This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-phplist-12.1-squeeze-amd64-xen.tar.bz2.sig gpg: Signature made Tue Jun 4 15:13:39 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum ac2231717db7e16d4f08a2f92aea652b425f6010 * md5sum 9def9b0380b289d889caf42e59327e5d You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrgQdAAoJEIXCXpWhbrlNPW8H/RzM9XhxGplLmRQAm1NRJZyd gyMZt5V/UX8Nflp19xgOCokmE0ytyGxOCxAhz89PJkS55WwCOHQstQo6zJ4YCCft 2nqkR8Gyny8psUUZvLk3AEhx8k/+vANz8EX1F3Mjuc27niGKYN+z6K8/Mour1Ft/ F8oKzoEm1P9a3MSEY7WimRAOLdBJkKV99+4eMF2ylUPo4Z5NI1i74txgcY7MEILf GdevYHKtvPvJXEUOIrecpNDpPi/WnT0z1RIUO1K2lnZ6MZt6rih2FKvSjkssVJGM 8/KSDRrAvgHPI2Lw8+REXLMink4D5BX1JKwnY8U6ydwr2QvCTtG/W5GZdpVV+58= =4lB6 -----END PGP SIGNATURE-----