Hi,
I have been using Let’s Encrypt for a while - using the Plesk extention, and all has been working fine.
However - I have one domain that is now having problems. This particular domain has A LOT of aliases. However - we are still under the 100 threshold, so although it always takes a while for Let’s Encrypt to work - it has been working fine of this domain.
However… I have been trying to remove some aliases from the SSL. But when i try to renew, i get the following message
Invalid response from https://acme-v02.api.letsencrypt.org/acme/finalize/58926100/696983326.
Details:
Type: urn:ietf:params:acme:error:malformed
Status: 400
Detail: Error finalizing order :: CSR contains more than 100 DNS names
…Which, i find odd - as i am removing aliases, rather than adding. The current SSL for this domain includes 60 aliases (which only works because I am not including the “www” for each). But, I am trying to remove 13 of these aliases, which would bring the total of aliases down to 47. I was hoping that this would allow me to also secure the “www” versions - but i get the same error message both with and without selecting the “include www” checkbox.
What’s even stranger is that i even tried removing ALL of the sub-domains (i thought i’d start again, and see if that helped) - but it still came up with the “CSR contains more than 100 DNS names” message.
If anyone is able to help me with this issue, i’d be most appreciative.
My domain is:
hub.wombatcms.com (plus 47 aliases)
I ran this command:
Using Plesk interface to renew certificate (it's not expired - but I would like to remove some of the aliases)
It produced this output:
Invalid response from https://acme-v02.api.letsencrypt.org/acme/finalize/58926100/696983326. Details: Type: urn:ietf:params:acme:error:malformed Status: 400 Detail: Error finalizing order :: CSR contains more than 100 DNS names
My web server is (include version):
Intel(R) Xeon(R) CPU E3-1230 V2 @ 3.30GHz (8 core(s)) Plesk Onyx v17.8.11_build1708180301.19 os_CentOS 6
The operating system my web server runs on is (include version):
CentOS 6.10
My hosting provider, if applicable, is:
UK FAST
I can login to a root shell on my machine (yes or no, or I don’t know):
Should be possible - If given clear instructions. Not really confident at command line stuff - so tend to do all my server management via the Plesk interface.
I’m using a control panel to manage my site (no, or provide the name and version of the control panel):
Yes - Plesk.
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you’re using Certbot):
Let's Encrypt (Version 2.8.1-524) - Plesk Extension.