This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-phreedom-12.1-squeeze-i386-vmdk.zip.sig gpg: Signature made Tue Jun 4 23:11:09 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum f9e3d57d938c672305e216a7d0df63f6d281502a * md5sum ac8d6a1ed14c0909daf6101e9d316022 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrnQCAAoJEIXCXpWhbrlNhIUIAIz3jZfFA+V4s+NCe4vlvghM bNUfHpjQhlNTTrwMc4Wal8n7Mxt2X8i7q2dplU1ssN02bWijSZpkrvgakr16DBDw SAgoEIpXEhsJkVokVjLqexUnVV6Ab53Za7lWdCkMG/RWtBTRTwqs/9e7U/WDPtEO rs8ZpRjVdKQ1Ztn+2GJ2sEQjKOvnu1iF0rhJYr/wHGeF4a767VCoNf9+wntk39bH 2+M7/cEN/99ZV2IC1kTMFd8t2GrvgCq3D+kk9Illpwp59t9mBl7YkIXV8aBKqh3n RzcvY0lcy9EaAlB7lTclDZNFn+RJNu3xyYkoYmEG26yJdanvI/aY3tU6XUjCAZA= =AEj5 -----END PGP SIGNATURE-----