Error downloading certificate for domians

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is: mail.presidentoffice.info

I ran this command: certbot certonly --webroot --webroot-path /opt/postal/app/public --domains mail.presidentoffice.info

It produced this output:Certbot failed to authenticate some domains (authenticator: webroot). The Certif icate Authority reported these problems:
Domain: mail.presidentoffice.info
Type: unauthorized
Detail: 51.222.26.97: Invalid response from https://mail.presidentoffice.info/ .well-known/acme-challenge/cSP_TV0CFMuQvkX9IT3zkJx0W9WW1NfCOtiHSP-dHwk: 502

Hint: The Certificate Authority failed to download the temporary challenge files created by Certbot. Ensure that the listed domains serve their content from the provided --webroot-path/-w and that files created there can be downloaded from the internet.

My web server is (include version): ubuntu latest version

The operating system my web server runs on is (include version): ubuntu

My hosting provider, if applicable, is: ovhcloud

I can login to a root shell on my machine (yes or no, or I don't know):yes

I'm using a control panel to manage my site (no, or provide the name and version of the control panel):no

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot):certbot is already the newest version (2.1.0-4).

Why are you using certbot?

❯ curl -IL http://mail.presidentoffice.info/.well-known/acme-challenge/cSP_TV0CFMuQvkX9IT3zkJx0W9WW1NfCOtiHSP-dHwk
HTTP/1.1 308 Permanent Redirect
Connection: close
Location: https://mail.presidentoffice.info/.well-known/acme-challenge/cSP_TV0CFMuQvkX9IT3zkJx0W9WW1NfCOtiHSP-dHwk
Server: Caddy
Date: Sun, 01 Oct 2023 21:05:12 GMT

HTTP/2 502
alt-svc: h3=":443"; ma=2592000
server: Caddy
date: Sun, 01 Oct 2023 21:05:13 GMT

Do you control Caddy, or does your service provider?

5 Likes

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.