Okay. And the following command achieves this:

gpg --verify truecrypt*.sig

i.e. gpg finds the public key for Truecrypt on my public keyring.


It seems to me the original Truecrypt archive is not being referenced here. What is gpg comparing to achieve authentication?