This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-omeka-13.0-wheezy-amd64-openstack.tar.gz.sig gpg: Signature made Wed Oct 16 09:39:02 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 4c16271b94382263a0b398ce78d05491c2781aac * md5sum b87e153ef054781c785e6b2483e4464e You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXl6sAAoJEIXCXpWhbrlNVosH/jIfYh6x/SUymuLNVptwMVc4 JBSyXLYbazT3bu10EB6qYlsCZ93oDiC+J3IjDe6gjHTiwYaTEBql1uWz60o6qTyr FPM0vwHdRwQ+4CXblHJue/vLznAVaFdLKVB/z58yUfjH3HBciwsIDVerOd4sOdke LR26buYoHbUsK8Gfn8lPpnoztq9XMrQDjn3j51aoK7+pOnQmDLTkqlxBKmcTKP09 VWRjyzPc/iwUkdGeIznV0MIagPL/uLGSGp+aNvEEL/BhwB+J7NnZEG6b9+TecOo/ QDRK4Ciygzlj0sfbhlaVIWfHLU7wQDG/TpyjgHYc5yXCBkWC3ZT3QE5MPdDNfFU= =K27k -----END PGP SIGNATURE-----