Hacker News new | ask | show | jobs
by biot 3721 days ago
It's so people can't use one wildcard cert to have facebook.com.example.com and google.com.example.com, potentially tricking users.
1 comments

I don't think that's a valid reason, because you can get a cert for * .com.example.com, hence you can have those domains.
Very good point.