As described at Solution: Client with the currently selected authenticator does not support any combination of challenges that will satisfy the CA, you will have to run a different command. Specifically you need to add the --webroot
flag.
1 Like