This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-mediawiki-13.0rc3-wheezy-amd64.iso.sig gpg: Signature made Fri Sep 13 08:27:11 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 3fcb3918df3ef3fc8baef8af09266a984509c1c3 * md5sum 0ef176f7526d10d6ad033b3ce2da9629 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSMsxXAAoJEIXCXpWhbrlNUr0H/1pjyCkSEXBG0wuMwbVjeToQ uwc0di1tKpPpFQD7kd/O5l9z7h5Cd27kHFhQAEnXG2jUCmmCb3p1wBcq5yzJl75J 6xFDQt5WvxYwpysW4EknzdFIJFbEiaWg8WMdlwFsInPFAloZ8OOzSuBXvIgYq0ia g+NYp+85LcVCJ78woy5muO6ThL9AFlDBAJaC1dqKusveXQQZvhN5hQkGZv2rbDRK f+d2KgF39BIw16/m+LnAu4irUWEVgTfjcqMssMoVt+qW4JT8M/1vIB5KXzJ6A3vX 4UQuF49LqYBaLDk4bxT2GDmZbRBs4sotH++CEQo4MzEy4fd1YVRZ/GkQSBnRY5M= =vzOX -----END PGP SIGNATURE-----