*.domain.com).VMware vCenter Server 7.x, 8.x
vSphere requires certificates to be in compliance with RFC 2253. Wildcard certificates (certificates with * in the Subject or SAN) do not have specific, unique names for the domain controllers they are protecting. vSphere identity sources rely on specific trust relationships and Subject Name validation, which wildcard certificates cannot fulfill.