Axcient Vault + PfSense Firewall = Failure?

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is: remote.ccrclimited.net

I ran this command: Get Certificate in the Axcient Vault Setup

It produced this output: "Failed to sign / renew certificate - Please check the URL and try again"

My web server is (include version): Axcient Vault Software 14.1.1

The operating system my web server runs on is (include version): Ubuntu base

My hosting provider, if applicable, is: Self on dedicate external static IP

I can login to a root shell on my machine (yes or no, or I don't know): Yes

I'm using a control panel to manage my site (no, or provide the name and version of the control panel): The built in panel

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot): unk

Have loaded Axcient Vault software 14.1.1 Last step is to get a Let's Encrypt certificate. Have enabled Diect to Cloud. Certificate get returns "Failed to sign / renew certificate. Please check the URL and try again."
Have verified 80 and 443 port directly to the server internal IP. Server can be reached externally on both http and https, (with a warning for self signed).
Asking for some guidance please before doing a deep dive into the firewall.
THANK YOU FOR READING!!

2 Likes

That's not what I tools I've tried are showing:

4 Likes

Hi @Tedfrd, and welcome to the LE community forum :slight_smile:

I can only reach HTTPS.
[HTTP is unreachable]

2 Likes

Thank you - let me check that.

3 Likes

smh - helps if the protocol specified for HTTP is TCP rather than UDP . . .

4 Likes

Thank You!! That did the trick.
Hope you have a Blessed day!!
Marking as a solution.
Ted

5 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.