3 ms·
I agree with you completely. I just want to add for people that do care about domain privacy that there's many certificate provider that do publish the generate
by dwild 5y ago
I agree with you completely. I just want to add for people that do care about domain privacy that there's many certificate provider that do publish the generated certificate over https://crt.sh/ https://crt.sh/ . I did find a few staging subdomains in the past on that website.
- XCSme 5y agoAs a side-note, as soon as I added some DNS A records pointing to a testing server, it started getting spammed by bots trying to hack into the server (accessing all sorts of random paths that might be exposed, like .env or common PHP files). Not sure what the solution to this is, apart from not adding DNS records for testing servers, maybe only allow access to the server from specific IPs? But that makes testing harder, if you send a link to someone with a dynamic IP.