wildcard certificate does not work for sub-domain

2019-03-06 17:22发布

问题:

I have created a wildcard certificate that works for for xxx.domain.com but not for aaa.bbb.domain.com

when creating the certificate:

Common Name (e.g. server FQDN or YOUR name) []:*.domain.com

but it seems to not be enough.

回答1:

Wildcard SSL certificate matches only one level. See

  • Problems with SSL and multi level subdomains
  • wildcard ssl certificate does not cover www version, how do I fix?
  • https://serverfault.com/questions/296390/ssl-domain-problem-for-signed-asterisk-certificates
  • https://serverfault.com/questions/645230/why-does-my-wildcard-ssl-certificate-cause-a-domain-mismatch-error-on-a-second-l
  • https://serverfault.com/questions/87869/ssl-certificates-for-subdomain-example-com
  • https://security.stackexchange.com/questions/83245/ssl-cert-for-sub-domain-com-and-www-sub-domain-com