The following renewal configurations were invalid

I would recommend expanding the existing certificates, not deleting them and making a new one. Although in the end it comes down to the same. Although if you delete the certs, try making the wildcards and for some reason don't succeed, you've got zero certificates :stuck_out_tongue: Always make a backup though.

For quite some time now.

Sure, I don't see why not. It would mean using the "regular" hostnames though, not local.domain variants.

Not a very rare use case no. Sometimes people use their own CA for local developing, as it's perfectly possible to include your own root on your own systems. However, using Let's Encrypt certificates is possible too.

1 Like