Problem: messages tunneled through an untrusted intermediary have no authenticity or integrity. Perhaps we could introduce an optional mechanism that would allow entire messages to be signed using [RFC 39](https://flux-framework.readthedocs.io/projects/flux-rfc/en/latest/spec_39.html) signatures See also discussion in - #497