(Filed ahead of L3 charter renewal to highlight things that we are thinking about for L3 so that the charter does not preclude it.) We may wish authenticators to be able to provide a second public key / signature, likely in an extension, where the keys have different security properties. UPDATE: see issue #1658 for a concrete design