|
|
|
|
|
by throw0101d
22 days ago
|
|
> Then use a wildcard so none of leaks into cert transparency logs You now also have to build infrastructure to distribute the wildcard from (presumably) central place where you generate it to all the different places where it is desired. And hope the wildcard's private key does not leak from one of myriad of places it now lives. |
|
Leaking is an issue but we're talking about internal services too.