I have a LAN with a local domain managed by a ZS device, with a local CA, and this LAN master generates the Host certificates I need.
I wrote: a local domain with a local CA, because the price to pay for all the certificates (or a wildcard) on a Internet domain would be prohibitive and pure waste of money in this case.
It is natural to have shortcut names for local services (webdav, caldav etc.) and when several of them are provided by the same host, a single certificate with alternative names would be much handier to setup.
Thanks, Best regards.