This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-openphoto-13.0-wheezy-i386.iso.sig gpg: Signature made Mon Oct 14 18:18:24 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 23df5eb59ad0753acf8c0cf80eda70fe6bc8c90f * md5sum 1d255a5d89cb6ca948f1821e8a97a7af You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXDViAAoJEIXCXpWhbrlNSYMH/RXWcN8FKJ4EMDIpgycpT0d7 E6X9l2b+Wxn8WgWKrHXrS6tFQZAQDh9ydG2cPTYrFhnToD++CsG10EbIWhMJbwhd MPPHJkPbwzi7s4fU7dJG7uSVMfhgvGDdddPeAJcZ7dpnpDAwF8LXMyAP4imoOevs 0VwZaOwzuUUlBXEbiONPwBBo5j3HdUC4TIjGgRkPXOK5+ayw7RCZQQSaO9ljmhSn xBTDrZ1JudahVUdJb4kfh2JU736lhjD8TGdhgtSn1f7+QE8vIWX0Vat9uQKhgETD 70jIiAMuO4pMo8nadRuO/xHxMNPkZqulZshKTDISi/K8nTQEI1uzHkxFkGEaWOE= =Bx1s -----END PGP SIGNATURE-----