-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Two steps are required to cryptographically verify image integrity. 1. By verifying the integrity of this signature file, you can be sure that the checksums included in this file are valid. $ gpg --keyserver hkp://pool.sks-keyservers.net --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify turnkey-laravel-14.1-jessie-amd64.iso.sig gpg: Good signature from "Turnkey Linux Release Key" 2. By calculating the image checksum and validating the hashed value is the same as listed below, you can be sure the image was not corrupted in transit or tampered with. $ md5sum turnkey-laravel-14.1-jessie-amd64.iso 363b6f33c9977e9f6b09e7fb6cf2ca36 $ sha1sum turnkey-laravel-14.1-jessie-amd64.iso 43076c8bef5c0dfef286fc429eaf4c976c4faf3e -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAEBAgAGBQJXCkPyAAoJEIXCXpWhbrlN5XMH/R1ntzEh/vD5tTBZjndhgR0E cwb6Gq3+RpFln22nFFJO8N3jQ0kcXaWU3bB1bP1lxp/l9GOhR0VgkosGkodFA0v2 BOfrOcEn2njgi5tEpf9yz1495cL6foRQzDEEWVduoOIsbIUySGk666lbQV+5gUR0 Glsk8zmL/r0zQtMgjU3swkPXkWvl8YxIuPF6T4pXUWCBnSZbcRhnnDCMvUPF0wZm Fw4AjgV+AB2EBOfQC1EUCWCFk32sOC5NQRWV/5AfLNoRyqvEOgQrjoaEiW5XZL8m GvADxgzOGf5EwTMUSxn/U+dg0CXDCRBfLSu4qfO6FfN1RrofCMpUOs8SvOQfVNc= =rXWW -----END PGP SIGNATURE-----