According to https://stackoverflow.com/a/26195101/569976#comment41093099_26195101 "[Using the DNS name as the common name is] deprecated by both the IETF and CA/B Forums, and it should not be done. Instead, the DNS names should be placed in the Subject Alternate Names (SANs)"
My question is... where is it deprecated? Can I get a link to the RFC where that behaviour is deprecated and the line that deprecates that behaviour?
From what I've seen what's most common is... if you're doing one domain that domain is set to the commonName and no subjAltNames is present. When multiple domains are done, however, subjAltName is used.