On this topic, has anyone on this TC covered cross-standard workflows to
determine requirements? A typical request is to take an ODF doc and archive
it in PDF format. Ensuring the dSig info can be archived in a format that
it will still be capable of being authenticated 50 years from now is a hot
topic with lots of governments.
The signature is based on a specific instance (say the content.xml
file in office).
Why should we expect it to survive a transform into PDF, back out of it,
then remain valid?
The ODF and PDF instances are different documents.
Hence the signature should be invalidated IMO