Feature #10761
closedMultiple domains in one SAN entry would be very useful
0%
Description
In the Domain SAN list, I'm not currently able to add multiple domains in the 'Domainname' box, for ex. cannot use:
Domainname: fw.mydomain.com fw1.mydomain.com fw1.lan.mydomain.com fw2.mydomain.com fw2.lan.mydomain.com
I could use wildcard (*.mydomain.com) but this is not ideal, as it opens a potential exploit if the cert is stolen from one of the firewalls.
Reason for needing multiple domain names: need domain names for each of multiple redundant firewalls. Also, each firewall can be addressed by multiple domain names (for ex. fw.mydomain.com, fw1.mydomain.com, fw1.lan.mydomain.com)
Currently have to create multiple SAN items which is redundant, and also requires more work over time if DNS API keys change etc, as we now have to manage multiple SAN entries.
Suggestion: allow entering multiple domain names in one SAN entry, either on multiple lines or separated by spaces, commas etc.