Hello, I'm having a lot of trouble getting my first certificate issued. Seems like I have things set up correctly (letsdebug.net passes both domains as "All OK!"), but certbot seems to be sending GET /
requests, getting the homepage, and then complaining that it's somehow "unauthorized" or "invalid".
Please help! I could probably install manually (maybe?), but I want to be sure that auto-renew will work properly.
Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is: spaceengi.com / www.spaceengi.com
I ran this command:
sudo certbot certonly --webroot --dry-run -w /home/ec2-user/spaceengi -d spaceengi.com -d www.spaceengi.com
It produced this output:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator webroot, Installer None
Simulating a certificate request for spaceengi.com and www.spaceengi.com
Performing the following challenges:
http-01 challenge for spaceengi.com
http-01 challenge for www.spaceengi.com
Using the webroot path /home/ec2-user/spaceengi for all unmatched domains.
Waiting for verification...
Challenge failed for domain spaceengi.com
http-01 challenge for spaceengi.com
Cleaning up challenges
Some challenges have failed.
IMPORTANT NOTES: - The following errors were reported by the server:
Domain: spaceengi.com
Type: unauthorized
Detail: Invalid response from http://www.spaceengi.com
[35.85.206.135]: "<!DOCTYPE html>\n<html lang=\"en\">\n<head>\n <meta charset=\"utf-8\">\n\n <title>SpaceEngi - Under Construction</title>\n <meta name=\""
To fix these errors, please make sure that your domain name was
entered correctly and the DNS A/AAAA record(s) for that domain
contain(s) the right IP address.
My web server is (include version): Rocket (Rust) 0.5.0-rc1
The operating system my web server runs on is (include version):
Amazon EC2/Lightsail (4.14.225-169.362.amzn2.x86_64)
My hosting provider, if applicable, is: namecheap
I can login to a root shell on my machine (yes or no, or I don't know): yes
I'm using a control panel to manage my site (no, or provide the name and version of the control panel): no
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you're using Certbot): certbot 1.11.0