Hi!
Before the relevant info, here comes what and how I’m trying to achieve.
My company have a website (wordpress), hosted at Google Cloud Platform (Click-to-Deployrunning onBitnami). I need anSSL certificate for it, and tried several methods to get a certificate. Certbot is the latest.
My domain is:
www.ihub.org.br
I ran this command:
./certbot-auto certonly -a webroot -w /opt/bitnami/apps/wordpress/htdocs/ -d ihub.org.br -d www.ihub.org.br
It produced this output:
Blockquote
./certbot-auto has insecure permissions!
To learn how to fix them, visit Certbot-auto deployment best practices
Saving debug log to /var/log/letsencrypt/letsencrypt.log
How would you like to authenticate with the ACME CA?
1: Spin up a temporary webserver (standalone)
2: Place files in webroot directory (webroot)
Select the appropriate number [1-2] then [enter] (press ‘c’ to cancel): 2
Plugins selected: Authenticator webroot, Installer None
Cert is due for renewal, auto-renewing…
Renewing an existing certificate
Performing the following challenges:
http-01 challenge for ihub.org.br
http-01 challenge for www.ihub.org.br
Using the webroot path /opt/bitnami/apps/wordpress for all unmatched domains.
Waiting for verification…
Challenge failed for domain ihub.org.br
Challenge failed for domain www.ihub.org.br
http-01 challenge for ihub.org.br
http-01 challenge for www.ihub.org.br
Cleaning up challenges
Some challenges have failed.
IMPORTANT NOTES:
-
The following errors were reported by the server:
Domain: ihub.org.br
Type: unauthorized
Detail: Invalid response from
http://ihub.org.br/.well-known/acme-challenge/fnxWQEFRGLldoAuViqISqRiqtdk2LOuHf0Fl-pBfzGc
[35.193.33.165]: “\n<html
lang=“pt-BR”>\n\n\t<meta
charset=“UTF-8”>\n\t\t(function(html){html.className =
html.className.rep”Domain: www.ihub.org.br
Type: unauthorized
Detail: Invalid response from
http://ihub.org.br/.well-known/acme-challenge/CGclyBQw1kdH6vQagy0UAQrKbYAhlwv4omDq0wu4meA
[35.193.33.165]: “\n<html
lang=“pt-BR”>\n\n\t<meta
charset=“UTF-8”>\n\t\t(function(html){html.className =
html.className.rep”To fix these errors, please make sure that your domain name was
entered correctly and the DNS A/AAAA record(s) for that domain
contain(s) the right IP address.
My web server is (include version):
Apache (2.4.34)
The operating system my web server runs on is (include version):
Debian9
My hosting provider, if applicable, is:
Google CloudPlatform
I can login to a root shell on my machine (yes or no, or I don’t know):
Yes
I’m using a control panel to manage my site (no, or provide the name and version of the control panel):
Yes, but most of the operations I perform using SSH (GC sdk, Putty for Windows)
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you’re using Certbot):
0.34.2
The A domanin record is correctly set. Checked using:
Thank you for your support.