LynxRiseGet lifetime access
LynxRiseBack to docsWhite-label · 6 min readCreate workspace
04· White-label

Custom domain

Serve the portal from portal.youragency.com with automatic SSL, so the address in your client's browser matches the logo in the header.

6 min readUpdated 24 Jul 2026DNS access required

A custom domain is the last visible trace of the platform. Point a subdomain at LynxRise, verify it, and every portal link, invite email, and invoice page uses your address.

01

Choose a subdomain

Use a subdomain rather than your root domain so your marketing site keeps working. portal, clients, and hub are the common choices.

Domain options
portal.northlight.coRecommended
clients.northlight.coFine
northlight.coConflicts with site
  • One subdomain can serve every client portal in the workspace
  • Wildcard subdomains are supported on higher plans
  • Pick a name you can live with — changing it later breaks old links
02

Add the DNS record

In Settings → Domains, enter your subdomain. LynxRise shows the exact record to create at your DNS provider.

Type CNAMEName portalValue cname.lynxrise.comTTL 3600 (or Auto)Proxy DNS only
DNS statusChecking every 30s
Record foundPropagating
Target matchCorrect
CertificateQueued
Turn the CDN proxy offIf your DNS provider offers a proxy or "orange cloud", set the record to DNS-only. A proxied record blocks certificate validation.
03

Verify and issue SSL

Once the record resolves, LynxRise verifies ownership and issues a certificate automatically. Propagation usually finishes in minutes but can take up to 24 hours.

Provisioning
DNS resolved
Ownership verified
Certificate issued
  • Certificates renew automatically — no reminders to diary
  • HTTPS is forced; http:// requests redirect
  • You can keep using the LynxRise address while verification runs
04

Switch the portal over

Set the verified domain as primary. Old LynxRise links keep redirecting, so bookmarks and previously sent emails still work.

Primary address
portal.northlight.coPrimary
northlight.lynxrise.comRedirects · 301
Invite emailsUsing custom domain
Invoice pagesUsing custom domain
Tell your client onceSend a short note with the new address the first time you switch. After that, everything they had still resolves.
05

If it doesn't resolve

Nearly every failed domain comes down to one of four things. Work through them in order before opening a ticket.

Wrong record type

Subdomains need CNAME, not A. Root domains need the A record LynxRise displays.

Duplicate record

An existing A or CNAME on the same name wins. Delete the old one.

Proxy enabled

Switch the record to DNS-only until the certificate is issued.

CAA restriction

If your domain has CAA records, allow the issuer shown in Settings → Domains.

Still stuck?Send us the subdomain and a screenshot of your DNS record — that's usually enough to spot it in one reply.

Ready to launch your client portal?

Spin up a branded workspace, invite your first client, and keep every project, file, and invoice in one place.

Create workspace ↗