that's true for the main web domain. But there are some pretty chunky gateways for subdomains using Let's Encrypt.
What struck me was the risk of compromising a single private key. Just in a narrow sense of phishing, it would allow you to launch phishing attacks targeting users of many US gov departments.
... but I was told that that is a common network configuration. So nothing to worry about, really, I'm just imagining things.
It's true it's usually a bad practice to use the same private key on different server, but, it that specific case, you notice that all domains are about "search", so they most probably all points to the same server with the search software installed