This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-tracks-12.1-squeeze-amd64-ovf.zip.sig gpg: Signature made Tue Jun 4 16:38:17 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum f2b4dcf27b496b5a6493f87e38e27795d47a25ce * md5sum 250e892c00cf569d8433135ad10cf257 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrhftAAoJEIXCXpWhbrlNxtEH+wWc8DkLMDpLmwEJuRckODCO jD7OdFrL7bPV0RpOZtfwWq8cHDv0g/uRADmxi8ONDfBl+wDMzoYvoUpi3fOWYW7b M3ZZ+lee2RteCKQIXRC/HnFJv9HZ8618k04orauLJMRPqinCykbZIv2u4JJT2ZZT KwnLGnZpuJuAIZ6UYEvI4K2Xef3IFq6jd7idWxoVtv6WFoUm0Xlemu+KAjw67h/U n+NUrY2Bu4YbqZb4l3eY5pDonB0ii7cOwQZGusKZmLUU8FKG1kqu8CJHVaO8Dxrk pIrZG8IQLLR9U4Y5UYTiyJZXcRX7unswyH8H0+Z9GUmTxnXvpPoMOTnCs7kgcfs= =Foj2 -----END PGP SIGNATURE-----