This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-ejabberd-13.0-wheezy-amd64-vmdk.zip.sig gpg: Signature made Wed Oct 16 08:37:02 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 8a05dabe9c17b661755ed046471997d875fdbe75 * md5sum 178e3668b87f96a4cf4bd7f292987f1a You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXlAmAAoJEIXCXpWhbrlN/hQH/i5U7cOBG9b6bu+2xg/RKurV gBqaGL+MRbX10FCtbNLkP9LTbaN8KfKJcFFjo1DSdbMATk+dre+UjFIvsVL00ZEY b+wsje9qKpyBi4SC0iPDKVhdQXjbUbAvqMkpd7iRa8UWw9E3T0itv1l1T1tqGcjZ gKvgibeVXcT4Rukx+cxGB5vXcMPTnaZP+G0OkUEAhvkktd/Ss25WIe55csswOdQX NItKDLw66Ms6wD/yVIlzSkRdPa0sAr2X4iHDaXXvZefuy8Kx7c/652v4eYhqHjlP GXkr/3bDnr4aQLJ7kySBEXGvnF70QP4tmZr2cU7e7gJCX3a7UdtG+c6eR0Q3888= =kJKT -----END PGP SIGNATURE-----