You want to create a Certificate Signing Request (CSR) with the Subject Alternative Name (SAN) extension included in ProxySG or Advanced Secure Gateway (ASG).
The following solution details steps to create a CSR with the SAN extension using a Microsoft web server and on UNIX or Linux systems.
The management console or CLI currently does not provide an option to generate a CSR that includes the SAN extension.
The steps listed therefore only apply in the following situations:
If help is needed using Microsoft Server for this task, contact Microsoft Support.
The following is an example which should work in the majority of configurations:
$ openssl req -new -sha256 -key domain.key -subj "/C=US/ST=CA/O=Acme, Inc./CN=example.com" -reqexts SAN -extensions SAN -config <(cat /etc/ssl/openssl.cnf <(printf "[SAN]\nsubjectAltName=DNS:example.com,DNS:www.example.com")) -out domain.csr
Note: The above command should be entered as a single line