Let's Encrypt and EV certificates on the same domainCan TLS Compression be enabled on 3rd party CDN sites...

Is there a defined priority for pattern matching?

Why was Lupin comfortable with saying Voldemort's name?

What is the point of publishing a research paper nowadays when even a blog post or a lecture slide can have more citation count than a journal paper?

Is using an 'empty' metaphor considered bad style?

What is the difference between rolling more dice versus fewer dice?

Does diversity provide anything that meritocracy does not?

TikZ graph edges not drawn nicely

Bash script to truncate subject line of incoming email

Does Skippy chunky peanut butter contain trans fat?

Square Root Distance from Integers

Cat is tipping over bed-side lamps during the night

Play Zip, Zap, Zop

Is there a lava-breathing lizard creature (that could be worshipped by a cult) in 5e?

How would an AI self awareness kill switch work?

Has any human ever had the choice to leave Earth permanently?

How to deal with possible delayed baggage?

What is the difference between "...", '...', $'...', and $"..." quotes?

Why zero tolerance on nudity in space?

Do authors have to be politically correct in article-writing?

Why did the villain in the first Men in Black movie care about Earth's Cockroaches?

Building an exterior wall within an exterior wall for insulation

Has Britain negotiated with any other countries outside the EU in preparation for the exit?

Early credit roll before the end of the film

Do "fields" always combine by addition?



Let's Encrypt and EV certificates on the same domain


Can TLS Compression be enabled on 3rd party CDN sites that have no authentication?Security of SSL certificates bought via resellersCertificate ValidationHow to get a certificate from Let's Encrypt for the server which doesn't allows file creationWhy are Let's Encrypt certificates accepted by default by browsers?What if I want a certificate, but DON'T want my domain in a Certificate Transparency log?Why can't Let's Encrypt support wildcard certificates?SSL cert securing an on-premises web service where the domain is hosted externallyMust one have SSL certificates for each domain, to use HTTPS?what is the maximum life-time for Let's Encrypt certificates













2















I have an e-commerce site (example.com) and want to install an Extended Validation TLS certificate.



But I use a cookieless static content (static.example.com) for images of the website.



To be "Google Shopping friendly" and for secure e-commerce reasons, can I use Let's Encrypt or other domain-validated TLS certificates for static.example.com and EV certificates for example.com?



I have gone through this kind of question online but those were was similar to my situation.










share|improve this question









New contributor




overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.

























    2















    I have an e-commerce site (example.com) and want to install an Extended Validation TLS certificate.



    But I use a cookieless static content (static.example.com) for images of the website.



    To be "Google Shopping friendly" and for secure e-commerce reasons, can I use Let's Encrypt or other domain-validated TLS certificates for static.example.com and EV certificates for example.com?



    I have gone through this kind of question online but those were was similar to my situation.










    share|improve this question









    New contributor




    overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
    Check out our Code of Conduct.























      2












      2








      2








      I have an e-commerce site (example.com) and want to install an Extended Validation TLS certificate.



      But I use a cookieless static content (static.example.com) for images of the website.



      To be "Google Shopping friendly" and for secure e-commerce reasons, can I use Let's Encrypt or other domain-validated TLS certificates for static.example.com and EV certificates for example.com?



      I have gone through this kind of question online but those were was similar to my situation.










      share|improve this question









      New contributor




      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.












      I have an e-commerce site (example.com) and want to install an Extended Validation TLS certificate.



      But I use a cookieless static content (static.example.com) for images of the website.



      To be "Google Shopping friendly" and for secure e-commerce reasons, can I use Let's Encrypt or other domain-validated TLS certificates for static.example.com and EV certificates for example.com?



      I have gone through this kind of question online but those were was similar to my situation.







      tls letsencrypt






      share|improve this question









      New contributor




      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.











      share|improve this question









      New contributor




      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      share|improve this question




      share|improve this question








      edited 28 mins ago









      Luc

      23.2k644101




      23.2k644101






      New contributor




      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      asked 8 hours ago









      overeroverer

      111




      111




      New contributor




      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.





      New contributor





      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






      overer is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






















          3 Answers
          3






          active

          oldest

          votes


















          5














          It is possible to have multiple certificates from different vendors for different parts of the domain and even have overlapping certificates., i.e. multiple certificates which could be used to authenticate the same domain.



          Browsers actually only care that a specific certificate is valid for the specific domain it is used on and don't care if the same certificate could also be used for other domains. They also only care that all content is served over HTTPS (i.e. no mixed content) but don't care if some content is served with a EV certificate while other content is served with DV certificate only.



          Apart from that, I recommend to read Extended Validation Certificates are Dead to get a better opinion if EV certificates are worth their money at all.






          share|improve this answer
























          • Very good link to Troy Hunt's article, worth the read.

            – WoJ
            3 hours ago











          • Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

            – Lie Ryan
            2 hours ago













          • Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

            – Esa Jokinen
            5 mins ago



















          2














          Yes you can, with some caveats.



          Normally, letsencrypt certificate are valid for a single FQDN. So you can create an domain-identified only (DV) certificate for static.example.com and an EV-identified certificate for your root domain.



          Note be careful that another consideration applies when using wildcard certificate and some multi domain certificate. Some CAs (including LetsEncrypt) may issue a wildcard/multi domain certificate that will also be valid for your root domain because the certificates the issue always contain SAN (subject alternative name) that includes your root domain even if you don't explicitly list your root domain when requesting the certificate. Check the SAN field of the certificate to be sure that your certificate are covering exactly what you expected and no more.



          A couple security notes though, be careful of server settings that may apply to all subdomains, like certain Cookies and HSTS config.






          share|improve this answer



















          • 2





            Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

            – dave_thompson_085
            6 hours ago



















          0














          There are tree options for this situation:




          1. Go with wildcard ssl certificate to secure your root and its sub domains.

          2. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then go for Symantec EV SSL which now gives facility to secure multi domain with it. (Usually remains high in the price).

          3. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then other affordable option is EV Multi Domain SSL.






          share|improve this answer
























          • Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

            – Luc
            23 mins ago











          Your Answer








          StackExchange.ready(function() {
          var channelOptions = {
          tags: "".split(" "),
          id: "162"
          };
          initTagRenderer("".split(" "), "".split(" "), channelOptions);

          StackExchange.using("externalEditor", function() {
          // Have to fire editor after snippets, if snippets enabled
          if (StackExchange.settings.snippets.snippetsEnabled) {
          StackExchange.using("snippets", function() {
          createEditor();
          });
          }
          else {
          createEditor();
          }
          });

          function createEditor() {
          StackExchange.prepareEditor({
          heartbeatType: 'answer',
          autoActivateHeartbeat: false,
          convertImagesToLinks: false,
          noModals: true,
          showLowRepImageUploadWarning: true,
          reputationToPostImages: null,
          bindNavPrevention: true,
          postfix: "",
          imageUploader: {
          brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
          contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
          allowUrls: true
          },
          noCode: true, onDemand: true,
          discardSelector: ".discard-answer"
          ,immediatelyShowMarkdownHelp:true
          });


          }
          });






          overer is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fsecurity.stackexchange.com%2fquestions%2f204359%2flets-encrypt-and-ev-certificates-on-the-same-domain%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown

























          3 Answers
          3






          active

          oldest

          votes








          3 Answers
          3






          active

          oldest

          votes









          active

          oldest

          votes






          active

          oldest

          votes









          5














          It is possible to have multiple certificates from different vendors for different parts of the domain and even have overlapping certificates., i.e. multiple certificates which could be used to authenticate the same domain.



          Browsers actually only care that a specific certificate is valid for the specific domain it is used on and don't care if the same certificate could also be used for other domains. They also only care that all content is served over HTTPS (i.e. no mixed content) but don't care if some content is served with a EV certificate while other content is served with DV certificate only.



          Apart from that, I recommend to read Extended Validation Certificates are Dead to get a better opinion if EV certificates are worth their money at all.






          share|improve this answer
























          • Very good link to Troy Hunt's article, worth the read.

            – WoJ
            3 hours ago











          • Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

            – Lie Ryan
            2 hours ago













          • Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

            – Esa Jokinen
            5 mins ago
















          5














          It is possible to have multiple certificates from different vendors for different parts of the domain and even have overlapping certificates., i.e. multiple certificates which could be used to authenticate the same domain.



          Browsers actually only care that a specific certificate is valid for the specific domain it is used on and don't care if the same certificate could also be used for other domains. They also only care that all content is served over HTTPS (i.e. no mixed content) but don't care if some content is served with a EV certificate while other content is served with DV certificate only.



          Apart from that, I recommend to read Extended Validation Certificates are Dead to get a better opinion if EV certificates are worth their money at all.






          share|improve this answer
























          • Very good link to Troy Hunt's article, worth the read.

            – WoJ
            3 hours ago











          • Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

            – Lie Ryan
            2 hours ago













          • Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

            – Esa Jokinen
            5 mins ago














          5












          5








          5







          It is possible to have multiple certificates from different vendors for different parts of the domain and even have overlapping certificates., i.e. multiple certificates which could be used to authenticate the same domain.



          Browsers actually only care that a specific certificate is valid for the specific domain it is used on and don't care if the same certificate could also be used for other domains. They also only care that all content is served over HTTPS (i.e. no mixed content) but don't care if some content is served with a EV certificate while other content is served with DV certificate only.



          Apart from that, I recommend to read Extended Validation Certificates are Dead to get a better opinion if EV certificates are worth their money at all.






          share|improve this answer













          It is possible to have multiple certificates from different vendors for different parts of the domain and even have overlapping certificates., i.e. multiple certificates which could be used to authenticate the same domain.



          Browsers actually only care that a specific certificate is valid for the specific domain it is used on and don't care if the same certificate could also be used for other domains. They also only care that all content is served over HTTPS (i.e. no mixed content) but don't care if some content is served with a EV certificate while other content is served with DV certificate only.



          Apart from that, I recommend to read Extended Validation Certificates are Dead to get a better opinion if EV certificates are worth their money at all.







          share|improve this answer












          share|improve this answer



          share|improve this answer










          answered 6 hours ago









          Steffen UllrichSteffen Ullrich

          117k13204271




          117k13204271













          • Very good link to Troy Hunt's article, worth the read.

            – WoJ
            3 hours ago











          • Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

            – Lie Ryan
            2 hours ago













          • Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

            – Esa Jokinen
            5 mins ago



















          • Very good link to Troy Hunt's article, worth the read.

            – WoJ
            3 hours ago











          • Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

            – Lie Ryan
            2 hours ago













          • Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

            – Esa Jokinen
            5 mins ago

















          Very good link to Troy Hunt's article, worth the read.

          – WoJ
          3 hours ago





          Very good link to Troy Hunt's article, worth the read.

          – WoJ
          3 hours ago













          Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

          – Lie Ryan
          2 hours ago







          Overlapping certificates can actually be a problem for this particular case. If OP passess the key for static.example.com to a CDN but maintain example.com in their own control, then the CDN operator and an attacker who breached CDN operator's security will be able to snoop/impersonate example.com. Note that to actually prevent breaches of trust like this completely, you'll also need to use subresource integrity to prevent your CDN from modifying and injecting scripts into your pages.

          – Lie Ryan
          2 hours ago















          Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

          – Esa Jokinen
          5 mins ago





          Troy Hunt's extended blog post on EV certificates. A bit less of examples would have been more than enough. Still, it's so entertaining that it's hard to stop reading it.

          – Esa Jokinen
          5 mins ago













          2














          Yes you can, with some caveats.



          Normally, letsencrypt certificate are valid for a single FQDN. So you can create an domain-identified only (DV) certificate for static.example.com and an EV-identified certificate for your root domain.



          Note be careful that another consideration applies when using wildcard certificate and some multi domain certificate. Some CAs (including LetsEncrypt) may issue a wildcard/multi domain certificate that will also be valid for your root domain because the certificates the issue always contain SAN (subject alternative name) that includes your root domain even if you don't explicitly list your root domain when requesting the certificate. Check the SAN field of the certificate to be sure that your certificate are covering exactly what you expected and no more.



          A couple security notes though, be careful of server settings that may apply to all subdomains, like certain Cookies and HSTS config.






          share|improve this answer



















          • 2





            Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

            – dave_thompson_085
            6 hours ago
















          2














          Yes you can, with some caveats.



          Normally, letsencrypt certificate are valid for a single FQDN. So you can create an domain-identified only (DV) certificate for static.example.com and an EV-identified certificate for your root domain.



          Note be careful that another consideration applies when using wildcard certificate and some multi domain certificate. Some CAs (including LetsEncrypt) may issue a wildcard/multi domain certificate that will also be valid for your root domain because the certificates the issue always contain SAN (subject alternative name) that includes your root domain even if you don't explicitly list your root domain when requesting the certificate. Check the SAN field of the certificate to be sure that your certificate are covering exactly what you expected and no more.



          A couple security notes though, be careful of server settings that may apply to all subdomains, like certain Cookies and HSTS config.






          share|improve this answer



















          • 2





            Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

            – dave_thompson_085
            6 hours ago














          2












          2








          2







          Yes you can, with some caveats.



          Normally, letsencrypt certificate are valid for a single FQDN. So you can create an domain-identified only (DV) certificate for static.example.com and an EV-identified certificate for your root domain.



          Note be careful that another consideration applies when using wildcard certificate and some multi domain certificate. Some CAs (including LetsEncrypt) may issue a wildcard/multi domain certificate that will also be valid for your root domain because the certificates the issue always contain SAN (subject alternative name) that includes your root domain even if you don't explicitly list your root domain when requesting the certificate. Check the SAN field of the certificate to be sure that your certificate are covering exactly what you expected and no more.



          A couple security notes though, be careful of server settings that may apply to all subdomains, like certain Cookies and HSTS config.






          share|improve this answer













          Yes you can, with some caveats.



          Normally, letsencrypt certificate are valid for a single FQDN. So you can create an domain-identified only (DV) certificate for static.example.com and an EV-identified certificate for your root domain.



          Note be careful that another consideration applies when using wildcard certificate and some multi domain certificate. Some CAs (including LetsEncrypt) may issue a wildcard/multi domain certificate that will also be valid for your root domain because the certificates the issue always contain SAN (subject alternative name) that includes your root domain even if you don't explicitly list your root domain when requesting the certificate. Check the SAN field of the certificate to be sure that your certificate are covering exactly what you expected and no more.



          A couple security notes though, be careful of server settings that may apply to all subdomains, like certain Cookies and HSTS config.







          share|improve this answer












          share|improve this answer



          share|improve this answer










          answered 8 hours ago









          Lie RyanLie Ryan

          23.4k34977




          23.4k34977








          • 2





            Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

            – dave_thompson_085
            6 hours ago














          • 2





            Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

            – dave_thompson_085
            6 hours ago








          2




          2





          Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

          – dave_thompson_085
          6 hours ago





          Multidomain and wildcard are quite different things; LE does the first semiautomatically but not the second. Even if an LE cert does mistakenly include the bare domain, it's perfectly valid to not use that cert for that domain, as long as you can configure your webserver(s?) to do so.

          – dave_thompson_085
          6 hours ago











          0














          There are tree options for this situation:




          1. Go with wildcard ssl certificate to secure your root and its sub domains.

          2. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then go for Symantec EV SSL which now gives facility to secure multi domain with it. (Usually remains high in the price).

          3. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then other affordable option is EV Multi Domain SSL.






          share|improve this answer
























          • Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

            – Luc
            23 mins ago
















          0














          There are tree options for this situation:




          1. Go with wildcard ssl certificate to secure your root and its sub domains.

          2. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then go for Symantec EV SSL which now gives facility to secure multi domain with it. (Usually remains high in the price).

          3. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then other affordable option is EV Multi Domain SSL.






          share|improve this answer
























          • Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

            – Luc
            23 mins ago














          0












          0








          0







          There are tree options for this situation:




          1. Go with wildcard ssl certificate to secure your root and its sub domains.

          2. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then go for Symantec EV SSL which now gives facility to secure multi domain with it. (Usually remains high in the price).

          3. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then other affordable option is EV Multi Domain SSL.






          share|improve this answer













          There are tree options for this situation:




          1. Go with wildcard ssl certificate to secure your root and its sub domains.

          2. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then go for Symantec EV SSL which now gives facility to secure multi domain with it. (Usually remains high in the price).

          3. If want EV SSL for root domain example.com and also want to secure sub domain static.example.com then other affordable option is EV Multi Domain SSL.







          share|improve this answer












          share|improve this answer



          share|improve this answer










          answered 1 hour ago









          DanaDana

          12




          12













          • Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

            – Luc
            23 mins ago



















          • Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

            – Luc
            23 mins ago

















          Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

          – Luc
          23 mins ago





          Your answer is a little short: you mention a few options as bullet points, but not what pros and cons are for each option. The answer also contains some typos. It's a good start for a useful answer, but to get more upvotes, you might want to expand the answer.

          – Luc
          23 mins ago










          overer is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          overer is a new contributor. Be nice, and check out our Code of Conduct.













          overer is a new contributor. Be nice, and check out our Code of Conduct.












          overer is a new contributor. Be nice, and check out our Code of Conduct.
















          Thanks for contributing an answer to Information Security Stack Exchange!


          • Please be sure to answer the question. Provide details and share your research!

          But avoid



          • Asking for help, clarification, or responding to other answers.

          • Making statements based on opinion; back them up with references or personal experience.


          To learn more, see our tips on writing great answers.




          draft saved


          draft discarded














          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fsecurity.stackexchange.com%2fquestions%2f204359%2flets-encrypt-and-ev-certificates-on-the-same-domain%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown





















































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown

































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown







          Popular posts from this blog

          “%fieldName is a required field.”, in Magento2 REST API Call for GET Method Type The Next...

          How to change City field to a dropdown in Checkout step Magento 2Magento 2 : How to change UI field(s)...

          變成蝙蝠會怎樣? 參考資料 外部連結 导航菜单Thomas Nagel, "What is it like to be a...