This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-domain-controller-12.1-squeeze-i386-xen.tar.bz2.sig gpg: Signature made Tue Jun 4 20:51:24 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum a86a12ab2e0fd39f2f3009486ead5723f72ad5f6 * md5sum 4414d414f5fc97e8bb64e33ef055668b You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrlNCAAoJEIXCXpWhbrlN7L4IAJ84tPPxUYbzcuFTq2YiWQOH TpHIvlGXnYmptcRNSN4W4thz9Sa5+JdVdeZuC3qMwFyPeGucURYVzDW+oiyEDzPR LZsCH6PyKiWm/zG0UGhCJQwyMceZLUQd/msi5CD2eIGVuuHhzHwu5EXEOfiBH6sa G7xlSFnwT07sfL5s3+QYaLNGdbYFOxGy1l61Wm9mG++9IgxbhPf5zDMEmfsVFee0 lVfccl4IOW2/Yu760V1q2/1Od+nT1VxuWoSXUNKj3NwYzN4DQjJqRQFcnhjTLpOD U8qIsogItJal7vF9LLPduNHt9oMzWtXWxNoNRmKNNbJWutnyFl6H+yTOM+bCHQU= =agNA -----END PGP SIGNATURE-----