# Chrome & Edge | NET::ERR\_CERT\_COMMON\_NAME\_INVALID

**URL:** <https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028>\
**Category:** Help\
**Created:** [September 12, 2017, 7:15am UTC](https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028 "2017-09-12T07:15:59Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![RedefineSoftware](https://avatars.discourse-cdn.com/v4/letter/r/58956e/32.png) [@RedefineSoftware](https://community.letsencrypt.org/u/RedefineSoftware)\
**Post date:** [September 12, 2017, 7:16am UTC](https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028/1 "2017-09-12T07:16:00Z")

</div>

Hello

My domain is: nspca.co.za

We requested our hosting provider to set up a Let's Encrypt SSL certificate for our client. The certificate was to be set up for the default domain nspca.co.za The domain www.nspca.co.za has a 301 redirect to nscpa.co.za

When typing www.nspca.co.za into the URL on Chrome and Edge in a desktop and mobile version (after clearing cache as well) the following error displays:  
NET::ERR\_CERT\_COMMON\_NAME\_INVALID

Our hosting provider has reported the following:

"I have taken a look at the settings on your server and I can that the SSL certificate is assigned to "nspca.co.za" and that the bindings for this are set correctly. I have included a screen capture of this configuration below specific for the certificate for reference"

 ![nspca](https://global.discourse-cdn.com/letsencrypt/original/3X/8/c/8cc30a055ea95d54deef1003a8733659a08199ad.jpg)

On reading the following thread in this forum:

> [@There are issues with the site's certificate chain (net::ERR\_CERT\_COMMON\_NAME\_INVALID](https://community.letsencrypt.org/t/there-are-issues-with-the-sites-certificate-chain-net-err-cert-common-name-invalid/27986/3):
>
> T…

in particular:  
".......So, the solution was generate the certificate for the main domain (e.g: "[example.com](http://example.com)") but also for the alias or subdomain (e.g: "[www.appcoles.com](http://www.appcoles.com)")."

we requested that hosting providers check the alias or sub domain to which there response was:  
"The certificate installed on the server does not include aliases or subdomains it is only for the domain "nspca.co.za"."

Do we need to set up a 2nd certificate for the domain www.nspca.co.za?

How do we resolve the error on the domain www.nspca.co.za?

---

<div class="post-metadata">

**Author:** ![ahaw021](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/ahaw021/32/14882_2.png) [@ahaw021](https://community.letsencrypt.org/u/ahaw021)\
**Post date:** [September 12, 2017, 7:31am UTC](https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028/2 "2017-09-12T07:31:05Z")

</div>

if you browse to www.nspca.co.za no redirect happens if you use the HTTPS protocol

the HTTP version redirect to HTTPS

the certificate bound to that domain is also expired

 ![image](https://global.discourse-cdn.com/letsencrypt/original/3X/2/6/260d017de0453b5c733a8d2a84bc56d893769f2d.png)

the certificate issued does not include the www subdomain. [https://crt.sh/?id=197521509](https://crt.sh/?id=197521509)

Andrei

---

<div class="post-metadata">

**Author:** ![ahaw021](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/ahaw021/32/14882_2.png) [@ahaw021](https://community.letsencrypt.org/u/ahaw021)\
**Post date:** [September 12, 2017, 7:32am UTC](https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028/3 "2017-09-12T07:32:34Z")

</div>

> [@RedefineSoftware](#):
>
> Do we need to set up a 2nd certificate for the domain www.nspca.co.za?
> 
> How do we resolve the error on the domain www.nspca.co.za?

Yes it should

Ask the person who created the certificate to get one that covers both the www.nspca.co.za and nspca.co.za

Andrei

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/letsencrypt/original/3X/c/a/ca6c06ea1ea201324bba7048c6841ce60236468d.png) [@system](https://community.letsencrypt.org/u/system)\
**Post date:** [October 12, 2017, 7:32am UTC](https://community.letsencrypt.org/t/chrome-edge-net-err-cert-common-name-invalid/42028/4 "2017-10-12T07:32:58Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
