Hacker News new | ask | show | jobs
by RKearney 1653 days ago
I would think it would fall on the zone operator to properly configure a CAA record to restrict issuance by an unauthorized CA.