DNS-PERSIST-01: A New Model for DNS-based Challenge Validation
Summary
Let's Encrypt introduces DNS-PERSIST-01, a persistent DNS-based validation model. It replaces repeated DNS-01 demonstrations with a standing authorization bound to an ACME account, reducing DNS churn and exposure in complex deployments like IoT or multi-tenant platforms. Rollout is planned for 2026, with Pebble support now and production in Q2 2026.