This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-clipbucket-12.1-squeeze-i386-vmdk.zip.sig gpg: Signature made Tue Jun 4 20:13:43 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 2ac22b994d0b2b092fee13238a622c4176da2030 * md5sum 7e989abae26f46dda80fcab2f6b5d86f You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrkpoAAoJEIXCXpWhbrlNwIMH/i5olbjJhT5upSa7CFvOQyd9 uCrbbfvi6oUAfNiP01D/5L1NJs2dJ98IWEF/ks3Drg5joXrEjeIX3lhgy1tZh41R BiGynNv+cEMOxXrUQCF1k7TohZkFrVODEVVSu8Ztbe0K5393GGUAysoHjtwqluMG k7eDV4Cc+iaekPtD8r3n5CnbiiSYi9uayOY9uUonG5aftLd0SQP3XCs5F/Sz11vp 8eqIIM2+s65Wes6IcLZdDCbfNjLQS4x6H3hbgB2Lh245q3mRZbUWEkcRGCJ53JHd l9g/6dfjT6cQ/LwH3ONvGVuTLTu850xNR2iFIkqR6jGTFmDMVbMZjzi+3Wf47II= =APIm -----END PGP SIGNATURE-----