Authenticator does not support any combination of challenges that will satisfy the CA

Then I recommend to forget about a wildcard certificate and just enter the required hostnames on the command line, either as a comma separated value to one -d option or multiple -d options with one hostname per option. E.g.:

certbot --nginx -d phill030.de -d www.phill030.de