This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-6-turnkey-appengine-python_12.1-1_amd64.tar.gz.sig gpg: Signature made Tue Jun 4 12:27:34 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 0644019e870d60146c0b11ff917ba87dc067a352 * md5sum 452e686c8008667b757b6518ec522b82 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrd0tAAoJEIXCXpWhbrlNzwcH/3etPavEo9RLaBQfRLXEB/g3 x/kuYfZEnCxAG3wFs731MycCg66xvbFKCKh8l1VHlNKccE1PRfthjNKkt0i5ihb0 AAZ4wDq7uMMscD0AElhNjXENeOfOpEWu5HlHIvQhvBiE/Ygo78UpzEJ0MRraulL5 AeJna2GkbM9MnPwJr9bI9tijfEnNDJzGVrRGYtUV2DU/vq95jd9w29YKawkFKpTN At2II6pP0OoY2TvH1p3Hac0cXwJTNvwFon5d3OBzka1k05GhgJMRtqSun7zzZ8Lr qoOGl5G3f2wL9O+qZzpv4bWpdMnCSOkK4bapLEJme152v4zdQcUKiaqvicK5oUk= =HiMl -----END PGP SIGNATURE-----