This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-vanilla-12.1-squeeze-i386.iso.sig gpg: Signature made Thu Apr 18 16:28:54 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum d13d73b0148f526d81c19cd78d6949cc2e8656ce * md5sum 1f534323026eb781063699476d6af113 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRcB88AAoJEIXCXpWhbrlN8NUH/AnDKzR65r/UeWmwbG/bhWhL hLUkb/NsXQDTzSjGXncadPKFku06I/tqhSuQtp0vCVQ3TplJve/SMq4awQIok7kP gqtEthzCr91++egGW5STG8UwkaXIVxksUK0ssS1J5mj+KRvmOroF0++R7Na6FE2f qdyt/fXjQq6fwRyc3ijyM1ix9W0v8LEcqHDRFWJ3YyfLBumi5o0e8pSGUCkxpmgx e18omdMukQ1/M1AaQOAwabfOYVAzlJqbbD7Zk4mkGTUBRNyEEp6Q0Z52VR438ZnZ 866vpK4TbOLCereVEnPAr+heVFr5UlnjTb5ohDQ5EzgVc9KYIpiyQwaHF7AQpd8= =5xr3 -----END PGP SIGNATURE-----