Multiple domains and adding new ones

Ubuntu 16.04.2x64 LTS

Digital Ocean

Yes as root

No, I am all command-line.

Hello there,

I hope I am not repeating something which was asked before. I have read the topics in this group and can’t find an exact topic which matches what I am asking.

Also, please accept my apologies if this is an obvious one, but I can’t find an exact match either in the FAQ.

I use a number of domains, one of which is In theory, I would have

I know that I can get a single cert which covers all of the above domains.
Suppose in 3 months’ time, I need to add (for example) ?
Do I need to get a new cert , or is there some way of adding customer4. to my existing cert ? Either way, would my existing cert be invalidated ?
As I am using Apache2, I don’t need to restart my web service to incorporate a new cert. But, will the renew switch to certbot work with a multi-cert like this ?

What I have in mind is setting up something along the lines of , but with Apache2 rather than nginx.

Wildcard certs would be great, but I gather you won’t be providing those until January of 2018 ?

Thank you for any help/pointers and my apologies again if this has already been asked.

Kind Regards,

Hi Raymond

Certbot has an -expand flag which will allow you to add more subdomains

Note: certificates once issued are immutable. This means you cannot extend the validity or add subdomains or change the certificate in any way once it is issued.

When you expand or “renew” a certificate you are actually obtaining a new certificate

More reading and proof: Reverse Engineering Certbot Expand Option to Use with Another Client



Thanks very much, Andrei. Very fast and comprehensive response.


