-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Two steps are required to cryptographically verify image integrity. 1. By verifying the integrity of this signature file, you can be sure that the checksums included in this file are valid. $ gpg --keyserver hkp://pool.sks-keyservers.net --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-8-turnkey-dokuwiki_14.1-1_amd64.ova.sig gpg: Good signature from "Turnkey Linux Release Key" 2. By calculating the image checksum and validating the hashed value is the same as listed below, you can be sure the image was not corrupted in transit or tampered with. $ md5sum debian-8-turnkey-dokuwiki_14.1-1_amd64.ova ca8b4ef62e4257386c6936fdaf9e2690 $ sha1sum debian-8-turnkey-dokuwiki_14.1-1_amd64.ova 74fb3790981a0c914fde73c106c5bcbb63b305ed -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAEBAgAGBQJXDJnqAAoJEIXCXpWhbrlNDrwIAJo2yfUnGvSf4Yycqzrdl13T SHlg8Sio6I8toWlq92fhmjtB74MWfLms9NZFW5Dvh1znL8bvoexHntLdHT0RToJg 2IhLW66BUmqZPW2oI92RFMSCA8iSeZ8dzZ/7RaLIu2wAywbUqTuQcU2hV2NSho64 6GV55/ku2jkDvwCBILqyBIHvDrQWi6J+QIH00ukZogqZNJ4Ok4JBc9OQQGb947Hl Ycx4kAcgChabFxuQTSh69ZUxhT5TlA4hB3bP4cVizwyvlA5tUKcXBleb+cvW2gmT Gb5CbwDhQ8MRQigtHD01C9dLa6s0yGXiBHa3bMaCklfYE0jHmbpxk42t+2pbAoo= =UBpz -----END PGP SIGNATURE-----