Challenge failed

My domain is: hr.dyanamicflowsystems.com

I ran this command:
~$ sudo certbot --apache -d hr.dynamicflowsystems.com

It produced this output:****

/usr/local/bin/certbot has insecure permissions!
To learn how to fix them, visit Certbot-auto deployment best practices
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator apache, Installer apache
Obtaining a new certificate
Performing the following challenges:
http-01 challenge for hr.dynamicflowsystems.com
Enabled Apache rewrite module
Waiting for verification…
Challenge failed for domain hr.dynamicflowsystems.com
http-01 challenge for hr.dynamicflowsystems.com
Cleaning up challenges
Some challenges have failed.

IMPORTANT NOTES:

  • The following errors were reported by the server:

    Domain: hr.dynamicflowsystems.com
    Type: connection
    Detail: Fetching
    http://hr.dynamicflowsystems.com/.well-known/acme-challenge/jJVVJJn7oSsqEqh6TzKLF1euCwUPDuZmhjb9cKC7U20:
    Timeout during connect (likely firewall problem)

    To fix these errors, please make sure that your domain name was
    entered correctly and the DNS A/AAAA record(s) for that domain
    contain(s) the right IP address. Additionally, please check that
    your computer has a publicly routable IP address and that no
    firewalls are preventing the server from communicating with the
    client. If you’re using the webroot plugin, you should also verify
    that you are serving files from the webroot path you provided.

I can confirm:
http://hr.dynamicflowsystems.com
is NOT accessible from the Internet.
HTTP access is the default requirement for DV cert authentication.
If HTTP is NOT available, you might try DNS authentication (if your DNS provider is supported by one of the various ACME clients).

Hi @harshitbadaya

there

is your topic. Please answer the open question.

1 Like

Perhaps also try using the --staging environment while you…
hbadaya@testubuntu

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.