This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-7-turnkey-tracks_13.0-1_i386.tar.gz.sig gpg: Signature made Tue Oct 15 19:55:35 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 09761fa2dfed4a6eb607c40893e1cfb61b62b9de * md5sum 684eab9d3cc199a768f1c874c58bad92 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXZ2pAAoJEIXCXpWhbrlNkV0H+QGh71098WORh46bpkfTXIzS mPB3JFhzwCGRe4l2rVKN2hjNoGkpzlRW1VWHC/fAUV8Y6kp9In9G8BECZ/wGfm96 tUTZTIYjVyl4RcpUmjDHxxU8NiJzLdj1iqUlwSLxvZP9aMerQEDMRmI2oZcDyS9u Vve3gS6uuLoYlYx9GqKZmHDX4hbRSb+qbUODj/qYsJpq/h85tjlK2oJa7VbA/B8Y QhWvgSG3UTs1i6mPnHImusSt0umttKk7uaDQhJFrTP031zFdigCR/9Sj5oXJreWF YPwg5uYEt7YBBWOhtlr2kH9mdF3B+wlCSB7//8pS1s54oWt65T/PkZWSQHTtyEU= =Gaie -----END PGP SIGNATURE-----