Multi Domain/Subdomain SSL Certeficate

  • Hello, is it possible to pfsense to generate multiple subdomains certificates? At my home I have several services all under domain home. So I have pfsense.home, nas.home, transmission.home. I would like to generate a common certificate to them all so that I only need to use one every time I create a new dns!

    I tried common name *.home, but it does not seems to work.

    Is this possible?

    Thank you

  • LAYER 8 Global Moderator

    So you want to use the same cert on all your devices, ie wildcard cert?  And you want to use it with a single label domain .home as well?  Yeah that is broken setup just thinking about it.  What is using the cert?  Most browsers will not like that, many browsers will want for a wildcard a valid tld so .home would be out, other would want 2 labels home.tld, etc.

    I don't think there is anything in the rfc that says you can not have a single label wildcard but seems like a really really bad idea…

    To me those are not host names, those are domain names you always have host.domain.tld so you are trying to create a wildcard cert for different domains the way I look at it.

    Your certs are FREE, and take like 3 seconds to produce, why would you want a wildcard in this setup in the firstplace?

