Could not issue a Let's Encrypt SSL/TLS certificate

Error: Could not issue a Let’s Encrypt SSL/TLS certificate for wasatchcruisers.org . Authorization for the domain failed.
Details

Invalid response from https://acme-v01.api.letsencrypt.org/acme/authz/YzExpSpTUXQF7poT7o9xznsZz66vF9GgAIl1Bj6wE2Y.
Details:
Type: urn:acme:error:connection
Status: 400
Detail: unknownHost :: No valid IP addresses found for wasatchcruisers.org
Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is:
www.wasatchcruisers.org
I ran this command:
the plesk Let’s Encrypt install
It produced this output:
Error: Could not issue a Let’s Encrypt SSL/TLS certificate for wasatchcruisers.org . Authorization for the domain failed.
Details

Invalid response from https://acme-v01.api.letsencrypt.org/acme/authz/YzExpSpTUXQF7poT7o9xznsZz66vF9GgAIl1Bj6wE2Y.
Details:
Type: urn:acme:error:connection
Status: 400
Detail: unknownHost :: No valid IP addresses found for wasatchcruisers.org
My web server is (include version):

The operating system my web server runs on is (include version):

My hosting provider, if applicable, is:

I can login to a root shell on my machine (yes or no, or I don’t know):

I’m using a control panel to manage my site (no, or provide the name and version of the control panel):
Plesk
The version of my client is (e.g. output of certbot --version or certbot-auto --version if you’re using Certbot):

Hi @bub,

Based on your DNS records, I suspect that you’ve been using wasatchcruisers.org only for e-mail, and www.wasatchcruisers.org only for your web site. The www form has an IP address listed in DNS, while the base domain doesn’t. But above, you’ve requested a certificate only for the base domain. (Edit: if, by chance, you only use Google Chrome, you might not notice this, because it sometimes intentionally hides this kind of distinction!)

www.wasatchcruisers.org and wasatchcruisers.org are separate, distinct names from the point of view of DNS and of the certificate system. You might want to add a DNS A record for wasatchcruisers.org.

1 Like

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.