Automatic Renewal of certifications: what's the correct procedure?

There

is a long topic. There you have used dns-01 validation, so port 80 isn't relevant.

So do that again, perhaps with the --manual - option.

But if you use --manual, you can't use an automatic cron job.