This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-vanilla-13.0-wheezy-i386.iso.sig gpg: Signature made Mon Oct 14 19:34:28 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 63ee1f3f9b6cce01357cf2f4fd963650687c602e * md5sum 216c24260d54fbeb0bc028a20381b224 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXEc5AAoJEIXCXpWhbrlNZjUIAJ572xNE9BTyYoaTTztGAzU2 2+5axsHoeVxsn+QqthziultzaIA52BRf45LFyc3In0blyyAGD1LyoFTceRsja7NC LetuE22MDGj+T2ONsM9GHNZrePB6lKpL7g1w069MVSOw1+dfzfs1p7fpnQ5hzr4z x4IdhjSlau1uoh+RLvNbTf5Qv20RR3MnuHV0iAxt0UuVrKyyVYejQP/yNGZIfZbu 9onL8lz0XQmGDNZNyh4JqV4RPjq0OhwsL5PgWPkE4iYgLri2ay5SkRcAMyya/Obn Jbx6Sbg8crGstmykaxq/9iSmZ4KCodOW+DnviiLO94SB2RQnT1hKgpCHPQ1Tyyo= =dfL/ -----END PGP SIGNATURE-----