Skip to main content
Contributor III
June 4, 2020

Technical Note: [FortiSOAR / Cybersponse Tricks'n'Tips] Replacing default CyOPs certificate with wildcard certificate having two level subdomain.

  • June 4, 2020
  • 0 replies
  • 849 views
Description

If the hostname of CyOPs machine is changed to two level subdomain(e.g. name.subdomain.domain.com), the new certificate must contain *.subdomain.domain.com apart from *.domain.com in the Subject Alternative Names(SAN) section of the certificate.  


If your certificate only contains *.domain.com as part of SAN, you will see `No subject alternative DNS name matching demo.subdomain.domain.com found`  in `/var/log/cyops/cyops-gateway/gateway.log` and `/var/log/cyops/cyops-notifier/notifier.log` files. 


Therefore, make sure you ask to put both *.subdomain.domain.com apart from *.domain.com  in SAN part of the certificate from you certificate issuer.




Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!