This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-django-13.0-wheezy-i386-openstack.tar.gz.sig gpg: Signature made Tue Oct 15 15:39:45 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 85b305698f353ee9a55b47b884d6dce3c7cf4748 * md5sum 68431bee26f7c6595d25ce26ee0377d9 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXWG4AAoJEIXCXpWhbrlN8U8H/31P9IjAGDTRhPYyBr/VG9dg nZEXw3cIhEqfG1hMor0PQgNH/PJ580JqG2A9ib4gPxJhgarpr3IP3zOa/LwTVEBu JTpB4Bcp0zu13LJlwd40zl5Mr0TXjpEaqY87VWuUywm1nKkmxKHB8nnZmeyTKRGF ZiuqxaqwECyaynmy6aYeSOce0qe3lDXjPJfxsR3wdYJcm0GM8e+9LK1QGbdbsOfp zIEhF/DrW4HaSy3OIPI4ZQTW9N4nI35hW3DGjC8zy83fmEFSGrgi/2Zh1YE/JAFh xbkHXPi98NCOm7mOwAVI8yYUTBOHaIj5da0lV6Szki5i7AwGtiCBqSmag5iFymQ= =6oL3 -----END PGP SIGNATURE-----