Cloudflare Cert from COMODO lists 3rd party domains as Alt Names when browsing to proxied name in our domain?

Checking everything over before we get ready to cut over to a new proxy server.

Noticed in the cert a number of 3rd party domains we are completely unaffiliated with are listed in the alt name field on the cert?

Not Critical
DNS Name: *.bianance.site
DNS Name: *.bisnis3inetworks.com
DNS Name: *.booksabovetp.cf
DNS Name: *.bwadditions.com.au
DNS Name: *.cvetovoj-krug2.tk
DNS Name: *.dogfocused.co.uk
DNS Name: *.festivalaccess.cf
DNS Name: *.hutchingfssq.gq
DNS Name: *.mcitoyennesq.gq
DNS Name: *.my-vintage.ga
DNS Name: *.newchristmas.co
DNS Name: *.qhelibook.ga
DNS Name: *.trueofilely8.gq
DNS Name: *.valerioguitar.com
DNS Name: bianance.site
DNS Name: bisnis3inetworks.com
DNS Name: booksabovetp.cf
DNS Name: bwadditions.com.au
DNS Name: cvetovoj-krug2.tk
DNS Name: dogfocused.co.uk
DNS Name: festivalaccess.cf
DNS Name: hutchingfssq.gq
DNS Name: mcitoyennesq.gq
DNS Name: my-vintage.ga
DNS Name: newchristmas.co
DNS Name: qhelibook.ga
DNS Name: trueofilely8.gq
DNS Name: valerioguitar.com

This seems… odd.

Yes, this is part of the shared universal SSL certificate Cloudflare issues. A number of new universal SSL certificates now are limited to the specific domain but which one you get seems to be a mystery.

You can immediately remedy this by purchasing a $5/mo dedicated certificate (under the crypto tab -> Edge Certificates -> order SSL certificate):

2 Likes