As not always is possible to use an wildcard (*) to create request certificates using ISPConfig SSL UI, it will be usefull to allow us to create additionally subjectAltNames (SAN) in the certificate creation. Some browsers, including mobile ones, don't work great with *.example.tld, they need the multiple domains to exists in both CN and SAN. From http://backreference.org/2009/12/17/name-based-ssl-virtual-hosts-in-apache Also, for those people that will sign with an official certificate, you should notice that signing request certificates with 2 or more domains, or an wildcard domain, requires you to buy a proper certificate to allow that.