This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-torrentserver-12.1-squeeze-amd64-openstack.tar.gz.sig gpg: Signature made Tue Jun 4 16:49:42 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum a06cf53535d223c3f13d20d20302bbf46a0de614 * md5sum 575cefaa24449e309acd5c3a2d8cc466 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrhqeAAoJEIXCXpWhbrlNr4AIALpi166glF74ZAIB/bXtrw0J umu9U+AWTPzpLlbZs6LZ0aPZGR5JrdDRpKfaNH72W9zmKgjPth4U81kgfwsQAMcL 8eaChoRTXN1D2GsZN914mfL+ZwPgjnBt6ZoeBP//Xs296zorL7UA8uPKtprMRbLY GWHA51+MbYT1+ldtEvEWW4CPVtnuOWjo/Nbcaa07HP71EZ6R5R16wRg2Pnbnbx55 NL4YhxYlf8RRBt+nmrh1foTWBnO/26kczIWeW9H19dVCC7Jg1wl/4n0RunNjSn+L QH6LVENGUSTKkomYfirnSRFkotIzUYqKPEYB0gX/XGD9HzMOZ0mU8/FlWkRUUTc= =S3Lx -----END PGP SIGNATURE-----