This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-sitracker-12.1-squeeze-i386-openstack.tar.gz.sig gpg: Signature made Wed Jun 5 00:26:17 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum e962a31d3044c49178803006ef8a5e0142272d7e * md5sum ae78f858aabad834e52f1e0dfc1feecf You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRroWdAAoJEIXCXpWhbrlNA58IANYPT1+G+P2uaMLiWSxzcK73 sBeL6w0Hovu1E7YSrXZKglyYdfMPSqoWihPJX4F8w2CD0ndp+ZjHtoSltgknFJIX G1pO+EdqpqR0+gzVlHzTLs1unRaA7OklAJooVqgrIluUVcuFWbN7BvrWjNTFOakP WIH+w1WvrZ2uD0V1SCRswOtobhs9Icw/8jpTTkLfo5bU9pYBQFF3dKvo1jN2BQ4M y4IN5oYTG+KpQUdpMya6yf3mawFOkgndo/S/BtbZl8trS61JguaaC6V/ytlLrshv gvVBxRkN7xA9ftsdy4DAIN/ZGyjaSn9/QuC9t+0d0m665eZ6mblHkEjsW715cPg= =Ucrl -----END PGP SIGNATURE-----