Getting service certificate with multiple SAN extensions and/or IP address extensions using FreeIPA/RedHat IDM
Issue
For security reasons, certificate with multiple SAN extentions is needed, e.g.
- ipa1.example.com - main FQDN;
- ipa2.example.com - secondary alias;
- 10.10.100.2 - IP address for certificate hardening;
Environment
- Red Hat Enterprise Linux 7,8,9,10
- Red Hat Identity Management
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.