This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-lamp-13.0-wheezy-amd64-openstack.tar.gz.sig gpg: Signature made Wed Oct 16 09:04:18 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum a87a9dd0edbdbd83064fb0a87d82f6b7cb3586fd * md5sum 08b96e6dead85a088973e005180b62e0 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXlaJAAoJEIXCXpWhbrlND/8H/2deIbc/Eyjjci0s3YYkvezq HAlWry46ihkrW12oQ17WqnJDe3a0bVZmrwXMzAWw/+VzaFu2SkLJQ8jOdgjl3gfd umwLYvNKYoCGxi0eq2IISeLeyrqGN4oCN8/Hn3Urc1vc6QtLZ7ZmW4FDlWBFSbYB y2vOwud7Zd6AQLZS+rhLkkTiesfEYxgV9O32mdy52d28jzr5i05u4Ax02VbJMoqz tcpigylbL5lyzLka8G1zyjMuiMNSXcj4f415b9fotoMZA3BdtTQODHxevVLSXcAY nEbzf3fBtBoYr/xeofsOqsktriFTdhqywwPZcNr4vBhpAthL/pBcdbQ5hY9PDMA= =cPW0 -----END PGP SIGNATURE-----