Cloaked url forward domains, cert problem

Hello. I want to create SSL cert for all my doamains, containing these cloaked url forwards, but it won’t let me do it. i’m not professional porgrammer, just a typical person with some skills. Could someone explain me these errors? How to alow certbot to recognize these domains as url forwards?

Thats the error:


My domain is:

I ran this command:
-d -d -d -d -d -d -d -d -d -d
It produced this output:

My web server is (include version):
Apache, newest version

The operating system my web server runs on is (include version):
Debian 9

My hosting provider, if applicable, is:
Google Cloud VPS

I can login to a root shell on my machine (yes or no, or I don’t know):

I’m using a control panel to manage my site (no, or provide the name and version of the control panel):

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you’re using Certbot): 0.28.0

Hi @tresh

your setup with

can't work.

Checking that domain

there is a frame -


<html> <head> <title></title> <meta name="viewport" content="width=device-width,initial-scale=1"> </head> <!-- This site "" is using the free URL redirection service at --> <!-- The real (cloaked URL) site can be found directly at --> <!-- Please report any abuse of this free service --> 
<frameset frameborder="0" border="0" rows="*,100%" cols="100%" marginwidth="0" marginheight="0"> <frame target="random_name_not_taken1" name="random_name_not_taken1" marginwidth="0" marginheight="0" border="0" noresize scrolling="no"> <frame target="random_name_not_taken2" name="random_name_not_taken2" src="" border="0" noresize> 
<a href="">NOFRAMES: Click here to visit the actual site</a>
 </noframes> </frameset> </html>

That setup can't work. Your must have an A-entry with the same ip address as your has. Or a CNAME with that domain name.

So the Letsencrypt validator sees only frames, not the validation file.

And you must run Certbot on the domain / ip address.

So is there any way that my idea could work? I want to redirect to some directory on my server, I don’t want to show adress in url bar so it’s cloaked, but I’d like to have ssl for that. Is this possible somehow? I saw someehere on this forum threads with mail page and ssl for that, so I guess there’s a hope?

As written: You need an A-record, not a wrong frame. So create one. Your main idea is wrong, your frame redirect is the problem.

I don’t understand, I have already wk record with URL forwarding, I tried to create A record with the same name but I can’t.

So I guess there is no other way for cloaked url forwarding to be with ssl?

You would have to remove the URL forwarding, as well as adding a normal A record.

What’s the benefit of the URL forwarding? What does “cloaking” do?

Wouldn’t a wildcard certificate for the main domain be sufficient to cover all of his third level domains (sub-domains)?

