This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-lapp-13.0-wheezy-amd64-xen.tar.bz2.sig gpg: Signature made Fri Nov 1 09:04:52 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 7b9cb85fba3cd67fce49dd1587fee36cbdb0dc89 * md5sum 0ff52b78e7b9787cfaf5a821a2026b72 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSc26vAAoJEIXCXpWhbrlNduAIAJ2DPXGRTg/9IKt9VvSZCRAb 5EQaPiTYYKmYTxQbEU5XWiUmMRz1yEa/sqmcGw4GGdE51rcr4jD+dLfleBW3wz6d iXMWsaCHxZFy5AMB7L/GvvkN710KBdvlof+bhTkhgPYKAZP2SdsTK7SbHleh7Jnd 6CnKpQd1nsf2FLJNIXcxPEeu2eKTm524ZnpiXByLp9MdD8EDdF1qDpK2gVB8VUc0 IX52/Opavc/QrR/2lArg4phrNmxbwlYwlIubmK51lvQXwjL0TKe7r42zdK5Zm711 yM1czpD4V4kgoIHLPsbkGwNi8CXLD0ajWpJWUQDfvFYfDzNEK6t8buzxNocs+Wk= =tXYs -----END PGP SIGNATURE-----