@serverco hit the nail on the head when they mentioned that this is generally indicative of a misbehaving client. You shouldn’t hit the pending authz limit under normal circumstances. Can you share more information about your setup?
@priya, did you need all 200 domains to be mentioned in a single certificate? I believe Let’s Encrypt has a limit of 100 domains per certificate (though it’s possible to get multiple certificates which together cover more than 100 numbers).
@priya, I’m not familiar with Tomcat configuration, but maybe someone else can help you with that. Depending on what kinds of clients are accessing your services, it may be perfectly fine to have separate certificates because modern clients indicate what name they’re attempting to connect to via SNI, and then the server can choose an appropriate name on that basis. Only some older clients have trouble with this.
Getting multiple certificates should just involve repeating the process that you originally used to get your first certificate, but with different names.