This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-jenkins-13.0-wheezy-amd64-openstack.tar.gz.sig gpg: Signature made Wed Oct 16 09:10:01 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 86e4efc034cc39aa8b9819897b7038313fde8fb3 * md5sum a4bc0e03f7125cb58ba9524b9494c809 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXlfZAAoJEIXCXpWhbrlNP5MH/1JT9uz1tnEMm2LtjUCjEzff 28dcAYatnKzu7HxpXk53cJZSyxEryLwsVRGB/Tq4+vyfhPrrhNlJ6jIp3ESCK1tI L87QYJj29DRSZ1YQWljYqHG3ZACPQa6IbPB39BRxFWzsu1tlOrRMu4TECDS4iW7W UQFwURfjGv++Wc5mpK3cQCL3a+LzBRySMmnEUWtDYDUhgS9NLsfXRYrF7khtIY2C dPtZBlykQmv7rC4/sQ21yqkHtioM/CSNoC4vgUHieMR2nNalCpgLA3upu4PkL2fR WfUXjGjms11n81ffqFTxV30Xkf9NETCAHerR5Q6Lno2UuY9kb3JOmdTsO1fd1co= =wb36 -----END PGP SIGNATURE-----