Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is:
cloudbaseandbeyond.duckdns.org
I ran this command:
sudo certbot --nginx -w /var/www/certbot --nginx-sleep-seconds 5
It produced this output:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator nginx, Installer nginx
Which names would you like to activate HTTPS for?
1: cloudbaseandbeyond.duckdns.org
Select the appropriate numbers separated by commas and/or spaces, or leave input
blank to select all options shown (Enter 'c' to cancel):
Requesting a certificate for cloudbaseandbeyond.duckdns.org
Performing the following challenges:
http-01 challenge for cloudbaseandbeyond.duckdns.org
Using default address 80 for authentication.
Waiting for verification…
Challenge failed for domain cloudbaseandbeyond.duckdns.org
http-01 challenge for cloudbaseandbeyond.duckdns.org
Cleaning up challenges
Some challenges have failed.
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: cloudbaseandbeyond.duckdns.org
Type: dns
Detail: DNS problem: SERVFAIL looking up A for
cloudbaseandbeyond.duckdns.org - the domain's nameservers may be
malfunctioning; no valid AAAA records found for
cloudbaseandbeyond.duckdns.org
My web server is (include version): nginx
The operating system my web server runs on is (include version):
Linux raspberrypi 6.1.21-v8+ #1642 SMP PREEMPT Mon Apr 3 17:24:16 BST 2023 aarch64 GNU/Linux
My hosting provider, if applicable, is:
I can login to a root shell on my machine (yes or no, or I don't know): yes
I'm using a control panel to manage my site (no, or provide the name and version of the control panel): no
The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot):
sudo certbot —version
certbot 1.12.0
The Lets Debug said there are no issue, go to the forum, so here I am
My server shows the following access logs, showing that the document root is accessible
23.178.112.105 - - [22/Nov/2025:13:15:03 +0000] "GET /.well-known/acme-challenge/xTxGcwzCoDARaGAuJRZG9QXghFzmoHlrMBY-ZFish3o HTTP/1.1" 404 125 "-" "Mozilla/5.0 (compatible; Let's Encrypt validation server; +https://www.letsencrypt.org)”
149.50.96.133 - - [22/Nov/2025:13:19:38 +0000] "GET / HTTP/1.1" 403 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36”
65.21.146.168 - - [22/Nov/2025:13:32:53 +0000] "GET /.well-known/acme-challenge/letsdebug-test HTTP/1.1" 404 125 "-" "Mozilla/5.0 (compatible; Let's Debug emulating Let's Encrypt validation server; +https://letsdebug.net)”
66.133.109.36 - - [22/Nov/2025:13:32:58 +0000] "GET /.well-known/acme-challenge/Ppaz4gaWP4zngyM6FDmWcHNBKf0z56GnPOdcoxbb_fs HTTP/1.1" 404 125 "-" "Mozilla/5.0 (compatible; Let's Encrypt validation server; +https://www.letsencrypt.org)”
65.21.146.168 - - [22/Nov/2025:13:33:09 +0000] "GET / HTTP/1.1" 403 125 "-" "Go-http-client/1.1”
23.178.112.212 - - [22/Nov/2025:13:37:58 +0000] "GET /.well-known/acme-challenge/YAo9jH9w6L-A6LFyNgh7iypzG2eywaaVS5ZLahbALBw HTTP/1.1" 404 125 "-" "Mozilla/5.0 (compatible; Let's Encrypt validation server; +https://www.letsencrypt.org)”
192.168.1.1 - - [22/Nov/2025:13:39:39 +0000] "GET /.well-known/acme-challenge/under_maintenance.html HTTP/1.1" 200 197 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.1 Safari/605.1.15 Ddg/26.1"
