Comment on DigiCert Revocation Incident (CNAME Domain Validation)parentComments−remus2yShouldn't that get caught by the Public Suffix List?PSL is a best-effort sort of thing, so it's good but not definitive. It would be dangerous to rely on it when issuing certs imo.
Comments
PSL is a best-effort sort of thing, so it's good but not definitive. It would be dangerous to rely on it when issuing certs imo.