This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-7-turnkey-openphoto_13.0-1_amd64.tar.gz.sig gpg: Signature made Wed Oct 16 09:33:47 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum aa3754d073f72076e21b63472aa4e199e3f8adea * md5sum 4daf63acb0d70fc0ef9735839e8596a6 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXl1zAAoJEIXCXpWhbrlNVqkH/irXyW9fpQcVu4namhJwrP2+ SqkDLyCgza4AnROfi2xWZ2FHSugP+VvcqYdZyOhetavZ0HBbxR0KG1rIAA9QqHug 5xf0QQKtMTVVkXQDKya0jhBM05TiMbrvYo9Jys1b9ZlrdLrPeewi5w40H8j2KnHh bONVTx3h/+frltHQ+a/esXa55Wk/0h4upJn9bgTD20HxOkLjkPILGSdh44eRTb7y fw21HLdctneivrqNC80FnOdrJrlYJFLxsA8E4e605yDhvMspshbjxump13nmnr3n 4ENg3IGjbFnF1dUJ2nJSU8Y7a5vgNNmuBzgyy2Jaxe61qd0T7M2scDP/v5ut/+0= =EDt8 -----END PGP SIGNATURE-----