This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-ezpublish-13.0rc2-wheezy-amd64.iso.sig gpg: Signature made Wed Aug 7 07:58:10 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum acbfc9816f0df823a34aea6e58285bea0bbcf5d6 * md5sum 1492a2bd035fc3c23f410c97af0049e5 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSAf4HAAoJEIXCXpWhbrlNPeAH/2hrwBH48zIVCBdCIwvdIzGJ P7k4TGrhhqNlD+5ardxd1uc9mkIt3iX2+eJ3mvwGpk0ZVTHwmSQ0TUUnYU5GuIpf r/sbeoteUOhPuSFG8+bCQSBg8rbXHEn2yk4XWmbZK/kxPHo7WddG73GI/KMmtbrc bZF+G0URAA0cwavy3nakG/P05U2EyBM/ivtGJ4aBZJ0TXKappryxWr1IMvjo2p7n VwT2ys0C+GZjDfLRzbhsmR1q9aDGnp+5NAKY8j3QONWPoUt444NIahWgQf6BmE0V jhTrVw6PbxxHpoQYQxEAG+vjZHFHsE+P6gXkAXyzNlKiK+75iR9PFBPek40dVGg= =3XwT -----END PGP SIGNATURE-----