-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Two steps are required to cryptographically verify image integrity. 1. By verifying the integrity of this signature file, you can be sure that the checksums included in this file are valid. $ gpg --keyserver hkp://pool.sks-keyservers.net --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-omeka-14.1-jessie-i386.iso.sig gpg: Good signature from "Turnkey Linux Release Key" 2. By calculating the image checksum and validating the hashed value is the same as listed below, you can be sure the image was not corrupted in transit or tampered with. $ md5sum turnkey-omeka-14.1-jessie-i386.iso dfe6f0403b728f09bca0659e2ba2f08f $ sha1sum turnkey-omeka-14.1-jessie-i386.iso bf84dace829207a3917929559f154271de9eb22d -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAEBAgAGBQJXCkPzAAoJEIXCXpWhbrlNVrIH/1esrd1wi6CDfhlbB4mxMOyz TLzOWlBpOUKHxlrNK9/UUir7LR/piE9hSyP/J/xz+RPUVUHeoARBlP5lX+CkshbK WlgWN0qY8q9gbhS7GzeOa8qjBNgwHmTZuR8f/6f0I8UwHRuxISP7ktaPSvZnzxU7 mA0nQ1efrSzCqYvwK3Os3lPWUqixy6ovd7EjBDH+ITKHJ8HZhjvFWFgJxT8f4slr lSJrTxZapjkufUIzIoMyiXx6GwkRr6Lv4oX7ZkJnNgfQdEmXDO19zxCTrva/EJbC 8bOHAvgTmSlLEZ3FM+KwBlgYDUt3hpyesSgTfy5LvS0PcWPLUe7r8MrwrbZv1Zk= =PHFe -----END PGP SIGNATURE-----