I am running Centos 7. After running sudo certbot --nginx, I get this error:
Performing the following challenges:
http-01 challenge for
Waiting for verification…
Challenge failed for domain
http-01 challenge for
Cleaning up challenges
Some challenges have failed.


  • The following errors were reported by the server:

    Type: connection
    Detail: Fetching
    Timeout during connect (likely firewall problem)

    To fix these errors, please make sure that your domain name was
    entered correctly and the DNS A/AAAA record(s) for that domain
    contain(s) the right IP address. Additionally, please check that
    your computer has a publicly routable IP address and that no
    firewalls are preventing the server from communicating with the
    client. If you’re using the webroot plugin, you should also verify
    that you are serving files from the webroot path you provided.

My iptables have no rules, and all chains are open.
Also, I am running this machine in AWS.

Hi @droidus,

Welcome to this community.

Please do provide us your full domain and error message.
Without this information, we are blind. :frowning:

Thank you

Start there.
You need to open their firewall as well.

I believe I did this - this is just in Security Groups, right? If not, how do I do this?

If you don’t share your domain name, we have no way to help you… Sometimes there are multiple potential issues, and without checking your domain… Who knows what is the one you have?

Thank you

