Page 23: Message data hash in signature

Page 23

Robust message data hashes are hard to define.
We would like to leave that definition to someone else.

If the data hash is very short (i.e. weak) it can be effectively a
flag (with a few check bits) indicating that there's a message data
signature that should also be verified.

What if the envelope and data are signed by different entities?
e.g. mailing lists

