Append or change a domain name

更新时间:
复制 MD 格式

After an SSL certificate is issued, you can append new domain names to the certificate or change the bound domain names. Appending domain names applies when you need a single certificate to protect multiple domain names. Changing domain names applies when the certificate has been issued for more than 28 calendar days (beyond the revocation period) and you still need to change the bound domain names. This topic describes how to append or change domain names.

Append domain names

Appending domain names adds new domain names to an issued SSL certificate. This applies when you need a single certificate to protect multiple domain names.

Appending domain names is equivalent to purchasing a new certificate, and additional fees are required. The actual fees are displayed on the purchase page. After you append domain names, neither the original certificate nor the certificate with appended domain names supports refunds.

SSL Certificate Management V2.0

Prerequisites

You can append domain names to a certificate only if the certificate meets all of the following conditions:

  • The certificate is in the Issued or About to Expire state.

  • The certificate order was placed on or after May 6, 2026. For certificates ordered before this date, the Append Domain Name button is not available.

  • The certificate brand is not GlobalSign or CFCA.

  • The certificate is an OV or EV certificate, or a DV certificate issued by GeoTrust.

  • OV certificates support appending single domain names and wildcard domain names. EV certificates support appending single domain names only, and do not support appending wildcard domain names. GeoTrust DV certificates support appending single domain names.

Procedure

  1. Log on to the Certificate Management Service console.

  2. In the left-side navigation pane, choose Certificate Management > SSL Certificate Management V2.0.

  3. On the Commercial Certificates tab, find the certificate that you want to manage and click Append Domain Name in the Actions column.

    Note

    If the certificate does not meet the preceding prerequisites, the Append Domain Name button is not displayed in the Actions column.

  4. In the Append Domain Name dialog box, check the Current Domain Count field to view the remaining domain name quota. The quota is displayed separately for single domain names and wildcard domain names. If the remaining quota is insufficient, click Upgrade to purchase additional domain name quota.

  5. In the domain name field, enter the domain names that you want to append. You can separate multiple domain names with line breaks, commas, or semicolons. The system counts the single domain names and wildcard domain names that you enter in real time.

  6. Check the Included Domains list, click OK, and then click Submit in the confirmation dialog box that appears.

After you submit the request, the system processes the request to append domain names asynchronously. You can refresh the Commercial Certificates list to view the certificate status. After the request is processed, you can view the appended domain names in the certificate details.

SSL Certificate Management (V1.0 Discontinued)

Prerequisites

  • Your SSL certificate is a commercial certificate that is purchased from Alibaba Cloud and issued by GlobalSign (the remaining validity period of the certificate must be more than 6 months), DigiCert, Rapid, GeoTrust, or CFCA, and the certificate has been issued.

    • OV certificates support appending single domain names and wildcard domain names.

    • EV certificates support appending single domain names only.

    • DV certificates do not support appending domain names.

  • Your SSL certificate does not have the managed service enabled. To append domain names to a managed SSL certificate, cancel the managed service first. For more information, see Cancel hosting.

Procedure

  1. Log in to the Certificate Management Service console.

  2. In the left-side navigation pane, choose Certificate Management > SSL Certificate Management (V1.0 Discontinued).

  3. On the Commercial Certificates tab, find the target certificate, and in the Actions column, click More.

  4. On the Append Domain Name tab, select the domain names to append, select the Note check box, and click OK.

  5. In the dialog box that appears, click Submit.

    After you submit the request to append domain names, the system sends a review email. Check your inbox. After the review is approved, find the target certificate in the SSL certificate list and view the appended domain names in the Bound Domains column.

After domain names are appended, if the original certificate is revoked and becomes unavailable, you must reinstall the new certificate issued with the appended domain names. For more information, see Deploy a certificate.

Change domain names

Changing domain names replaces the domain names bound to an issued SSL certificate with new domain names. This applies when the certificate has been issued for more than 28 calendar days (beyond the revocation period) and you still need to change the domain names.

Changing domain names is equivalent to purchasing a new certificate, and additional fees are required. The actual fees are displayed on the purchase page. After the domain names are changed, neither the original certificate nor the new certificate supports refunds.

Note
  • If changing domain names fails (the review is not approved), Alibaba Cloud automatically cancels the domain name change order and refunds the fees through the original payment method.

  • If changing domain names succeeds, the new certificate has the same validity period as the original certificate. For example, if the original certificate expires on December 31, 2022, the new certificate also expires on December 31, 2022.

Prerequisites

  • Your SSL certificate is a commercial certificate that is purchased from Alibaba Cloud and issued by GlobalSign, DigiCert, GeoTrust, or CFCA, and the certificate has been issued.

  • The remaining validity period of a GlobalSign certificate must be more than 6 months.

  • GlobalSign certificates do not support changing the primary domain name, that is, the Common Name, of a certificate.

  • The SSL certificate must have been issued for more than 30 calendar days.

    Find the target certificate in the SSL certificate list, click More in the Actions column, and view the certificate issuance date on the Details tab.

  • Your SSL certificate does not have the managed service enabled. To change domain names for a managed SSL certificate, cancel the managed service first. For more information, see Cancel hosting.

Procedure

  1. Log in to the Certificate Management Service console.

  2. In the left-side navigation pane, choose Certificate Management > SSL Certificate Management (V1.0 Discontinued).

  3. On the Commercial Certificates tab, find the target certificate, and in the Actions column, click More.

  4. On the Change Domain Name tab, select the domain names to change, enter the new domain names, select the Note check box, and click OK.

    Important

    The new domain name must have the same specification as the domain name being replaced. For example, if the domain name being replaced is a wildcard domain name such as *.aliyun.com, the new domain name must also be a wildcard domain name, such as *.taobao.com.

  5. In the dialog box that appears, click Submit.

    After you submit the request to change domain names, Alibaba Cloud reviews your request. After the review is approved, Alibaba Cloud issues a new certificate to replace the old one.

After the domain names are changed, the old certificate is revoked. You must reinstall the new certificate. For more information, see Deploy a certificate.

Related documentation