Wildcard SSL not applying to sub-domains - AWS lightsail

Our main domain has the wildcard SSL and is working fine.
How do we apply to the sub-domains
I followed the below URL to add the SSL to aws, but does not mention anything about subdomains which is second instance and has different IP.


Any help would be appreciated.

Unless you have a lot of instances, it would be simplest to get a second certificate for the second instance. To do that, you’d follow the instructions in pretty much the same way, on the second instance.

We recommend that you manage Let’s Encrypt certificates in a more automated way. When using manual DNS validation, you would have to manually renew your certificates and manually add and delete the validating TXT records every 2-3 months.

If you don’t need to use wildcards, consider using Certbot’s HTTP validation. If you really do need wildcards, you can automate DNS validation with an appropriate DNS service, ACME client and OS. Certbot has an Amazon Route 53 plugin that is easy to install on many OSes, but I don’t know if Lightsail provides proper Route 53 API access.

Hi @sujatha-crown

if your main domain doesn't have subdomains: Why do you need a wildcard certificate?

Creating a certificate with


would be enough.

You can create max. 50 new certificates per domain name per week.

And you can use http-01 validation, a text file under /.well-known/acme-challenge.

So if you don't have too much subdomains, it may be easier to create explicit certificates.

PS: Your older thread:

Thank you for all your help and suggestions
I have qa instance as a sub-domain so I am trying to add the same wildcard certificate for that sub-domain.

Since QA instance is a sub-domain under the main domain, if I add new certificate I would need to add more txt records under the main domain. will it validate correctly ?


