This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-rails-13.0rc3-wheezy-amd64.iso.sig gpg: Signature made Sun Sep 15 12:44:06 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 857334013383952b7c3a305d822d9525ac97e676 * md5sum 45c0085246b9407287b93fbf8a5a3363 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSNauLAAoJEIXCXpWhbrlNf7gH/3glfB1UpAP4BuGQ4aipUbmE bUpcI8wixSYgb5AX20BU6lNsqAPPzETbrhWxgV4m4Gnmqoa5+QUppZUB13/MHVPG lnkzi5oMjcBhyrpEDeeVyDV0T6IQwRxQpmA/63IbHPAwiCqt41pq+uSFSac5m+Hv U/0Pj4CBcBrqZ3YkqXKdtj9LGDyQjicUqPI3UzSkyfQJeNSnkVwRfrStsUoTgqid 6+6ckOgOWSCw46LRXzRaDfa+9fC5XYsjzUMoDYPmw3ooLZtZiE73rVnkPCVHXT3C szNBFfKF6T1eallpNxPnKMhKwSkk3tX7EJHW1MTfx80nH3aeQRuBGSyAap8LUlQ= =yQH7 -----END PGP SIGNATURE-----