Forum Discussion
Adding SAN to existing SSL certificate.
Hello,
I need to add a new SAN to an existing SSL certificate. e.g.
Existing:
common name: SAN:
New:
common name: SAN: SAN:
Will I need to generate a new public/private key pair containing the new SAN and provide this to the CA or will they just generate a new certificate (containing the additional SAN) which I can import against my existing private key?
Thanks,
Nick.
3 Replies
- Jinshu
Cirrus
You might need to add a new certificate including the new domain names with new private keys. You cant just re-use the private keys.
Certificates cannot be modified after they are signed, otherwise they would provide no security.
-Jinshu
- Kevin_Stewart
Employee
You can technically re-use the existing private key to request a new certificate with new attributes.
- Kevin_Stewart
Employee
You can most certainly create a new CSR from an existing private key.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com