Hacker News new | ask | show | jobs
by jdbeast00 5396 days ago
Wow, is this a typo??

"The most egregious certs issued were for [asterisk].[asterisk].com and [asterisk].[asterisk].org"

I didn't know double wildcard certs were possible. This would be extremely helpful for us if that was. Anyone know?

(Just to be extra clear, we would like one cert that covers a.b.example.org as well as d.e.example.org, and hopefully also still works for a.example.org)

edit: We currently have a *.example.org cert, and while some browsers think that is valid for a.b.example.org, most do not.