Thanks so much for your patience. Please be sure to try at different times (away from UTC 0) to have the best chance for success.
I just tried it again, and it worked! I am very pleased. Must have been an unusually slow DNS lag or something? Anyway, I am glad I was able to temporarily grab the existing LE cert from the old server, or else the site would have been without SSL for nearly 24 hours.
So happy you finally got it. Sorry it didn't go more smoothly though. I think it's possibly more related to topology and resources than the DNS itself, but I'm not aware of all the details. I'm gong to share your success with the engineers now.
Although I am glad to see you have your cert, I fear the problem may still be there.
I fear that was just the one in a {very many} chance of success and the odds are still not in your favor for the next renewal (without someone finding and fixing the actual problem).
So, if you get a chance, you can always retest it with --dry-run
[which will not change anything].
We would be happy to hear about any tests and also your next automated renewal.
Cheers from Miami
I concur with @rg305. Celebrating winning the battle does not mean the war is over. Keep vigilant.
This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.