-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

To ensure the image has not been corrupted in transmit or tampered with,
perform the following two steps to cryptographically verify image integrity:

1. Verify the authenticity of this file by checking that it is signed with our
   GPG release key:

    $ curl https://raw.githubusercontent.com/turnkeylinux/common/master/keys/tkl-buster-images.asc | gpg --import
    $ gpg --list-keys --with-fingerprint release-buster-images@turnkeylinux.org
      pub   rsa4096 2020-02-05 [SC] [expires: 2040-01-31]
            A8B2 EF42 8781 9B03 D351  6CCA 7623 1C20 425E 9772
      uid           [ unknown] TurnKey GNU/Linux Buster Images (GPG signing key for TurnKey Linux Buster Images) <release-buster-images@turnkeylinux.org>
      sub   rsa4096 2020-02-05 [S] [expires: 2040-01-31]
      
    $ gpg --verify debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz.hash
      gpg: Signature made using RSA key ID A8B2EF4287819B03D3516CCA76231C20425E9772
      gpg: Good signature from "0"

2. Recalculate the image hash and make sure it matches your choice of hash below.

    $ sha256sum debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz
      9f5cc01e26c26066b36865b16480f7b6775717ddfb126efbf47e63b9f97fe206  debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz

    $ sha512sum debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz
      e63133a83fe41c75cc91c54c612bbd1565a87368f6b17e44c4cdf12a1e3c0b0b358c83163d55c14bb2ae4198510ae732b658599e4b4e330c5dfcd43b45cbd3af  debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz

   Note, you can compare hashes automatically::

    $ sha256sum -c debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz.hash
      debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz: OK

    $ sha512sum -c debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz.hash
      debian-10-turnkey-cakephp_16.1-1_amd64.tar.gz: OK

    Final note, when checking SHAs automatically, please ignore warning noting that some lines are improperly formatted.

-----BEGIN PGP SIGNATURE-----
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=JOHH
-----END PGP SIGNATURE-----