There are a few benefits of using WildCard SSL Certificates for your Web Interface/CSG servers.
A few years ago we tested WildCard SSL Certificates with Citrix Web Interface and Secure Gateway, and it worked great with ICA clients 8.x and above. The older versions of the ICA clients didn't work with wildcard certs on the Web Interface/CSG Servers, and most of our remote users were using the older ICA client versions, so we decided to wait until we upgraded them to the newer ICA client before switching to the WildCard Cert.
The reason we wanted to use a WildCard SSL Certificate with Web Interface and CSG is that it allows users to connect to the WI using a DNS alias generic URL that is not the host name of the WI/CSG server. Something like "cxapps.domain.com" not like the old way of using a Server SSL Cert, which would be servername.domain.com.
Well we finally upgraded the ICA clients, and deployed the WildCard cert on our WI/CSG server and have been running well ever since.
Another benefit is the WildCard cert is much less expensive than a normal Server Certificate.



