This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-typo3-13.0-wheezy-i386.iso.sig gpg: Signature made Mon Oct 14 19:48:41 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 93104acc3d512e7e98bb0b691ae9e9a3c62520fc * md5sum 1ad678c3ada7bd4212fddcd9af4d2b51 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXEqNAAoJEIXCXpWhbrlNSA8IANU6I9WAJ45n7iNf6SddB8Ij KBX9hckd5yrVGPPv4EFSjIcslj/PzKFizA1TZybVIV2sHd+Pz8oG1oHZiG2jcWLZ MGsdSlOEVt9cF0LbjkZBIBCe/VwfkhinI7VYOV6joAxhmrm9GN9RK/M0RWOg1X4b uDkRJboXKXBeP+xfYuhm1y3WtNt2ksVeIlXAHW0tommzUG9puoM8n52G2SUTVycc 9oh7l11TE5Hm0DFLl0Cq17GyHc1P7dn5+rEwGSHR+DmC4/CBw9EjgjfkuXUlOYYY rG9NQT238LyPYkjA1tjwUawygPcdBXTSxNlROemZAECH3txhKSnXMM3ITqWepds= =Fz7o -----END PGP SIGNATURE-----