This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-phreedom-12.1-squeeze-amd64-openstack.tar.gz.sig gpg: Signature made Tue Jun 4 15:28:46 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum b3512b2a53ed7b0e749fd43623b510a8162e1a9b * md5sum cc5d5c1972562918b580741026c09ae4 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJRrgelAAoJEIXCXpWhbrlNuysIANTML1YMlOHhlFtKJZVtaamh F88M3WWjCCkaS+h2n2Ydwl7ellAq7RyrqOjGcudlWj9r9MgmT0X0S+E0jjKzA/MP u6W7KcpiimJEQ9YROsOKXFu5gxcS7e7rEM+ewSooDz6u6pvtMUU4iyqqZKdGd1r5 ehz1uAOhqlOcOnU5RCXB9mD2AEVCU7JSqldeT1WWDCDz4QsVv3XJnWTYxgkTAkjz Cz4Y8MNwtZvErIRfiItap2QNJHeQWA0G7QypNh+Z0Sj4KOF0HhXGCkfL/5kCcKUc Wi0h4CQm9w87M8ThyjL9pL3/gQGcl0w7paC5r1tSiEaZUjq1kLS+yMmqYZ0k0zY= =wt6Q -----END PGP SIGNATURE-----