This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-canvas-13.0-wheezy-amd64.iso.sig gpg: Signature made Tue Oct 15 15:47:48 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum f15349ee6bc0f634fc38172ca982cdea0508822a * md5sum ce32f654690c9b5b99b1014e0f94ebfe You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXWOOAAoJEIXCXpWhbrlNZKwIANC4BrAip518i+7JzG0jvU8G PqJ5/ApENkrog9ybhjf3Xg2L5zpM06iGWJT+Cbyt7c8zZLAVJT5cGoDn+HQnHKGh ttvJMK4RhSLfmuG96RiewdERUX91roeQTPyCYc5MGJ1hu1DBTmLjJs/6pr9GnckJ ZArfGJsb72Tx0kHxG3iUKsxLq0MSUjkptj7OHoZLEuSiu1vtLMwETBJe+IOosiT9 8jg0U5b94lT2RezHKZyC/HP8YhMtbWtznl/qci+btgkyjoG/qzCxU8tZoWINi2Wx pn58rssicw/n8hh5yhQJASucnXveDS12EqiqRtp//bMZAfN5zGxf9UCKgE/thF8= =TISm -----END PGP SIGNATURE-----