Heartbleed has made me think that whilst wildcard certs are really quick to issue and make life very easy when all is good, they are a tremendous PITA if you need to rekey and replace everywhere they're in use.
Individual certs are of course more admin overhead as you have to issue and rekey individually, however that also helps isolate the impact of stuff like rekeying/revoking certs.
It's making me question ditching the wildcard and the convenience it offers and just going and buying a bunch of individual certs.
I guess there's no "right" answer to this so I'm just throwing it out there for opinions.