This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-6-turnkey-bugzilla_12.1-1_i386.tar.gz.sig gpg: Signature made Tue Jun 4 19:53:24 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 64c7d0f7b76cc31f6c1a23c828051cf02bff1d1e * md5sum 9095767675eb87bed0076e5e64baa14c You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrkWqAAoJEIXCXpWhbrlNE7oH/33aTCyJ4kSzucddVx3cxcg5 03Fwj0+gBYJdo69ekTc48mDzQIXfOO3RifGhKQJ6AXx1JmFjGk9iTyNMVTYL/YmR bhSdZzuPfJh6RyjjqzsPJ8U3fsYYxfDYeQjel8PXZcaterC3JiIJ1hAw4a0tFH8b 94eP80uErkkJxoBN/fNSpzgaQJ5kQc24bTw5WqSD0SxVQwUaBhrAS49q+XdcOcK5 YMpkX7G5v3Xod9bZIqxrd78Ra9bz2l7UtJru/3dG7F1xSwnKfVyEyqgM5pgarFN2 bviaPOHF/qFdhIRSJaTwG6PfWINfGMS7lcou4RVWV8T24RqxgBhWYHfqytAeuZ4= =GxUW -----END PGP SIGNATURE-----