Is there Limit to No. of Domains I can Add to Cert?

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My primary domain for this cert is:

3111skyline.com

My secondary domain currently on this cert is:

drrankin.com

My law office burned Sunday destroying the building where my office domains were hosted with certs for:

rlfpllc.com
rankinfirm.com
rankinlawfirm.com

I want to run this command to add the law office domains to the 3111skyline cert:

certbot certonly --email itmgr@3111skyline.com --webroot -w /var/lib/letsencrypt/ -d 3111skyline.com,www.3111skyline.com,valkyrie.3111skyline.com,mail.3111skyline.com -d drrankin.com,www.drrankin.com,mail.drrankin.com -d rankinlawfirm.com,www.rankinlawfirm.com,mail.rankinlawfirm.com -d rankinfirm.com,www.rankinfirm.com,mail.rankinfirm.com, -d rlfpllc.com,www.rlfpllc.com,mail.rlfpllc.com

I have NOT run it yet because I don't want to trash my existing 3111skyline.com cert if this will put me over some domain limit I am ignorant of.

My web server is (include version):

Running on Archlinux: 6.3.7-arch1-1
Apache/2.4.57 (Unix) OpenSSL/3.1.1 PHP/5.6.40

(groupware package not updated for newer PHP)

The operating system my web server runs on is (include version):

(see above)

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot):

certbot 2.6.0

Can I add the 3 other domains to my existing 3111skyline.com certificate?

(that will be a total of 5 domains with another 10 or so sub-domains for the host., www., and mail. forms.)

And if I recall, when I add the domains, it will reset the 90 day renewal window for my cert starting from the date of the change ?

Thanks for any help you can provide (or a link where I can find any limits on the number of domains per-cert I can have)

1 Like

Hello @drankinatty, welcome to the Let's Encrypt community. :slightly_smiling_face:

100 see Limit on number of domain in SAN - #2 by jcjones and Why SAN's Are limited to 100 domains only

4 Likes

Oh thank goodness. Thank you for your reply. Does my addition command line look sane for that I want to do. It appears I simply needed to add -d domain.tld,host.domain.tld for each of the domains I need to add.

Also, do I need to cancel/revoke the other currently active cert for the law office, or just let it expire on 7/11? (I've not yet had to revoke anything before)

2 Likes

No, and it's best that you not.

4 Likes

Got it. Thank you again.

2 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.