This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-6-turnkey-mahara_12.1-1_amd64.tar.gz.sig gpg: Signature made Tue Jun 4 14:08:20 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 409a50e48b29f626aa58d5fe780cc8158257ad71 * md5sum 92e53557ea4d4424957616c11f7054c4 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrfTPAAoJEIXCXpWhbrlNuxcIAJzudTy/tRTA6/SMM1KIuqHB 5sXFUZZUXyQP78LPOTVbcsnhZMa6QmeFG/8d+wmQQ7G8fhj1qr+4ZlrJEzvqebrK JKEwU+1C2W4y4NGd8ngQjwNiQ04Cb9HYSP57lilyix9Z1/+z5aR48HPjRUa8/VWG iMU1HGlF3PWGYk4fbrNNQl1AtbjWel0nYUBJqZI9YSWF03x7+zXgPUy50cZA0sM1 bSnxm09rSW835/vlJwQcq8UXOi61IZ1PrSrOB4SeBZkeO3W/hjc6sm0YdjKdjWEr QNP1BKdoj2cuDERYK7s0k+2GTfAO41YTSh9LdZA6z296Migzh1W8WPBBhmHQVj8= =R+n1 -----END PGP SIGNATURE-----