This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-elgg-13.0-wheezy-i386-xen.tar.bz2.sig gpg: Signature made Fri Nov 1 09:02:53 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum e3b4de2d8a5514687def02db2e92fb689fa1aa34 * md5sum 8ebb60a36ebf97f03d37d4c242b98809 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSc242AAoJEIXCXpWhbrlNWYgIALtVT255/RSZMmnqlJUot50r MF4zwAVi2uwJh3jtV3uojmPm1YquCWQOg6GKPFSMZ+vIcWpNBOfcxfkKIk0PU/ZK Qt3z2xSRiWz4tJzvpNlERRkIx1tZ3Aeg2KwI9ROVKBa7hbLY4G4MWHb+p9qbhhzc GnUgpQhiOgBPwCSxf2xCbWj+3CNHr3OVK+agwAxGSaA+gTummkPBtZudVewzXqeX 155Nhh8tY52iBqD4JrFqm7BoxPsIF07+vq5mC5kPIbQH46edAhlX3zf6Ca9nGGr6 /XQna7iZE0xsDBSs0sX4v4i9uMAVu1q62R2TadSFNKWan5EIgMnkqN7+/gTPLDM= =RSr1 -----END PGP SIGNATURE-----