This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-ezpublish-12.1-squeeze-amd64-openstack.tar.gz.sig gpg: Signature made Tue Jun 4 13:41:14 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum c6438626616f9ba115f9b5515d757df101012a82 * md5sum fe0fda6558936f3ac5b58d7f0934fec2 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRre5wAAoJEIXCXpWhbrlNe4UIAOAxJ41vXhheheIvNzX/4KYD 3tMRDjzutBFpJjowD5V0g9cj8bRfVhYMFtjYIlT7bTPIuAPC12mvBdpNg+d9rtlw BeKUjMyujXhEh/bk4++GNikB0b8TdsMmpcxmHoP4Su4S6gZyTUyXhzu3HgKRliMf 0OQwYx3JbCtprS79A6L4g7KSgSRs2QaAVAXZj3Sl+IA7OjScAY0XgK89OFcjvZz2 fSWNV2yQgaut8toc1AiOYU0yrcJkT/n+B1ZoiqenE/1qIWOnRJXkzSCI4uPd6sTN cCJ4u24uPu6JjLFCss9mq/C6Nxuixr0SuXnFrZXDaEuVkaW82KRIMvWLs1VKJfA= =HgQX -----END PGP SIGNATURE-----