This signature file may be used to cryptographically verify file integrity, like this:: $ gpg --keyserver hkp://keyserver.ubuntu.com --recv-keys 0xA16EB94D $ gpg --list-keys 0xA16EB94D pub 2048R/A16EB94D 2008-08-15 [expires: 2023-08-12] uid Turnkey Linux Release Key $ gpg --verify debian-7-turnkey-symfony_13.0-1_i386.ova.sig gpg: Signature made Tue Oct 15 19:36:01 UTC 2013 using RSA key ID A16EB94D gpg: Good signature from "Turnkey Linux Release Key" For your convenience we also include file checksums: * sha1sum 09106fc646d0780ac5c1737d431ec2dd5408af60 * md5sum ee2bfb89e4d2f4ddb1f57034a1fb3bb6 You can calculate these on your end and compare to check for errors, but cryptographic verification is recommended for security reasons. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAABAgAGBQJSXZkYAAoJEIXCXpWhbrlNq4sH/Am9jZBZkf+l2Xrn22ltTUB1 bbFNONgvbn39d+KL1KBa4aOcOidCIzLEW1u8KKIMGbNYGcpkf1BLDkTCeW6eJbD4 dQwUMiVm+44eJtcA941RyN3QzBLVWDti3h7YnJbiwXyv5R4Ij1mYL+XcyTpwttXA 11JtCMH4Z9W/1bc9Jk+3T3bc5mmxh2INeFe/NPeyJsjNdHlHn13vzPimyegeZBkd C7za5yvvfYPiSfEyViVUPXJq0i4oDEXI6qjUCji955HcI7/iCZAUQHdx7ERME3Ro HcS0oue2ZpDDsklKqWBqpoYoSH10H8ax1Jh356R8iZauXKo0urIsUt7+4lAGMiQ= =84b2 -----END PGP SIGNATURE-----