This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-etherpad-12.1-squeeze-i386-xen.tar.bz2.sig gpg: Signature made Tue Jun 4 21:33:27 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum a8379a353a9a477b0309aa126f9552d2fd1f0c54 * md5sum db3fb6a32d66a422e02cbe904ca82ecc You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrl0ZAAoJEIXCXpWhbrlNXZkH/jH/4C8Ix65NP4wEe1Nr+THV bWOswD2Ulm3gvz6BKzVEtMy/+i5I7Y4QV5jE8pKFLdkOFYG59T8OpKovJOgaq35a RbYIqNNGuWh2JxIwEbsF9wHAwVZX1p8OD2y9kT7lnAczfF9sjFbaeRLpnHOLlJ44 +KMHjVINSn6LFqf9wuSntZgVUDwywFiryiBuPDGPnon73GG6BE7hj7YC3EALUS3c SoufQ9Rb8k0GteCXgiq4daT8o/lin+DvuNwQcQQQyM3eaMuZHl9xa1vVgmXIBW86 2/PsAZDdCcUjZfg9vfRtwWy972qurPt+xj8Apfc5YaGqU+db4gIhZbVJhuvVfq8= =0lKD -----END PGP SIGNATURE-----