Blog | G5 Cyber Security

SSL Certificate for Multiple Domains

TL;DR

For securing two domains plus all subdomains, a Wildcard SSL certificate is the best option. It’s more cost-effective and easier to manage than individual certificates.

1. Understanding Your Options

You have several choices for securing your websites with SSL/TLS:

Given your requirement of two domains *and* all their subdomains, a Wildcard certificate is the most efficient.

2. Choosing a Certificate Authority (CA)

Several reputable CAs offer Wildcard SSL certificates. Some popular options include:

For simplicity, we’ll focus on Sectigo as a good all-rounder.

3. Purchasing the Wildcard Certificate

  1. Visit the Sectigo website: Go to https://www.sectigo.com
  2. Select a Wildcard SSL certificate: Choose a suitable plan (DV, OV or EV – see Step 4).
  3. Add to cart and checkout: Provide the domain name you want to secure (e.g., *.example.com) during purchase.

4. Certificate Validation Levels

SSL certificates come in different validation levels:

For most business websites, an OV Wildcard SSL certificate is recommended.

5. Generating a Certificate Signing Request (CSR)

You’ll need to generate a CSR on your web server. The process varies depending on your server software:

Ensure you store the private key file (e.g., example.com.key) securely.

6. Submitting the CSR to Sectigo

  1. Log in to your Sectigo account: Access the order details for your purchased certificate.
  2. Paste the CSR: Copy and paste the contents of your example.com.csr file into the designated field.
  3. Complete validation: Follow Sectigo’s instructions for domain/organisation verification (usually email confirmation).

7. Installing the SSL Certificate

Once validated, Sectigo will provide you with the certificate files:

Installation also varies by server software:

Restart your web server after installation.

8. Testing Your Installation

  1. Use an SSL checker tool: Websites like https://www.sslshopper.com/ssl-checker.html can verify your certificate installation.
  2. Check in a web browser: Visit https://www.example.com and ensure you see the padlock icon, indicating a secure connection.
Exit mobile version