This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-7-turnkey-mysql_13.0-1_i386.ova.sig gpg: Signature made Tue Oct 15 17:08:06 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum ceeab76b4cff83fdbd784cac134b01b796fd421d * md5sum eb03bec57eca68121d85703658a6e912 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXXZwAAoJEIXCXpWhbrlNx0kH/jTVr9o3SmO8ZJOOPULh8DWS SX2XhzRjbQhscYnN7B1GYKCoOA9stNQV2px1aZtRf/G6NkDc0qCEiImws4e29mO4 Vi9yyBsZ2YCOcOhVTMjDslSsdVgSiamyTDGH8BVGoeQ/FNrctX3TTd+6Q5Q6Rw8b rE5Rpymwydg1xIp2EnHE/EYnsqlDODTSnj1EAH5XxbRug/VV8i23LvDdMUrjIrBQ 0Sf7Z+iCTDo2HfEOmLERB9SMRjXdlY+uLd3LU1JNv90UACr2z1WEqY50GcsrPHto THPw4U70fZ1MHxCYSA5n61C4gLBuJcPS2LiSqQsvgLIR6H1IDpj2W+l+AKkiCyk= =AebE -----END PGP SIGNATURE-----