How do I add SAN to certificate request
Mia Russell
Published Apr 02, 2026
Open Internet Explorer.Click Request a Certificate.Click Advanced certificate request.Click Create and submit a request to this CA.Provide identifying information as required.
How do I add a Subject Alternative Name to a certificate?
To add a Subject Alternative Name Select SSL Certificates and then select Manage for the certificate you want to change. Select Change Subject Alternative Names. For Add a domain, enter the SAN you want to add and then select Add.
Is a San required in a certificate?
Chrome requires SSL Certificates to list the site name(s) in the subject alternative name (SAN) to be trusted. Usage of common name only is not seen as secure enough, and will result in a certificate validation error in Chrome.
Can you add a SAN to an existing certificate?
Anytime a SAN is added to an existing cert, a new CSR is required. The CSR must contain all the existing as well as new SANs. Consult your server manual for instructions on how to add SANs to the CSR. The common name for the CSR must be the same as the original certificate.How do you add an additional SAN in CSR?
- Acquire an Enrollment Agent Certificate.
- Modify an SSL certificate template to require an EA certificate for issuance.
- Acquire a CSR that needs SAN Information.
- Use the EA certificate to resign the CSR while adding the SAN information.
What is a multi San SSL certificate?
Multi domain (SAN) is a built-in feature that comes with an SSL certificate which lets users secure multiple domains under a single certificate. … Securing multiple domains using SAN certificate saves money and SSL management time. Certificate authorities (CAs) such as Symantec, Thawte etc.
What is San in certificate request?
The Subject Alternative Name (SAN) is an extension to the X. 509 specification that allows users to specify additional host names for a single SSL certificate. The use of the SAN extension is standard practice for SSL certificates, and it’s on its way to replacing the use of the common name.
What is multi-domain wildcard SSL certificate?
A Multi-domain wildcard SSL certificate is fabricated with combined features of both wildcard SSL and Multi-domain SSL. Under a multi-domain wildcard SSL certificate, a user can protect multiple fully qualified domains and their unlimited number of sub-domains (up to the first level).How do I install a multi-domain certificate?
- Fill out the CSR form on HostGator’s website.
- Purchase your SSL certificate, send Comodo your CSR.
- Upload your RSA key using the instructions from the Security Warning section on this page.
- Run “certlm.msc” to open the Certificate – Local Computer.
- Right click on Personal and select All Tasks – Advanced Operations – Create Custom Request.
How do I find the certificate SAN?
- Checking your Subject Alternative Name (SAN)
- Internally Signed Certs/Self-Signed Certs.
- Publicly Signed Certs.
How much does a San certificate cost?
SAN SSL or SAN Certificates starting at $18 per year.
How many San Can a certificate have?
Subject Alternative Name (SAN) Certificates Depending on the issuing Certificate Authority, SAN certificates can support 100 or more different FQDNs in one certificate.
How do I create a certificate signing request?
- Open Internet Information Services (IIS) Manager. …
- Select the server where you want to generate the certificate. …
- Navigate to Server Certificates. …
- Select Create a New Certificate. …
- Enter your CSR details. …
- Select a cryptographic service provider and bit length. …
- Save the CSR.
Can a CA modify a CSR?
You cannot edit an existing CSR.
How do you check san in CSR?
- Open the command prompt as an administrator and change the directory to C:\OpenSSL-WinXX\bin and run: openssl req -noout -text -in server.csr.
- Under Subject Alternative Name, the different DNS names must appear for which this CSR is valid.
How do you add san?
- Use the corresponding drop-down menu to select the number of domains, sub-domains, or IP addresses you wish to add to your certificate:
- Click Continue:
- Enter the full address of the SAN you wish to add. …
- Review your order on the next page.
- Press Continue.
- Enter Payment Details.
- Confirm order details.
- Complete.
How do San certificates work?
A SAN certificate allows you to custom build an SSL certificate for your server security needs. This allows you to secure a combination of domain names, subdomains, IP addresses and local host names by adding them to the SAN field during enrolment.
Should San include CN?
SAN is an extension to the X. 509 specification that allows users to specify additional host names for a single SSL certificate. … It is still a practice to define both CN and SAN when requesting a certificate. An important point is that CN and SAN are not complimentary and any CN defined should be a subset of SAN list.
How many domains does San CERT have?
Encrypt up to 250 multiple domains and their subdomains on the multiple servers with a single SAN SSL certificates.
How do multi-domain SSL certificates work?
Multi-Domain/SAN Certificates SAN is short for Subject Alternative Name. In a multi-domain certificate, it is a field that allows you to attach additional host n ames to one SSL certificate. These host names can be anything from IP addresses to URLS but are most commonly DNS (domain name system) names.
What is multi-domain certificate?
A multi-domain certificate is designed to secure many domain and/or subdomain names. … These certificates can secure the combination of completely unique domains and subdomains with different TLDs (Top Level Domains) except for the local/internal ones: example.org. mail.another-domain.net.
Can I use SSL certificate on multiple domains?
The simple answer is a resounding Yes! You absolutely can use one SSL certificate for multiple domains — or one SSL certificate for multiple subdomains in addition to domains.
How do you add San DigiCert?
To use the remaining validity included with the original certificate, request new duplicate certificates during the order’s final 397-day period. To learn more, see End of 2-year DV, OV, and EV public SSL/TLS certificates. All DigiCert certificates include free duplicate certificates.
What is UCC SAN SSL Godaddy?
A multi-domain, Subject Alternative Name certificate (SAN) or Unified Communication Certificate (UCC) SSL offers the same encryption as other SSL certificates while protecting multiple domains, subdomains and environments.
How do you get a wildcard for SSL?
- Go to the Wildcard SSL product page. …
- Click the buy button. …
- Select duration and add to cart. …
- Finish shopping and check out. …
- Log in [if you already have an SSL.com account]. …
- Create an SSL.com account [if you don’t have one already]. …
- Apply funds to cover payment. …
- Click link to finish processing.
How do I generate CSR for SSL Certificate in Windows 10?
- Open certmgr.msc.
- Right click the “Personal” folder. …
- Click Next on the “before you begin” window. …
- Make sure the Request Format is PKCS #10 and select Next.
- Expand Details and select Properties.
- Under the General Tab you need to give the certificate a descriptive friendly name.
How do I generate CSR for SSL Certificate in Windows without IIS?
Create CSR To create a CSR, we need the Microsoft Management Console (MMC). To start it, we click on Start > Search program and files type the command mmc then press Enter to run the Snap-in console. From File menu select Add/remove Snap-in option. Select Certificates then click Add button.
How do I install an SSL certificate in Windows 10?
- Locate certificate order. First, locate the order in your SSL.com account and click one of the download links.
- Download certificate. …
- Start IIS Manager. …
- Select server. …
- Open Server Certificates. …
- Click “Complete Certificate Request…” …
- Click … …
- Navigate to certificate file.
How do I find the domain of a certificate?
- Click the padlock icon in the address bar for the website.
- Click on Certificate (Valid) in the pop-up.
- Check the Valid from dates to validate the SSL certificate is current.
Is SSL certificate free?
Website owners and developers can source free SSL certificate providers and paid SSL certificates issued by Certificate Authorities (CAs). As the name suggests, free SSL certificates don’t require payment, and web owners can use them as much as they want.