This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-6-turnkey-lapp_12.1-1_i386.tar.gz.sig gpg: Signature made Tue Jun 4 21:40:06 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 2bd6f3a68958a45cf8c40e22910965cae96202c2 * md5sum c4dbb1afd0bc2b42cedc29950b55ad99 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrl6uAAoJEIXCXpWhbrlNMQkIALaZquBkYgGKN+qXkoUe1LUp FR66Xl/p4AyTfd8havUQhHXZiuIb8gFwT+zCL4LN5vwqG1fOzb6MJTL/CUvvgK5F uFxx0S9J+Wfg2+Zk9Gwb3pte1BEw1pAMkOgBqqidXV4Qva4RtUyL8pvpv2oQIUXU xVynqM1MQRGAeLM0Ui9Qp2oXjPR4wOE6F6Q7sOLru8IzgbMaZQjOCRy6rK9WeV9s Zwscbe4BiQRuEBDD4a0kQpZQHPBxb/LmB9jaC6VTuceeUP0vAg8WgJucDRNLpCjZ teworKn70rgCH0k2n4C/ysAOiWc6BA2E9oC3pZvthXsEwTktWT/UXrXb5mNB8vk= =+zBV -----END PGP SIGNATURE-----