This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-domain-controller-13.0-wheezy-amd64-ovf.zip.sig gpg: Signature made Wed Oct 16 08:13:18 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 51c2f8b0c5e11b71e59867044dcd7b97045b463a * md5sum 9f649690b5da8a454c91f249453698c6 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXkqTAAoJEIXCXpWhbrlNwrEIAKYYPShUQQ0vH+OOJykcQ1oP 9qCwDFjHHUGHX5GuBjp58y+orypZslG1fh9IFnc/NhkYsEIsjBPUDXS2jFHyVog0 lPhKUFzG0k6s1YjMkL1Qm8jj9ljDOML7bVYfCUgULkYjrjHyZZq8mzO3wWc+aIPz q63VVyWoMUHHkND1z/uygkssDKkjRX/Efqq8BMHJeFJF7zuX/8K76sM3BeY2o/Nz P6CyiWSYUCxh0ViQaX6GphKrNOr4xFEskkdBejksMEpG53ClgceLvE/AEvRKAtCv f0E/SxGFxwE3z6hT8mJZzd0jwtsXmsI1W6C+mM3NMz9OFKA/ajqCphS+s5XuwfE= =cCFE -----END PGP SIGNATURE-----