This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-7-turnkey-limesurvey_13.0-1_amd64.ova.sig gpg: Signature made Wed Oct 16 09:00:13 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum b9df050d75eacb3903d0428ea003d84b9a645ead * md5sum 34189ce5846963962f0c78ff9c44de98 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXlWVAAoJEIXCXpWhbrlNfDsH/1+Phd6yoYJQZGBIDV0xjYg0 U2JZsjYKdHNTijabO7jXXFWZrF5zUSeRpz+4lXSO2bu00Lg84//xMBk4WmTSVuTy ob++WQxxQqI3YZKKpafIibPpWQN3skll6eSUfFrgyDa0ZsP+24jHGS3EdmNjnlRx VFuBUMo2A5g4ZtlSqvbEU33lksausJUHj6UoR79EqtPvOfCeJdncYJhQVeCUr6am QJ+YErXGF2GITEZuYgsYDBVL7Z7pLy6RnAbv61W5sGrB2kUzIBuYks9jHBwJaNTp CnVY0v5zMo4NdwH9YgAOS/Sl3uklLAhVe7PB1htclEUPF/G9LzY7JA8ff80ygKg= =ruIX -----END PGP SIGNATURE-----