Hi I am trying to do dns challenge with powerdns. To make debugging more easily (after I didnt get it to work with automated tools talking to the powerdns api) I am now doing it on the staging server with manually entering the txt into powerdns
My domain is: fluxnet.nl (but any other domain that I have pointed at my nameserver has same problem)
I ran this command:
certbot certonly --manual --preferred-challenges dns --debug-challenges -d *.fluxnet.nl -d fluxnet.nl --server=https://acme-staging-v02.api.letsencrypt.org/directory
It produced this output:
IMPORTANT NOTES: - The following errors were reported by the server: Domain: fluxnet.nl Type: dns Detail: DNS problem: NXDOMAIN looking up TXT for _acme-challenge.fluxnet.nl - check that a DNS record exists for this domain Domain: fluxnet.nl Type: dns Detail: DNS problem: NXDOMAIN looking up TXT for _acme-challenge.fluxnet.nl - check that a DNS record exists for this domain
My nameserver is running at ns.boerman.at. I can see the TXT being responded when querying it with dig directly.
I am running certbot 1.11.0
I think I did something wrong in setting up my nameserver but I cant think of anything else to try after fixing the following things (on top of normal install):
- making sure my SOA record is valid
- having my nameserver also respond on ipv6
- having both my primary (ns.boerman.at) and secundary server (ns0.transip.net configured as a slave) as NS records
A records etc work just fine and I can see the challenge in TXT when using dig. Anybody have any good ideas? Thanks!