The digital signature code was only in the Apache POI trunk for a couple of days. It was reverted due to dependencies and also that the source of the signature provider was from a project that is mostly GPL. We are trying to work out details of that code contribution from Fedict.
Apache POI would be glad to evaluate any and all patches to maintain equivalence between this version and ours...
2009-11-11 21:00:07 UTC in OpenXML4J - Open XML library for Java