This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-trac-13.0-wheezy-amd64.iso.sig gpg: Signature made Tue Oct 15 16:57:37 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 3de6922643f849c4461bd6f36ca0e477a1362775 * md5sum e2383b71cced2269b6b4ee13fc1fb37e You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXXP6AAoJEIXCXpWhbrlNHXcH/iQ2xbDbCgVQMgGGoHpQMhMe 2BO51d8GCQNEnwWB9ZI48vqHCslqkeh3n70W4NqQUwYJ0kTOONTsjcNBEJrLazzu thH4YeB0/OvPI0WET9WspT8+KjBd16wcva7CXgEzbeR2ezxkHOEgQw66YkmrkMWV 5pD5QKC7wuDow0LOrXkjVLc79CIb6GLL7qS8wfi6Objj/xj7a/rsMqJUXbe1JG3b zI0fC2PzV6XojmEOGQANof1MPeam0cJzkbR999UJ5lBNd3a9XmLSIw5VV3b4KoIQ BT6EEMxdSEfmYCbz9F7dhjXtTNXtTektxxKL/400av/xxvTnuSiB2dAG8vJLgg0= =bYAy -----END PGP SIGNATURE-----