This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-6-turnkey-simpleinvoices_12.1-1_i386.tar.gz.sig gpg: Signature made Wed Jun 5 00:07:13 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum b8cb1718f9d8f15fc4a1422fe9074da667694f13 * md5sum 219b2229b2f029fdfa068dcb69b87b3a You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRroEnAAoJEIXCXpWhbrlNL8QIALw3l2ozIYD3Ua/DmtQr0PuR tHaVWX1YLMer1/2pivAX7BFDQEjhHvuGMdemrI1eANwWL+kCNLytJpc7r9XYYTsk igLgqktrrIyLCWCqs3kM48A4DXNB6YQAkbAk7dWNLb/40csjY2zMB0nTTQrEVLJR hy4CR6T4Itp6/v6wRtpXzpNCo13GsbFP6MSWGeIWP+iDTuu/OV3YtaNBXLO1Xtxf voZ/ta2JZk5PW9y+gbDAF4GYnEQ+ruPy5+Yn74eGAAv3EF6rAwyk4efoTctrHnj3 3BwfM4pGtLZnl3TlW+orurPxI6qYFq8S5EJgBiX4xme9njXFVURqilXhwkj5etM= =tDa8 -----END PGP SIGNATURE-----