Project

General

Profile

Actions

Feature #10761

closed

Multiple domains in one SAN entry would be very useful

Added by Eduard Rozenberg over 4 years ago. Updated over 4 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
ACME
Target version:
-
Start date:
07/12/2020
Due date:
% Done:

0%

Estimated time:
Plus Target Version:

Description

In the Domain SAN list, I'm not currently able to add multiple domains in the 'Domainname' box, for ex. cannot use:

Domainname: fw.mydomain.com fw1.mydomain.com fw1.lan.mydomain.com fw2.mydomain.com fw2.lan.mydomain.com

I could use wildcard (*.mydomain.com) but this is not ideal, as it opens a potential exploit if the cert is stolen from one of the firewalls.

Reason for needing multiple domain names: need domain names for each of multiple redundant firewalls. Also, each firewall can be addressed by multiple domain names (for ex. fw.mydomain.com, fw1.mydomain.com, fw1.lan.mydomain.com)

Currently have to create multiple SAN items which is redundant, and also requires more work over time if DNS API keys change etc, as we now have to manage multiple SAN entries.

Suggestion: allow entering multiple domain names in one SAN entry, either on multiple lines or separated by spaces, commas etc.

Actions

Also available in: Atom PDF