hdmron
August 10, 2021, 3:02pm
1
Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com ), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is: https://www.wannagohome.com
I ran this command: media_sideload_images()
It produced this output: cURL error 60: peer's certificate issuer is not recognized
My web server is (include version): Apache version 2.4.6
The operating system my web server runs on is (include version): CentOS Linux 7.9.2009
My hosting provider, if applicable, is:
I can login to a root shell on my machine (yes or no, or I don't know): yes
I'm using a control panel to manage my site (no, or provide the name and version of the control panel): Virtualmin 6.14 Webmin 1.962
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you're using Certbot): Managed thorugh Webmin
Osiris
August 10, 2021, 4:54pm
2
What is that for kind of command? I'm not familiar with it.
Also, I assume you're the operator of the website or are you just a user?
rg305
August 10, 2021, 8:36pm
3
It seems the server isn't serving the chain:
SSL Server Test: www.wannagohome.com (Powered by Qualys SSL Labs)
Apache
2.4.6 is a bit outdated and requires an additional line to implement TLS(SSL) properly.
Let's start unraveling this mess with the output of:
sudo apachectl -S
hdmron
August 10, 2021, 9:11pm
4
VirtualHost configuration:
216.12.119.193:80 is a NameVirtualHost
default server wannagohome.com (/etc/httpd/conf/httpd.conf:360)
port 80 namevhost wannagohome.com (/etc/httpd/conf/httpd.conf:360)
alias www.wannagohome.com
alias mail.wannagohome.com
alias webmail.wannagohome.com
alias admin.wannagohome.com
216.12.119.193:443 is a NameVirtualHost
default server wannagohome.com (/etc/httpd/conf/httpd.conf:424)
port 443 namevhost wannagohome.com (/etc/httpd/conf/httpd.conf:424)
alias www.wannagohome.com
alias mail.wannagohome.com
alias webmail.wannagohome.com
alias admin.wannagohome.com
ServerRoot: "/etc/httpd"
Main DocumentRoot: "/var/www/html"
Main ErrorLog: "/etc/httpd/logs/error_log"
Mutex fcgid-proctbl: using_defaults
Mutex ssl-stapling: using_defaults
Mutex proxy: using_defaults
Mutex authn-socache: using_defaults
Mutex ssl-cache: using_defaults
Mutex default: dir="/run/httpd/" mechanism=default
Mutex mpm-accept: using_defaults
Mutex fcgid-pipe: using_defaults
Mutex authdigest-opaque: using_defaults
Mutex proxy-balancer-shm: using_defaults
Mutex rewrite-map: using_defaults
Mutex authdigest-client: using_defaults
PidFile: "/run/httpd/httpd.pid"
Define: _RH_HAS_HTTPPROTOCOLOPTIONS
Define: DUMP_VHOSTS
Define: DUMP_RUN_CFG
User: name="apache" id=48
Group: name="apache" id=48
hdmron
August 10, 2021, 9:15pm
5
media_sideload_images() is a wordpress function. This function had been working, but stopped after re-installing the cert when it expired. The function uses CURL to pull the required image into the media database, but because the URL is secure, but the cert won't validate to the domain.
I am he operator, but am reliant on Webmin for the cert installation. It's a one click kind of deal.
-Ron
rg305
August 10, 2021, 11:25pm
6
Well it looks like the config we need are all in one file.
Let's have a look at:
system
Closed
September 11, 2021, 1:44am
8
This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.