What is the best way to generate certs automatically using nginx and DNS Round Robin the following way:
www.example.com A 126.96.36.199
www.example.com A 188.8.131.52
www.example.com A 184.108.40.206
Nginx is running on all three server delivering the same content. Best way would be that the certs are generated by one server e.g. 220.127.116.11, but a request is only served by one-third of the cases from server 1.
Hence certbot certonly --nginx throws the following error in two-third of the cases:
Failed authorization procedure. www.example.com (tls-sni-01): urn:acme:error:unauthorized :: The client lacks sufficient authorization :: Incorrect validation certificate for tls-sni-01 challenge. Requested acme.invalid from 18.104.22.168:443.
THX in advance