This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-ezpublish-12.1-squeeze-i386.iso.sig gpg: Signature made Thu Apr 18 17:25:37 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 7e3108f79417451b110c19240efba9534c2dad67 * md5sum f3c7ff8a2ebea99dbd3336d8239e6ab3 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRcCyEAAoJEIXCXpWhbrlNAXUIANzktCMre9HMndQBeXPSxuwp Lan/hgICNP2Jquh9Xrxzo4u4BFYLpvs3kgZ538AiUx8fm4PhtC3PM4d0hwwr03Vx w6w9o23cqdbvEotXLmz0WCT+qYvmgclU1BuEzuTqSxVN3MECH0KxMpMtE8LckqGL t38JnL7vdVXLohbRhd39VZmvWoi229JjuuAjHpfQS/HFEfYfkbDnUcFVi6JgfzTU eH3kZzURb1mmNa5wB9VBJ3M301MyugHoLhF2fmwMySY6cWQCVKHVwEOJzgCS0j++ Pj7B1VWc2otq27KoGTnB3NcaU5dIFCLXX0FCQmAHS7KCoru0r5gec2PIHjCNSl0= =xGJG -----END PGP SIGNATURE-----