• towerful@programming.dev
    link
    fedilink
    English
    arrow-up
    7
    ·
    9 months ago

    Its one reason i use DNS challenge wildcard domains.
    I know security through obscurity is not security, and that a leaked wildcard cert is more damaging… However the likelihood of a leaked cert is slim, the convenience is huge, the attack window isn’t huge (well, 90 days) and less published information about internals feels more secure.