Wildcard

SSL Certificate

Secure your primary domain and unlimited subdomains with one Wildcard SSL

One Wildcard SSL secures your main domain and all current and future subdomains—reducing cost, complexity, and certificate management.

Available with DV or OV validation · Issued in minutes to 2 business days · Free expert installation

Trusted leader in SSL/TLS certificates

Choose the right Wildcard SSL for your website

Compare Domain-Validated (DV) and Organization-Validated (OV) Wildcard SSL certificates based on trust level and business needs.

Which SSL should I choose?

Answer a few quick questions and we’ll recommend the best SSL for your website.

Takes 10 seconds. No technical knowledge needed.

Help me choose

Why enterprises choose Wildcard SSL with Pladinum

Wildcard SSL is the most efficient way for businesses to secure growing infrastructures with multiple subdomains—without sacrificing trust, control, or scalability.

Secure unlimited subdomains with one certificate

Protect your primary domain and all current and future subdomains (e.g. shop., app., api.) without purchasing additional SSL certificates.

Reduce costs and simplify SSL management

One Wildcard SSL replaces multiple single-domain certificates—lowering costs, renewals, and administrative overhead as your infrastructure grows—without increasing complexity.

Scale instantly without reissuing certificates

Launch new subdomains at any time without reissuing or reinstalling SSL—ideal for fast-moving teams, SaaS platforms, and microservices.

Consistent encryption across all services

Ensure every subdomain is protected with consistent, strong TLS encryption, preventing weak links across login portals, APIs, admin panels, and customer interfaces.

Available with DV or OV validation

Choose fast domain validation or verified business identity—without EV complexity.

Ideal for complex, modern infrastructures

Perfect for eCommerce platforms, SaaS applications, agencies, and enterprises managing multiple environments under one trusted brand identity.

What is verified during Wildcard SSL validation

The security and identity checks required before issuing a Wildcard SSL certificate

Wildcard SSL certificates secure your primary domain and all associated subdomains with a single certificate.

Wildcard SSL validation depends on the level of identity verification you choose—Domain Validation (DV) or Organization Validation (OV). Each level balances speed, trust, and compliance.

Pladinum manages the entire validation lifecycle for you, including DNS guidance, verification monitoring, installation, renewals, and reissues—ensuring fast issuance and zero operational friction.

Most OV SSL certificates are issued within 1–2 business days. Pladinum guides you through every step at no extra cost.

Domain Validation (DV) Wildcard SSL certificates verify that you control the primary domain and all its subdomains. No business paperwork or identity verification is required—only proof of domain control.

Pladinum follows Sectigo’s recommended best practices, prioritizing DNS-based validation for security, automation, and future-proofing.

Recommended: DNS-based domain control validation (DCV)

DNS-based validation is the preferred and most reliable method, especially as certificate lifespans continue to shorten.

» Option 1: DNS CNAME-based validation
A DNS CNAME record is added to your domain, pointing to a validation target provided by the Certificate Authority.

How it works:
• Sectigo provides a unique CNAME hostname and destination
• You add the CNAME record to your domain’s DNS
• Sectigo verifies the record automatically

» Option 2: DNS TXT-based validation (random value method)
You add a TXT record containing a unique random value to your domain’s DNS zone.

Record format:
• Name: _pki-validation.your-domain.com
• Type: TXT
• Value: < random_value_provided_by_sectigo >

Important details:
• The random value is unique per order
• Valid for 30 days
• Once detected, domain control is confirmed automatically

» Alternative: Email-based domain validation
Email-based validation remains supported but is restricted to pre-approved role addresses only. WHOIS email addresses are no longer accepted (effective June 15, 2025).

Allowed validation email addresses:
• admin@your-domain.com
• administrator@your-domain.com
• webmaster@your-domain.com
• hostmaster@your-domain.com
• postmaster@your-domain.com

How it works:
• Sectigo sends an authorization email to one selected address
• You confirm ownership via the approval link
• The certificate is issued shortly after confirmation

Issuance timeframe
✔ Typically within minutes after successful validation
✔ DNS-based methods are fastest and easiest to renew
✔ No business checks, documents, or identity verification required

Organization Validation (OV) SSL certificates go beyond basic domain checks by verifying the real-world existence and legitimacy of the organization behind the website. This additional validation layer helps users immediately recognize that they are communicating with a genuine, established entity—not an anonymous or potentially fraudulent site.

OV SSL is ideal for business websites, SaaS platforms, professional services, public institutions, and organizations that collect customer data, credentials, or sensitive communications.

What is verified during OV SSL validation
To issue an OV SSL certificate, Pladinum and the Certificate Authority confirm the following:

1. Domain control
The organization must prove control over the domain name using approved domain validation methods (DNS or email-based authentication).

2. Organization legitimacy
We verify that the organization is legally registered and active by checking:
• Official business or organization name
• Registered address and country
• Government or commercial registry records

3. Physical presence
The organization must have a verifiable physical location, matching independent third-party records.

4. Verified telephone number
A valid business phone number is confirmed through trusted public or commercial databases to ensure it belongs to the organization.

5. Final verification call
A confirmation call is placed to the verified phone number to complete the validation and confirm authorization to request the certificate.

Organization Validation (OV) SSL certificates are also available for individuals operating under their own legal identity, such as freelancers, consultants, developers, independent professionals, and sole proprietors without a registered company.

In this case, the SSL certificate verifies the individual behind the website, providing visitors with confidence that the site is operated by a real, identifiable person—not an anonymous or unverified entity.

What is verified during individual OV SSL validation

To issue an OV SSL certificate to an individual, the Certificate Authority confirms the following:

1. Domain control
The applicant must prove ownership or administrative control of the domain using approved domain validation methods (DNS or email-based authentication).

2. Personal identity verification
The individual’s identity is validated using official, government-issued documentation. One of the following is required:

A legible copy of a government-issued photo ID, such as:

• Passport
• Driver’s license
• National identity card
• Military ID

3. Address verification
The applicant must provide proof of a current physical address using one of the following documents:

• A recent utility bill (e.g. electricity, water, gas)
• A bank or credit card statement

Documents must be recent, clearly readable, and match the identity information provided during the order process.

Trustpilot

Ready to talk secure

Whether you need help choosing the right SSL, installing it, or managing it later—our security specialists are available 24/7 to assist you.

Talk to an expert

A trusted partner for businesses in Europe

Speak directly with real security specialists — before and after your purchase, in your local language.

Pladinum support team - Maria
gb flag icon
nl flag icon
de flag icon
fr flag icon
it flag icon
be flag icon

Best-in-class support

Get industry-leading support, in your local language. Available 24/7 via chat, email, and ticket — no outsourcing.

Wildcard SSL secures every subdomain with one certificate

One certificate. Unlimited subdomains. Zero complexity.

Issued after extended verification · Highest trust level · Dedicated support · 30-day money-back guarantee

Get Wildcard SSL

Frequently asked questions

A Wildcard SSL certificate secures one primary domain and all its subdomains with a single certificate. For example, one Wildcard SSL protects example.com, shop.example.com, api.example.com, and any future subdomains created under the same domain.

The difference lies in identity verification, ensure consistent encryption across all subdomains:

• DV Wildcard SSL verifies domain ownership only and is issued quickly.
• OV Wildcard SSL verifies the organization behind the domain, adding business credibility.

Yes. Wildcard SSL enables HTTPS across all subdomains, which helps prevent mixed-content issues, improves crawl consistency, and supports Google’s HTTPS ranking signals—especially for sites using multiple subdomains.

Choose a Wildcard SSL if you operate multiple subdomains now or plan to add more in the future. It reduces certificate management overhead and avoids repeated validation or installation when scaling your infrastructure.

Yes. Wildcard SSL is ideal for securing APIs, dashboards, client portals, login systems, and internal tools, ensuring consistent TLS encryption across all services under your domain.

Issuance time depends on the validation level:

• DV Wildcard SSL: minutes after domain validation
• OV Wildcard SSL: typically 1–5 business days

Yes. Wildcard SSL certificates use the same strong TLS encryption as any other SSL type. OV Wildcard SSL are especially suitable for eCommerce platforms that require verified business identity and higher customer trust.

Yes. A single Wildcard SSL certificate secures an unlimited number of subdomains under one primary domain, without additional cost per subdomain.

New subdomains are automatically covered by the existing Wildcard SSL certificate—no reissuance or revalidation required, making it ideal for fast-moving teams and scalable platforms.

A Wildcard SSL secures one domain and all its subdomains (e.g. *.example.com). A Multi-Domain SSL (SAN/UCC) secures multiple different domains (up to 250), such as example.com, example.net, and example.org.

Wildcard SSL is best for subdomain-heavy architectures, while Multi-Domain SSL is ideal for managing multiple unrelated domains under one certificate.

Disclaimer

*1: We will install your SSL certificate for free if you host your website and domain with Pladinum and purchased the SSL certificate for that domain. If you need help installing an SSL certificate on external hosting, please contact our sales team for assistance.

*2: You can request a full refund for SSL plans within 30 days of purchase. However, for Managed SSL, once the installation of the SSL certificate is completed, the purchase is non-refundable.