This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-b2evolution-13.0-wheezy-amd64.iso.sig gpg: Signature made Tue Oct 15 14:48:31 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 0b8ea481e360402ec131472eadfbab84fe2d2677 * md5sum 7cf3e71c6cdd7953976a328b1cfa28de You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXVW3AAoJEIXCXpWhbrlNBcUH/i7VuIBwZw1qFJJZ1+/63aS+ udRQaK+jpCX0QxOFPRzjAt3kjb1+78QLboJXFlce4TXUcYZ92SyoPefme9MXUR0p VmhzuOXsZkK/ncoNZh+wT+dmhuHBLOGSuqYEXI/iKI6IPhHU3LET4ct1+E1Tuy/n WC9BghDDpnv2x86pD+xm2jcAlsAoabIk0NuDJ6/E3QqAiP+zYNgbp1rMBMMJpj0M qb/liMI4tBjHznzub+W1bQNUuJdFkFXFGCQ7G8LobgFr3wNMvXAKumOW293Rcwd1 CLJwNaFGSK9QtUbejFUaI16jRL6Rl1BRvuCTm/EcTgCq0XV8NRcZEoxpQbYB7Hg= =cK44 -----END PGP SIGNATURE-----