This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-etherpad-12.1-squeeze-amd64-vmdk.zip.sig gpg: Signature made Tue Jun 4 13:20:49 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 47f395a15295049b20f6bc99c1c74ea076790b2c * md5sum 938b7890920dc142aa0776584d7ba674 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRremmAAoJEIXCXpWhbrlNlHsH/jwDGpDo38Wjkki1iWYBpTM1 QIMnNw+DAfQxLlwYWdSrpNEuqzDAFnhKu69QylQLkk9Htec9nlPVHNrqikJNlLkF fdM5F7mN7eE3xop3sa+RZcsAewCc5AHCw30MmrcM/lTADhFac6KpTFLnF5daM81B FLZcn/zIQ9d/swK+HaShsRCPJL2ewf9gMg+0PcNUi8yDj5mepq5TXZgDidKTYWN2 E1oi0Gs0OYoZiyUs2Xb71QhTSrrSmzCYGBPJWe5BN+HNcv6bjqROVmYaHmXtZjRS qiExdMoQU1uLuaU025WjDIimcK2yZSEAEixRZAKKu8bLctKdVRZwLlZEPQy30Ik= =CmW3 -----END PGP SIGNATURE-----