Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

Status Needs Review
Workspace Domino
Categories Administration
Created by Guest
Created on Oct 22, 2025

Cert Store - support of email attributes in SAN of certificate

We have recently experienced an issue where we have been unable to import a CA signed certificate into the Cert store with a misleading validation error indicating the IDN has an invalid character. After numerous exchanges with HCL support (case number CS1410615) it appears the issue was in fact due to an email address being present in the SAN field of the certificate and nothing to do with the IDN field.


As our customer's CA as standard places the certificate contact's email address in the SAN field this is causing us to request one-off changes to their standard which we have not experienced issues with other application servers using. Therefore, the request for this idea is to allow SAN fields to support multiple SAN types including email addresses.

  • Attach files