3.68, the RPM package requires the dependencies (libXtst or libXtst6) and (libuuid or libuuid1). The apt-get package manager in ALT Linux does not support such conditional (boolean) dependencies. The apt-get install command fails with unmet dependencies, even though the libraries themselves are present on the system.
| Installing on a Single Computer | Install the package with the rpm command: sudo rpm -i eXpress.rpm
⚠️ After such an installation, apt-get stops installing other packages and updating the system: it sees unmet dependencies for eXpress. The |
| Installing and Updating via Your Own Repository | Before adding the package to a local repository, repackage it without the conditional dependencies. Either of the two utilities from the standard ALT repository will work. epm (the eepm package): epm repack eXpress.rpm
⚠️ When repackaging with epm, the installation scripts of the original package are not carried over: the rpmrebuild preserves the installation scripts. Rebuilding requires more than 2 GB in the temporary folder. In ALT, the sudo apt-get install rpmrebuild
echo '%__find_scriptlet_requires /bin/true' >> ~/.rpmmacros
mkdir -p ~/rpmrebuild-tmp ~/rpmrebuild-out
export RPMREBUILD_TMPDIR=~/rpmrebuild-tmp
rpmrebuild -p -n -d ~/rpmrebuild-out --change-spec-requires='sed -e "s/(libXtst or libXtst6)/libXtst/" -e "s/(libuuid or libuuid1)/libuuid/"' eXpress.rpm
The line in Place the resulting package in the local repository and update its indexes. After that, installation and updating are performed as usual: On computers where the package is already installed via The package is modified after repackaging. When contacting support, state that you are using a repackaged build. |
| Without a Repository and Without Modifying the Package | Use AppImage. It does not register in the package database and does not affect apt-get. The app in AppImage format finds and installs updates itself. |
Certificate Installation on Linux 
Installing corporate server certificates so that the connection works (not required by default).
On Astra Linux and RED OS, the Ministry of Digital Development National Certification Authority certificates are already included in the system — if the server has switched to them, no installation is needed.
For Administrators: Installing a Certificate on Linux
Step 1. Install the Certificate in the System-Wide Store
The procedure depends on the distribution family.
| Linux family | Steps |
|---|---|
| Debian, Ubuntu, Linux Mint, Astra Linux, Kali Linux and their derivatives |
|
| RED OS, ALT Linux, RHEL, CentOS, Fedora and their derivatives |
|
| Arch Linux, BlackArch and their derivatives |
|
Step 2. Check Whether This Is Enough for the Desktop App
On some distributions, the desktop app uses not the system-wide store but its own user certificate database. In this case, a typical picture emerges: curl and browsers connect to the server normally, while the app shows a certificate error.
| Distribution | Is the system-wide store enough? |
|---|---|
| Astra Linux, RED OS | Yes, step 1 is enough. |
| Debian, Ubuntu, Linux Mint and their derivatives |
No. Additionally perform step 3. |
If your distribution is not in the table, check with the command:
readlink -f /usr/lib/x86_64-linux-gnu/libnssckbi.so /usr/lib64/libnssckbi.so 2>/dev/null
If the output contains p11-kit-trust.so — the system-wide store is enough. If the file links to itself or the command outputs nothing — perform step 3.
Step 3. Install the Certificate in the User's Certificate Database (NSS)
Run as the user under which the app runs, without sudo.
- Install the
certutilutility — on most distributions it is not included in the base installation:
sudo apt install libnss3-tools
for RPM distributions:
sudo dnf install nss-tools - Add the root certificate:
certutil -d sql:$HOME/.pki/nssdb -A -t "C,," -n "Certificate name" -i ./CERTIFICATE.crt - If the certificate has an intermediate, add it too — with different trust flags:
certutil -d sql:$HOME/.pki/nssdb -A -t ",," -n "Intermediate name" -i ./INTERMEDIATE.crt - Check that the entries appeared:
certutil -d sql:$HOME/.pki/nssdb -L
If certutil reports SEC_ERROR_BAD_DER, the certificate file is in binary DER format. Convert it and try again:
openssl x509 -inform DER -in CERTIFICATE.cer -out CERTIFICATE.crtStep 4. Restart the App
Fully quit the app — closing the window is not enough; it keeps running in the notification area. You can check and quit it like this:
ps aux | grep -i express
After that, start the app again.
If your organization's server has switched to Ministry of Digital Development National Certification Authority certificates, see the instructions.
Credential Storage on Linux 
Authentication data is stored in the system keyring, which provides the Secret Service. Which keyring is used depends on the desktop environment:
- gnome-keyring — in GNOME and most other environments. To view keys, open Passwords and Keys (Seahorse) in Ubuntu, Astra Linux, and others;
- KWallet — in the KDE environment (in Plasma 6, the service is provided by the
ksecretdcomponent). To view keys, open KDE Wallet.
Creating a Keyring
If no application has yet created a keyring on the system, eXpress will prompt you to create one when it starts:| Environment | Description |
|---|---|
| GNOME and others | A window opens prompting you to create a password for the keyring. ⚠️ On subsequent app launches, the system may ask for this password again. |
| KDE | When the app first accesses the keyring in KDE, the KDE Wallet Service wizard opens and prompts you to choose an encryption type:
⚠️ The GPG option requires the user to already have a GPG key suitable for encryption. If no keys exist, the wizard shows the error “It seems there are no keys suitable for encryption in your system. Install at least one encryption key and try again,” and does not offer to create a key.
What to do if this error occurs: click OK > < Back and select Classic blowfish encryption. Alternatively, create a GPG key in advance with the command: |
Removing App Keys from the Keyring
If you remove the app's authentication keys from the keyring, the authentication screen will open after the app restarts. With a standard app uninstall, the keys are preserved.
For Administrators: Application-Specific Keystore
ETS
Since version 3.42, /home/user_name/.config/app_name directory. Contact eXpress support to get more details.
Updating on Linux 
The app in AppImage format finds updates on its own and offers to install them. The app from a DEB or RPM package finds updates, but you have to download and install them manually (details). Check for updates manually: Settings (avatar button) > Check for updates.
For Administrators: Additional Update Options
Disabling Update Checks
- Create an AppConfig.json in the
/home/user_name/.config/app_namefolder and add:
{ "AutoUpdate": false, "Update": false }
Pre-made file: AppConfig.json. Version 3.54 or above is required. - Or, block access to the
updates.express.msresource (ETSapp uses its own updates server, if configured).
Standard Update
Manual updates are performed as a standard installation (see above).
For Administrators: Centralized Updates via Puppet, Ansible, or a Package Manager
If the package is installed centrally — via Puppet, Ansible, or a package manager on a schedule — add an app restart as a separate step after the package installation. Otherwise, the update will be applied on disk but not in the running app.Uninstalling on Linux 
| Package Format | Description |
|---|---|
| DEB |
|
| RPM |
|
| AppImage |
|
eXpress.For Administrators: Uninstalling the App With Full Cleanup of Traces 
- Uninstall the app using the standard method (see the table above).
- Open the keyring manager (Passwords and Keys in Ubuntu, KDE Wallet in KDE, Seahorse in Astra Linux, and others) and delete the keys that start with
eXpress. - Delete the app profile folder in the file manager:
/home/username/.config/eXpress
or via the terminal:
rm -rf ~/.config/eXpress - Delete the remaining local user data:
rm -rf ~/.cache/eXpress ~/.local/share/eXpress ~/.local/state/eXpress - If the app was added to autostart, delete its shortcut:
rm -f ~/.config/autostart/eXpress.desktop - Check for installation leftovers — the package manager usually removes them, but after uninstalling an RPM package, the
/opt/eXpressdirectory remains empty:
sudo rm -rf /opt/eXpress /usr/bin/express /usr/share/applications/express.desktop - For AppImage, additionally delete the
eXpress.AppImagefile, and if AppImageLauncher was used — the integration file in~/.local/share/applicationsand the pinned shortcut.