renewal is failing on two of our three domains in our single cert… was told we ran this command to renew last time but now failing. I can browse to the files in the acme-challenge directory. One note is that our www.acttheatre.org in our DNS A records does not have an IP… acttheatre.org does www.acttheatre.org is redirected to acttheatre using the CNAME entry: www.acttheatre.org 3600 acttheatre.org
Perhaps this is the problem? More info below, thanks!
Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is: acttheatre.org dev.acttheatre.org www.acttheatre.org
I ran this command: sudo ./certbot-auto certonly --dry-run --webroot -w /opt/bitnami/apps/wordpress/htdocs -d dev.acttheatre.org -d acttheatre.org -d www.acttheatre.org
It produced this output:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator webroot, Installer None
Cert is due for renewal, auto-renewing…
Renewing an existing certificate
Performing the following challenges:
http-01 challenge for dev.acttheatre.org
http-01 challenge for acttheatre.org
http-01 challenge for www.acttheatre.org
Using the webroot path /opt/bitnami/apps/wordpress/htdocs for all unmatched domains.
Waiting for verification…
Cleaning up challenges
Failed authorization procedure. acttheatre.org (http-01): urn:ietf:params:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from htt
p://acttheatre.org/.well-known/acme-challenge/PijNC9AVhIEGr-GQKJ5KHV57oO58CAGVxmcoAmW_pRA: "\n<html class=“avada-html-layout-wide avada-html-has-sticky-foo
ter” lang=“en-US” prefix=“og: http://ogp.me/ns# fb:”, www.acttheatre.org (http-01): urn:ietf:params:acme:error:unauthorized :: The client lacks sufficient authorizatio
n :: Invalid response from http://www.acttheatre.org/.well-known/acme-challenge/k7biAFOH9uOCiuUwMy8ER4-vH37TE1oh9NVKfNy-mec: "\n<html class=“avada-html-lay
out-wide avada-html-has-sticky-footer” lang=“en-US” prefix=“og: http://ogp.me/ns# fb:”
IMPORTANT NOTES:
-
The following errors were reported by the server:
Domain: acttheatre.org
Type: unauthorized
Detail: Invalid response from
http://acttheatre.org/.well-known/acme-challenge/PijNC9AVhIEGr-GQKJ5KHV57oO58CAGVxmcoAmW_pRA:
"\n<html class=“avada-html-layout-wide
avada-html-has-sticky-footer” lang=“en-US” prefix=“og:
http://ogp.me/ns# fb:”Domain: www.acttheatre.org
Type: unauthorized
Detail: Invalid response from
http://www.acttheatre.org/.well-known/acme-challenge/k7biAFOH9uOCiuUwMy8ER4-vH37TE1oh9NVKfNy-mec:
"\n<html class=“avada-html-layout-wide
avada-html-has-sticky-footer” lang=“en-US” prefix=“og:
http://ogp.me/ns# fb:”To fix these errors, please make sure that your domain name was
entered correctly and the DNS A/AAAA record(s) for that domain
contain(s) the right IP address.
My web server is (include version): bitnami apache
The operating system my web server runs on is (include version): Linux
My hosting provider, if applicable, is: AWS
I can login to a root shell on my machine (yes or no, or I don’t know): I think so
I’m using a control panel to manage my site (no, or provide the name and version of the control panel):