I think the issue is less with SaaS vendors doing cert pinning and more that many SaaS vendors offering deploying on customer domains often rely on those same customers to make the DNS changes for validation, and…
Regarding "the right thing overall would be them running their services correctly", what was it that they did incorrectly? Managing certificates for 3rd party domains through DNS validation is inherently going to be…
It looks that they provide SaaS solutions with FQDNs on client domains, so you have algeus.client1.com or algeus.client2.com, etc. The problem then is that they'd have to coordinate with IT at each of those clients to…
I think the issue is less with SaaS vendors doing cert pinning and more that many SaaS vendors offering deploying on customer domains often rely on those same customers to make the DNS changes for validation, and…
Regarding "the right thing overall would be them running their services correctly", what was it that they did incorrectly? Managing certificates for 3rd party domains through DNS validation is inherently going to be…
It looks that they provide SaaS solutions with FQDNs on client domains, so you have algeus.client1.com or algeus.client2.com, etc. The problem then is that they'd have to coordinate with IT at each of those clients to…