This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-asp-net-apache-13.0rc3-wheezy-amd64.iso.sig gpg: Signature made Fri Sep 13 07:36:32 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum f8ea59cac6ecd7865188cabe849ea6c36042efc5 * md5sum 586eb73ca04e0778d736563d2f30e8bc You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSMsB3AAoJEIXCXpWhbrlNHXYH/jejOzyn3eDk0e633J7MaInE +71RWE0BNu663598dwYoignne1HxpL5gopKk804sAHn+hj7lFW2GMrbXF7NxJbd7 8SLAkajkv87So3KduGgP7doSbHmCQRFAKJ/z6CaQ/+R3hVTKXhq59BsO7a/+rhba qzExtiHbrOLvxTLtO91+H0c+KWHLwA70MNkoy970MuUp36Ah5X9GV0BtVndR3Vh7 qRuEnmWGfgNx5iinV4kFYs8LN9huo/ZfqNOe7z6rCHYCo9W12Te6NT8rfla9fvCE YPNcQEaq1YLKEo22WWZsQ66lIeFYrvGUFl+deB8erUJHCVxy7lwdf+YqyS6CaPk= =7f5F -----END PGP SIGNATURE-----