This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-b2evolution-13.0-wheezy-amd64-openstack.tar.gz.sig gpg: Signature made Wed Oct 16 08:29:51 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 39e2fbafedb6ad00b43b0400e973dd8f4d2ade4a * md5sum 3f73feec4653cc9944739e318b45352d You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXk52AAoJEIXCXpWhbrlNptAH/jFc4jZHSzqzbqcf3zJ0G1RK GZEV7rwRxdE27OH49dOCh9oFsbDmYT39G1ApX598clN7jrfFhSNz0tNSQWlp0B6I y7fU10iq++Kkb2oEdZ1lqLNOQU+I8BLRnnr7o3kwE8Dn7jz1eco2znyLWse4FRzR unAYUb9vsi30+ri+UKSJaSIfxGGZkRWoIpDY9B/tiLxvtGvHv6QSAUKP3sZ8wwda N0QUnOnW4+Tp16J30KzI1s621NoOB/vqOnhuLABKzwhEIi1N27gMIK8gOTCSF20i 2ri8aZ6mGzmZf5xv8wWwBDwaWpV8bhwhm+XIUlMf+Rh0nUffLoGXv+hNEpAWLrw= =VZVX -----END PGP SIGNATURE-----