This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-clipbucket-13.0-wheezy-i386-openstack.tar.gz.sig gpg: Signature made Tue Oct 15 15:09:46 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 7e5dc1f9290db270b1448c68a12b905ff9b7b704 * md5sum 7fc78013a06b1ce9a7d7cb6ae6714558 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXVqwAAoJEIXCXpWhbrlNmLwIAJ1vWA1AvMD+mmJA3JsjpCDU UNA67FQa61J2uzDzinSppFZqHW55WtalYeHa4CLuZf8JRMU+fH9OXnngg/EgK4C6 12RIyC1iuYX8n/jN4odaZEblNBS6l4AKmcHaYvdgXevKBB2OA1ycgKxjwcLPH3Gk hgnYNlEMM36QoZp4Y805IvuvNrQMfGrSD3pCca0vf4gn/y/9bMGWfpYobwT/XK9B yOIt6mItzkjjd4fC8q4sIihkycHBet9iHTT/9tgVyPZFZOPcdiNhnvc9aSwYsnxe mKuH6/fqdootW080nygVlY/Zkhawkfausqe9nbmuamhUo5HbdL2ZweqvTaLBAdU= =RkE7 -----END PGP SIGNATURE-----