This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-couchdb-13.0-wheezy-amd64.iso.sig gpg: Signature made Tue Oct 15 15:02:30 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum daf157fd970914440876e223e1d877fe1e43c6d1 * md5sum 2ec1385b77f730677296d50c2b953fa7 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXVj9AAoJEIXCXpWhbrlNlF0H/168T42HKQV21Dt9oMbLhKix znyxhQX6C+gyRpr4xWKKGzSSz4nBlzEtkLwWLGzFG+NaQava7YXxzpN1M4s7Elgf nHrb6jhVAHkqDVbRQEtNoBRC/GiZdTiogNezQmvu1QzMgMnSUCOHG8T42jgMsQ5+ dwGq9kHsoT1YVqPuEUFDymAh59Grfwzv0bZrR7NyDts8cGe/VQfW2hM7Ya7xUf+x bnknjRmD8+87Z7Fuu5dyufGlZETuAyDBjM8RIgGM25yTiTyHq67MGNCyTrHDZFDo 2dHyia4i2KpGkjThoFQL/Lz2mLuz0NaAYM0w7bfj57U1QeRgJPhgFAkZJr3bgMI= =MTxV -----END PGP SIGNATURE-----