Create certificate failed: Authorization failed

hello every body i'm trying to get a certificate

[INFO] A simple Windows ACMEv2 client (WACS)
[INFO] Software version (RELEASE)
[INFO] IIS version 10.0
[INFO] Please report issues at

 [INFO] Authorize identifier:
 [INFO] Authorizing using http-01 validation (SelfHosting)
 [EROR] {
  "type": "urn:ietf:params:acme:error:unauthorized",
  "detail": "The key authorization file from the server did not match this challenge \"QiiZyx2vlTlEszWYav_vrQAANHLvS899WDTBp3VCJ3Q.SYc0ppIku5M0RLoD8d1fHRXwi0-0H3z_70ZQmcHa8LE\" != \"QiiZyx2vlTlEszWYav_vrQAANHLvS899WDTBp3VCJ3Q.4E3VCTFsySjUrqnCg0ooULx-3kbdPBygi0aWkvg5Gd8\"",
  "status": 403
 [EROR] Authorization result: invalid
 [EROR] Create certificate failed: Authorization failed

My web server is: IIS

The operating system : Windows Server

can any one help me please ?!

Hi @amine1

no, there answers an Apache, see your check - ~~2,5 hours old -

You have ipv4 and ipv6.

Ipv4 - there is an IIS.

But ipv6 - there answers an Apache.

So ipv4 / ipv6 have different answers -> that can't work.

Remove your ipv6 AAAA entry or (if it is one server with both ip addresses) configure your server so ipv6 works.

Then recheck your domain -> no Grade K is allowed, if ipv4 / ipv6 is defined.

1 Like

hi @JuergenAuer

thank you so much for your help , i just come to remove the ipv6 entry and that's work perfectly i got the certificate for the domain '' , i have other question please may i need to got another certificate for ?


You have one certificate with both domain names, see your check:
expires in 69 days, - 2 entries

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.