This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-phreedom-12.0-squeeze-x86-ovf.zip.sig gpg: Signature made Tue Aug 21 12:13:58 UTC 2012 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key For your convenience we also include file checksums: * sha1sum d5de8c5dbbc24351fdb3b105a2eaa16d3bdfc780 * md5sum 6b5db1cc06c5163cd571bc9cb9710686 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAABAgAGBQJQM3t5AAoJEIXCXpWhbrlNOpoIAJnSYj08jr/grTqXG2CYHZjF RmiMaep3s3Dh24PkCFEdHIgwecnB7QowS00HbFmbylkzR81pXij43EKcb6ZWc1aN GYVZWl7H92jKv7kLjgmuv8BL8QtT50TQHjUFVojBYq7sQd5XXC3jRv54dxdTfbSj zXLgumDUYND3Gcvkyf2B+dMy888aoGOjt/yQwTODi5g50e7glxrSXeRRBwDwHT71 HQ9q/y5wNsrXGnKzJ+nO8sXerEQ+posxFUSXDPmJ99Et6peteBvqIT2dZkHE7wV2 +FMvkXw4oOXhlNvQk/ks3rjcZ4WG0nJcsRp+dwCaL2aF+mTZ0ruUfosC9CrOcks= =yea8 -----END PGP SIGNATURE-----