Cannot use ssl with LE

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is: www.dykapper.nl

I ran this command: in directadmin try to use: a certificat of acme provider

It produced this output:dykapper.nl was skipped due to unreachable http://dykapper.nl/.well-known/acme-challenge/letsencrypt_9815b937bfeca2204717f2c77670c402 file. www.dykapper.nl was skipped due to unreachable http://www.dykapper.nl/.well-known/acme-challenge/letsencrypt_92333431faccf9130548fc0dedf66132 file. No domains pointing to this server to generate the certificate for.

My web server is (include version):

The operating system my web server runs on is (include version):

My hosting provider, if applicable, is:

I can login to a root shell on my machine (yes or no, or I don't know): i think

I'm using a control panel to manage my site (no, or provide the name and version of the control panel):directadmin

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot): ?

I will make my sons website go to a ssl website.. Only not get it good working.

I do have a other domain on the same provider, do the trick in directadmin, and that is working fine. In dykapper.nl try it to do servel times, onlu not working. Starting again from skretch, stil not working. Hope there is something possible on your side. Hope u have a soltion Thanks

@Dylantje , welcome to the community! :slightly_smiling_face:

Your domain has both IPv4 and IPv6 addresses:

pi@raspberrypi:~ $ host www.dykapper.nl
www.dykapper.nl has address 87.236.102.45
www.dykapper.nl has IPv6 address 2a06:2ec0:1::ffed

There seems to be different servers are behind those IP addresses.
Please make sure that the your domain is having IP addresses that are pointing to the right server.

3 Likes

Sorry i run on a www.internettoday.nl server not @ home

and where can i change that?

You registered your domain name at some registrar/hosting provider (www.internettoday.nl?). There should be instruction about the way to manage the DNS data in the zone.

2 Likes

mmm that;s a thing name by other, so i have to search for ip6 should be off?

It depends on, does your server have IPv6? If yes, then the IPv6 address of the server must match the IPv6 address advertised in the DNS. If your server has no IPv6 address, then the AAAA record in the DNS must be removed.

3 Likes

Did remove the AAA in the domain name:


Wait a while i think?

The AAAA record is still advertised in the authoritative name server. Did you already commit the change?
EDIT: Now it is off. You may try to get the certificate now.

2 Likes

yes.. need to wait 2 -4 hours before theyy update the settings...

Only i see on the directadmin server also soem AAA documents:


Also remove?

pi@odroidxu4:~$ host www.dykapper.nl
www.dykapper.nl has address 87.236.102.45
pi@odroidxu4:~$

Now see ip4 lonly :slight_smile:

Now should work the directadmin letsencrypt way?

mm still a error:

Yes, it should work now, unless the apex domain is part of the certificate. That one still has the AAAA record.

3 Likes

? apex? i get the error? Wait for a while? or do i remove the AAAA records also in the directadmin?

Sorry, I do not know this directadmin.

1 Like

like this:


at the end there are some AAAA documents

Stil got errors:


2
nl
Controle Paneel
Navigatie
Elementen filter
Dashboard
/
Mijn Berichten

dykapper.nl
Voer uw zoekcriteria in
Mijn Berichten
Terug
Help
• Wis Systeem Berichten
• Opties
• Ticket Aanmaken
Berichten
Tickets
Met geselecteerd (0 / 6):
Markeer als gelezen
Verwijderen
Error with LetsEncrypt request	3-1-2025, 09:40	
Error with LetsEncrypt request	3-1-2025, 08:56	
Error with LetsEncrypt request	3-1-2025, 08:55	
User dykanl has used up 103% of their bandwidth and 45.6% of their allocated disk space	1-1-2025, 00:14	
User dykanl has been suspended for bandwidth overusage	1-1-2025, 00:14	
Error with LetsEncrypt request	31-12-2024, 16:18	
Onderwerp	Datum 	
Bericht
Error with LetsEncrypt request
3-1-2025, 09:40
Found wildcard domain name and http challenge type, switching to dns-01 validation.
2025/01/03 09:29:06 [INFO] [dykapper.nl, *.dykapper.nl] acme: Obtaining SAN certificate
2025/01/03 09:29:08 [INFO] [dykapper.nl] AuthURL: https://acme.zerossl.com/v2/DV90/authz/gGr_MzunaiZbWJDSwXiMSA
2025/01/03 09:29:08 [INFO] [*.dykapper.nl] AuthURL: https://acme.zerossl.com/v2/DV90/authz/GhNNxsrliwPszKJ7H5A7Gg
2025/01/03 09:29:08 [INFO] [dykapper.nl] acme: Could not find solver for: http-01
2025/01/03 09:29:08 [INFO] [dykapper.nl] acme: use dns-01 solver
2025/01/03 09:29:08 [INFO] [*.dykapper.nl] acme: use dns-01 solver
2025/01/03 09:29:08 [INFO] [dykapper.nl] acme: Preparing to solve DNS-01
2025/01/03 09:29:08 2025/01/03 09:29:08  info executing task            task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:29:08 2025/01/03 09:29:08  info finished task             duration=56.433575ms task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:29:08 2025/01/03 09:29:08  info executing task            task=action=dns&do=add&domain=dykapper.nl&name=_acme-challenge&named_reload=yes&ttl=5&type=TXT&value=%22lrT34B6Ito1NrWHeF4PCMbBwUx8Ulm54THeTj0WIdPM%22
2025/01/03 09:29:08 2025/01/03 09:29:08  info finished task             duration=120.220786ms task=action=dns&do=add&domain=dykapper.nl&name=_acme-challenge&named_reload=yes&ttl=5&type=TXT&value=%22lrT34B6Ito1NrWHeF4PCMbBwUx8Ulm54THeTj0WIdPM%22
2025/01/03 09:29:08 [INFO] [dykapper.nl] acme: Trying to solve DNS-01
2025/01/03 09:29:08 [INFO] [dykapper.nl] acme: Checking DNS record propagation. [nameservers=[2001:4860:4860::8888]:53]
2025/01/03 09:29:38 [INFO] Wait for propagation [timeout: 5m0s, interval: 30s]
2025/01/03 09:29:39 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:30:09 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:30:39 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:31:09 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:31:39 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:32:09 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:32:39 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:33:09 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:33:39 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:34:09 [INFO] [dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:34:39 [INFO] [dykapper.nl] acme: Cleaning DNS-01 challenge
2025/01/03 09:34:39 2025/01/03 09:34:39  info executing task            task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:34:39 2025/01/03 09:34:39  info finished task             duration=39.630898ms task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:34:39 [INFO] [*.dykapper.nl] acme: Preparing to solve DNS-01
2025/01/03 09:34:39 2025/01/03 09:34:39  info executing task            task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:34:39 2025/01/03 09:34:39  info finished task             duration=39.151672ms task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:34:39 2025/01/03 09:34:39  info executing task            task=action=dns&do=add&domain=dykapper.nl&name=_acme-challenge&named_reload=yes&ttl=5&type=TXT&value=%22OLWApEK7UzedhCILLpv18Y05fCymDKnsEHA2CMzSp4Q%22
2025/01/03 09:34:39 2025/01/03 09:34:39  info finished task             duration=122.803578ms task=action=dns&do=add&domain=dykapper.nl&name=_acme-challenge&named_reload=yes&ttl=5&type=TXT&value=%22OLWApEK7UzedhCILLpv18Y05fCymDKnsEHA2CMzSp4Q%22
2025/01/03 09:34:39 [INFO] [*.dykapper.nl] acme: Trying to solve DNS-01
2025/01/03 09:34:39 [INFO] [*.dykapper.nl] acme: Checking DNS record propagation. [nameservers=[2001:4860:4860::8888]:53]
2025/01/03 09:35:09 [INFO] Wait for propagation [timeout: 5m0s, interval: 30s]
2025/01/03 09:35:09 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:35:39 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:36:09 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:36:39 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:37:09 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:37:39 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:38:10 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:38:40 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:39:10 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:39:40 [INFO] [*.dykapper.nl] acme: Waiting for DNS record propagation.
2025/01/03 09:40:10 [INFO] [*.dykapper.nl] acme: Cleaning DNS-01 challenge
2025/01/03 09:40:10 2025/01/03 09:40:10  info executing task            task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:40:10 2025/01/03 09:40:10  info finished task             duration=42.693735ms task=action=dns&do=delete&domain=dykapper.nl&name=_acme-challenge&type=TXT
2025/01/03 09:40:11 [INFO] retry due to: acme: error: 400 :: POST :: https://acme.zerossl.com/v2/DV90/authz/gGr_MzunaiZbWJDSwXiMSA :: urn:ietf:params:acme:error:badNonce :: The Replay Nonce is not recognized
2025/01/03 09:40:12 [INFO] Deactivating auth: https://acme.zerossl.com/v2/DV90/authz/gGr_MzunaiZbWJDSwXiMSA
2025/01/03 09:40:14 [INFO] Deactivating auth: https://acme.zerossl.com/v2/DV90/authz/GhNNxsrliwPszKJ7H5A7Gg
2025/01/03 09:40:14 Could not obtain certificates:
	error: one or more domains had a problem:
[*.dykapper.nl] propagation: time limit exceeded: last error: NS ns.zxcs.nl. returned NXDOMAIN for _acme-challenge.dykapper.nl.
[dykapper.nl] propagation: time limit exceeded: last error: NS ns.zxcs.eu. returned NXDOMAIN for _acme-challenge.dykapper.nl.
Failed to issue new certificate

<h6>Laden</h6> <div>Mijn Berichten</div>

Als o tryede encrypt and encrypt staging [ what is teh differents? ]

Yes, please remove those AAAA records too.

2 Likes

Did remove the AAAA

And still have a error:

What does directadmin say, what is your public IP address?

2 Likes