How to set common name at multi-domain certificate? I run сertbot with command

sudo certbot certonly \
	--dns-cloudflare \
	--dns-cloudflare-credentials /etc/letsencrypt/cloudflare.ini \
	-d -d

and I got certificates at /etc/letsencrypt/live/ Then I check it and see common name is, not But I need strict set common name to

# openssl x509 -subject -ext subjectAltName -noout -in cert.pem
subject=CN =
X509v3 Subject Alternative Name:,

My old certificates got common name from first domain in certbot run command. But now something change at Let's Encrypt and my new certificates got first alphabetic domain as common name. Renew certificates aren't affected.

Welcome to the community @chernyshaw
Yes, there was a recent change in how the Common Name was chosen

See below topic for details.

Can you explain why you need the Common Name to be as it is. Because longer term Common Name won't be used at all.


Thank you for fast and clear responce!

In my case I have 2 mail servers (, and (, and now they mix up at my monitoring service. But I can manage with it.


