Certificats bloqués suite à plusieurs tentatives

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is: grosmi51.fr

I ran this command:

It produced this output:

My web server is (include version):

The operating system my web server runs on is (include version):

My hosting provider, if applicable, is:

I can login to a root shell on my machine (yes or no, or I don't know):

I'm using a control panel to manage my site (no, or provide the name and version of the control panel):

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot):

@Grosmi, welcome to the community! :slightly_smiling_face:

From the title of your post I guess you hit some kind of rate limit (for details see: Rate Limits - Let's Encrypt). Do you have any precise error message?

Merci pour ce retour

Right, that confirms that the certificate rate limit is reached. There is not much to do here, no need to create more certificates. Just start using one of them.

Cela veut dire que je ne peux plus créer de certificats sur mon domaine principal ?

Il n'est pas possible de créer des certificats nouveaux seulement pendant certain temps. Mais, il n' est pas nécessaire de créer neuve, parce que les certificats existent sont bien valable encore.

Les sous domaines fonctionnent mais pas le domaine principal donc il faut que j'attende combien de temps avant qu'il se reimitialise!
Merci pour votre aide

Même s'il est possible d'avoir des certificats nouveaux, ça ne résoudre pas le problème original. Il faut utiliser un certificat déjà créé. Il me semble qu' un certificat différent est utilisé pour l' instant avec le nom michel.grosmi51.fr.

I agree with @bruncsak You are getting many certificates but your system is not configured to use them properly.

For example, on July 29 you got a wildcard cert for grosmi51.fr and *.grosmi51.fr. But, after that you have gotten more than 75 certs for your main domain and subdomains. You got 17 certs for your main domain in August. See this display: grosmi51.fr CT search results | CertObserver

Getting certs is not your problem. You must configure your system better to use the ones you get. And, get certs less frequently. The recommendation is to renew a 90 day cert when it has 30 days remaining before expiry.

Je ai créé michel.grosmi51.fr en sous domaine mais je souhaite qu'il soit rattaché au domaine principal grosmi51.fr. Si cela n'est pas possible je vais demander à mon fournisseur la résiliation de ce domaine et pouvoir le recréer.

J'en suis sûre qu' il est possible de rajouter le nom principal aussi avec les sous-noms. Mais, ça demande changement de configuration ailleurs.

De plus, le dernier certificat sur grosmi51.fr fonctionnait parfaitement, est-ce possible de pouvoir le récupérer ?

Je ne connais pas l'interface de configuration des certificats, mais probablement plusieurs sont définis, et il sont en conflit. Il faudrait le configuration d' un seul certificat, mais avec plusieurs noms rajoutées.

J'avais supprimé le certificat car je n'arrivais pas à configurer mon DSM SYNOLOGY et je ne peux plus en faire. Est possible de récupérer un certificat fonctionnel et m'expliquer comment l'importer (clé privée, certificat et certificat intermédiaire)

À mon avis, il faudrait réviser le configuration de certificat dans le boîte Synology. Quand toutes les noms souhaités sont là, alors à ce moment-là il faut crée le certificat.

Si je comprends votre message, il faut que je supprime tous les certificats crées car ils sont trop nombreux et laisser uniquement le domaine principal ?

Pas si vite. Est-ce les différents certificats sont visible dans l'interface synology?