Failed authorization procedure.The client lacks sufficient authorization

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is:

I ran this command:

It produced this output:

My web server is (include version):

The operating system my web server runs on is (include version): Ubuntu 18.04

My hosting provider, if applicable, is: Self-Hosted

I can login to a root shell on my machine (yes or no, or I don’t know): Yes

I’m using a control panel to manage my site (no, or provide the name and version of the control panel): N/A

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you’re using Certbot): certbot 0.31.0

Please provide the other information requested.

Additional Info from /var/log/letsencrypt/letsencrypt.log

Note the IP Address, Email Address, and Domain

2020-04-06 03:45:23,265:DEBUG:certbot.main:certbot version: 0.31.0
2020-04-06 03:45:23,267:DEBUG:certbot.main:Arguments: [’–apache’]
2020-04-06 03:45:23,269:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2020-04-06 03:45:23,283:DEBUG:certbot.log:Root logging level set at 20
2020-04-06 03:45:23,283:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
2020-04-06 03:45:23,284:DEBUG:certbot.plugins.selection:Requested authenticator apache and installer apache
2020-04-06 03:45:23,389:DEBUG:certbot_apache.configurator:Apache version is 2.4.29
2020-04-06 03:45:23,735:DEBUG:certbot.plugins.selection:Single candidate plugin: * apache
Description: Apache Web Server plugin
Interfaces: IAuthenticator, IInstaller, IPlugin
Entry point: apache = certbot_apache.entrypoint:ENTRYPOINT
Initialized: <certbot_apache.override_debian.DebianConfigurator object at 0x7f7f3ae11630>
Prep: True
2020-04-06 03:45:23,736:DEBUG:certbot.plugins.selection:Selected authenticator <certbot_apache.override_debian.DebianConfigurator object at 0x7f7f3ae11630> and installer <certbot_apache.override_debian.DebianConfigurator object at 0x7f7f3ae11630>
2020-04-06 03:45:23,737:INFO:certbot.plugins.selection:Plugins selected: Authenticator apache, Installer apache
2020-04-06 03:45:39,552:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
2020-04-06 03:45:39,571:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org
2020-04-06 03:45:39,978:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “GET /directory HTTP/1.1” 200 658
2020-04-06 03:45:39,979:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Mon, 06 Apr 2020 03:45:39 GMT
Content-Type: application/json
Content-Length: 658
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“keyChange”: “https://acme-v02.api.letsencrypt.org/acme/key-change”,
“meta”: {
“caaIdentities”: [
letsencrypt.org
],
“termsOfService”: “https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf”,
“website”: “https://letsencrypt.org
},
“newAccount”: “https://acme-v02.api.letsencrypt.org/acme/new-acct”,
“newNonce”: “https://acme-v02.api.letsencrypt.org/acme/new-nonce”,
“newOrder”: “https://acme-v02.api.letsencrypt.org/acme/new-order”,
“revokeCert”: “https://acme-v02.api.letsencrypt.org/acme/revoke-cert”,
“us2E871rCBE”: “Adding random entries to the directory
}
2020-04-06 03:45:41,940:DEBUG:acme.client:Requesting fresh nonce
2020-04-06 03:45:41,940:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
2020-04-06 03:45:42,269:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “HEAD /acme/new-nonce HTTP/1.1” 200 0
2020-04-06 03:45:42,269:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Mon, 06 Apr 2020 03:45:41 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”
Replay-Nonce: 0002CTo_mbVJbt46aIE3CqANqA9DZ5pG420jqoZlI7QN-js
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

2020-04-06 03:45:42,270:DEBUG:acme.client:Storing nonce: 0002CTo_mbVJbt46aIE3CqANqA9DZ5pG420jqoZlI7QN-js
2020-04-06 03:45:42,270:DEBUG:acme.client:JWS payload:
b’{\n “contact”: [\n “mailto:notmyrealemail@gmail.com”\n ],\n “termsOfServiceAgreed”: true,\n “resource”: “new-reg”\n}’
2020-04-06 03:45:42,300:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-acct:
{
“protected”: “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”,
“signature”: “GC_RFu6cEv3NjqwFBJr1iPQ9b5fEjW9OykBFutjGRgnoF4MJD-bAk3bN5kpRLUR_xDRJ92IiVH_QF3x69O9zMqCKoVCDxyi5CGUudrDi1tl0uwp9-_aaJT2Q97B2imk3ZYqoOHuuBDNAfU-amgK3Fl9k6kLij_kRLWptW-2rR2iZBM8ygqGj__lpq61pi-KJvFR01Vg38vIQmJnpAqgPcWOI0ihHuEEQcZRXGWvBSGoqkgbAi0inq9tc9TgoyMLcbS60VGEVB_7ZCky98QKAClfkAALZ4sUIbrI3-Jg-JGA4qDJZLrrVzNMjShGe2Psb7DBMUM6sfhqynNaVOeG_Dw”,
“payload”: “ewogICJjb250YWN0IjogWwogICAgIm1haWx0bzpseW5uLnAuamFja3NvbjFAZ21haWwuY29tIgogIF0sCiAgInRlcm1zT2ZTZXJ2aWNlQWdyZWVkIjogdHJ1ZSwKICAicmVzb3VyY2UiOiAibmV3LXJlZyIKfQ”
}
2020-04-06 03:45:42,400:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “POST /acme/new-acct HTTP/1.1” 201 569
2020-04-06 03:45:42,401:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Mon, 06 Apr 2020 03:45:42 GMT
Content-Type: application/json
Content-Length: 569
Connection: keep-alive
Boulder-Requester: 82611159
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”, https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf;rel=“terms-of-service”
Location: https://acme-v02.api.letsencrypt.org/acme/acct/82611159
Replay-Nonce: 0001lM9KGf3Kx4w8Rdy3lSJQvabVT54noeOHwPMuhmUgs1c
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“key”: {
“kty”: “RSA”,
“n”: “2F0Thc57YNn3PiDtjEN3-xEhCZoqrMBgF4K38uT5JoHigfj_51TFcTS4OJGI6645kc1txJllmImr6Vu8TBzb1FLunZplEyWvkEejJJzVA0vtlo4hhxq0LdFrzkXb6N7_aLKbu18geCvcGZUXFiu1bYLdCj2Aoi-mDArBJI6mlucf8_WFbBo2fHzqPJczp-IL4eD19AhkU-5TzwDj09aSB3623Lo4tcFqIlOsaMM5we9awEzEZSV3nmXBz7n-wf0euW9pmaV1lAKUeRQ7xgAUQ_2lk73LiKkOoa6o-ewBp0nLc1DxC3X-dN2s9REQQm0Tr23kwm4Eca5T6hJGKBzJEw”,
“e”: “AQAB”
},
“contact”: [
mailto:notmyrealemail@gmail.com
],
“initialIp”: “8.8.8.8”,
“createdAt”: “2020-04-06T03:45:42.353397233Z”,
“status”: “valid”
}
2020-04-06 03:45:42,402:DEBUG:acme.client:Storing nonce: 0001lM9KGf3Kx4w8Rdy3lSJQvabVT54noeOHwPMuhmUgs1c
2020-04-06 03:45:42,403:DEBUG:certbot.reporter:Reporting to user: Your account credentials have been saved in your Certbot configuration directory at /etc/letsencrypt. You should make a secure backup of this folder now. This configuration directory will also contain certificates and private keys obtained by Certbot so making regular backups of this folder is ideal.
2020-04-06 03:45:44,348:DEBUG:certbot.eff:Sending POST request to https://supporters.eff.org/subscribe/certbot:
{‘data_type’: ‘json’, ‘email’: ‘notmyrealemail@gmail.com’, ‘form_id’: ‘eff_supporters_library_subscribe_form’}
2020-04-06 03:45:44,351:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): supporters.eff.org
2020-04-06 03:45:45,869:DEBUG:urllib3.connectionpool:https://supporters.eff.org:443 “POST /subscribe/certbot HTTP/1.1” 200 90
2020-04-06 03:45:45,872:DEBUG:certbot.eff:Received response:
b’{“status”:true,“message”:“Please check your email for a confirmation link.”}’
2020-04-06 03:45:45,872:DEBUG:certbot.main:Picked account: <Account(RegistrationResource(body=Registration(key=JWKRSA(key=<ComparableRSAKey(<cryptography.hazmat.backends.openssl.rsa._RSAPublicKey object at 0x7f7f3acc79e8>)>), contact=(‘mailto:notmyrealemail@gmail.com’,), agreement=None, status=‘valid’, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri=‘https://acme-v02.api.letsencrypt.org/acme/acct/82611159’, new_authzr_uri=None, terms_of_service=‘https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf’), 88553718a22251099ed76198e4ec7980, Meta(creation_dt=datetime.datetime(2020, 4, 6, 3, 45, 42, tzinfo=), creation_host=‘nextcloud.notmyrealdomain.com’))>
2020-04-06 03:45:48,508:INFO:certbot.main:Obtaining a new certificate
2020-04-06 03:45:48,826:DEBUG:certbot.crypto_util:Generating key (2048 bits): /etc/letsencrypt/keys/0000_key-certbot.pem
2020-04-06 03:45:48,849:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0000_csr-certbot.pem
2020-04-06 03:45:48,851:DEBUG:acme.client:JWS payload:
b’{\n “identifiers”: [\n {\n “type”: “dns”,\n “value”: “nextcloud.notmyrealdomain.com”\n }\n ]\n}’
2020-04-06 03:45:48,853:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
{
“protected”: “eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvODI2MTExNTkiLCAibm9uY2UiOiAiMDAwMWxNOUtHZjNLeDR3OFJkeTNsU0pRdmFiVlQ1NG5vZU9Id1BNdWhtVWdzMWMiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL25ldy1vcmRlciJ9”,
“signature”: “DGu8gatMJ6OVCLmP9rUZ8uAyFV6Xi0mXHKV58fFKUpZhKQm6mKSqDEr_FArN3kfwBwkRPF06USdwm7SVvpKZk45lYvCSOmaWk6MjQkHMw3jgVVZxOD3ep3jZeRo43_TpVPIbmGSfrer_FeISD-Vp9yTqD-9CZr5eO5RKjomtEolEgd6K-6AYfz8nTKYZl8_JLOSOXUdK4nxskWClPqKXvLmS01pKtGTaRRhYHn1Pn3St-RBz9G0-4QWOHEt8xMKZ4He2B24P8rEzFq1sWDG1Gm9iCexbcppp2vDB9odf_dTMPQf2NQboxNDLbneHL3zrJLOYcubyx40Y5uPXdnbQFg”,
“payload”: “ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogIm5jcy5taWNoYWVseW5qYWNrc29uLnRlY2giCiAgICB9CiAgXQp9”
}
2020-04-06 03:45:48,964:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “POST /acme/new-order HTTP/1.1” 201 355
2020-04-06 03:45:48,966:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Mon, 06 Apr 2020 03:45:48 GMT
Content-Type: application/json
Content-Length: 355
Connection: keep-alive
Boulder-Requester: 82611159
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”
Location: https://acme-v02.api.letsencrypt.org/acme/order/82611159/2906303997
Replay-Nonce: 0002sGA634xKKD7vwCZQf0XnKI0Rjbg64JzwsErMipJHUYk
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“status”: “pending”,
“expires”: “2020-04-13T03:45:48.914016321Z”,
“identifiers”: [
{
“type”: “dns”,
“value”: “nextcloud.notmyrealdomain.com
}
],
“authorizations”: [
https://acme-v02.api.letsencrypt.org/acme/authz-v3/3788939295
],
“finalize”: “https://acme-v02.api.letsencrypt.org/acme/finalize/82611159/2906303997
}
2020-04-06 03:45:48,966:DEBUG:acme.client:Storing nonce: 0002sGA634xKKD7vwCZQf0XnKI0Rjbg64JzwsErMipJHUYk
2020-04-06 03:45:48,970:DEBUG:acme.client:JWS payload:
b’’
2020-04-06 03:45:48,973:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/3788939295:
{
“protected”: “eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvODI2MTExNTkiLCAibm9uY2UiOiAiMDAwMnNHQTYzNHhLS0Q3dndDWlFmMFhuS0kwUmpiZzY0Snp3c0VyTWlwSkhVWWsiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LXYzLzM3ODg5MzkyOTUifQ”,
“signature”: “aRQtRSTNbhELIHUICYQ342klrCvtOwYRrFsObjm2MTGt9_SCMQZrDsT70I1g2d7AMTiMAYjCtDHyOEPjCtpQqFb6-kSIRsxeyISdQYiTqBbTJmPo3dKhTWXM7X3oOF-qY__dpqtYIn55T5izbQLIGYjvaZS7QIQwrxTH5YbcGRAHMwV4WndJT8KxD7bGZvZDZMP2Hfv_ex4t-FHJo9r_8k51hv-2SmomNNncBdkZoSTcBrpBoo4lt5lNgr71TkIT4EPGonwLwg71bDFbrLfOEfgUh-SXLzd0SI1oZIhfnwoslMDP-VM7R7cDrmRW4pkPhMQ5xtWVIIdvv0OgGIpp4A”,
“payload”: “”
}
2020-04-06 03:45:49,070:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “POST /acme/authz-v3/3788939295 HTTP/1.1” 200 803
2020-04-06 03:45:49,071:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Mon, 06 Apr 2020 03:45:49 GMT
Content-Type: application/json
Content-Length: 803
Connection: keep-alive
Boulder-Requester: 82611159
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”
Replay-Nonce: 0002j7lVG-lqq3BlVfkNczdSXwr0MVXf0cHBETmxqgf55u8
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“identifier”: {
“type”: “dns”,
“value”: “nextcloud.notmyrealdomain.com
},
“status”: “pending”,
“expires”: “2020-04-13T03:45:48Z”,
“challenges”: [
{
“type”: “http-01”,
“status”: “pending”,
“url”: “https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/Wdb-mg”,
“token”: “3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”
},
{
“type”: “dns-01”,
“status”: “pending”,
“url”: “https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/TVrOqQ”,
“token”: “3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”
},
{
“type”: “tls-alpn-01”,
“status”: “pending”,
“url”: “https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/5JmONw”,
“token”: “3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”
}
]
}
2020-04-06 03:45:49,072:DEBUG:acme.client:Storing nonce: 0002j7lVG-lqq3BlVfkNczdSXwr0MVXf0cHBETmxqgf55u8
2020-04-06 03:45:49,073:INFO:certbot.auth_handler:Performing the following challenges:
2020-04-06 03:45:49,073:INFO:certbot.auth_handler:http-01 challenge for nextcloud.notmyrealdomain.com
2020-04-06 03:45:49,116:DEBUG:certbot_apache.http_01:Adding a temporary challenge validation Include for name: nextcloud.notmyrealdomain.com in: /etc/apache2/sites-enabled/nextcloud.conf
2020-04-06 03:45:49,117:DEBUG:certbot_apache.http_01:writing a pre config file with text:
RewriteEngine on
RewriteRule ^/.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]

2020-04-06 03:45:49,117:DEBUG:certbot_apache.http_01:writing a post config file with text:
<Directory /var/lib/letsencrypt/http_challenges>
Require all granted

<Location /.well-known/acme-challenge>
Require all granted

2020-04-06 03:45:49,126:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/nextcloud.conf
2020-04-06 03:45:52,285:INFO:certbot.auth_handler:Waiting for verification…
2020-04-06 03:45:52,287:DEBUG:acme.client:JWS payload:
b’{\n “resource”: “challenge”,\n “type”: “http-01”\n}’
2020-04-06 03:45:52,292:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/Wdb-mg:
{
“protected”: “eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvODI2MTExNTkiLCAibm9uY2UiOiAiMDAwMmo3bFZHLWxxcTNCbFZma05jemRTWHdyME1WWGYwY0hCRVRteHFnZjU1dTgiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLXYzLzM3ODg5MzkyOTUvV2RiLW1nIn0”,
“signature”: “0wd28XdTf7zw0-Wa1J1dD8rHLIpge_coalyzRXEW4-hVFZMN5Uje2NfIDjFqBtgvdtIGb5NDtGSwS8YqFAUk9bDjOPCQYAPWHzuINRRU6oIkCy0jiKOkNXhGybQojPaYF8ImwRtGBvSrwuBCPsPnAe4pRsgcMMn9Bgke61cpwNFEbuMIhne214K-Zyd4HHRDFsGkHlSE-NdM8qUazIOkv9Wg9pc-TRxMm15CP5loXnszYNR5E9aumG65Vo4F1TMd5jlGq3qE47Tk7uIGMbwCmNlpJriAETHvyeOXgcmNfZRuXCs1jdhyYxVxmTGRGDUNeO9YamDZp-FcgNMtasuR3w”,
“payload”: “ewogICJyZXNvdXJjZSI6ICJjaGFsbGVuZ2UiLAogICJ0eXBlIjogImh0dHAtMDEiCn0”
}
2020-04-06 03:45:52,406:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “POST /acme/chall-v3/3788939295/Wdb-mg HTTP/1.1” 200 185
2020-04-06 03:45:52,407:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Mon, 06 Apr 2020 03:45:52 GMT
Content-Type: application/json
Content-Length: 185
Connection: keep-alive
Boulder-Requester: 82611159
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”, https://acme-v02.api.letsencrypt.org/acme/authz-v3/3788939295;rel=“up”
Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/Wdb-mg
Replay-Nonce: 0002yvlcs9piZg8eXdqhQTCvCR50Sm5ePSA-K_wkgYx2Mc0
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“type”: “http-01”,
“status”: “pending”,
“url”: “https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/Wdb-mg”,
“token”: “3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”
}
2020-04-06 03:45:52,408:DEBUG:acme.client:Storing nonce: 0002yvlcs9piZg8eXdqhQTCvCR50Sm5ePSA-K_wkgYx2Mc0
2020-04-06 03:45:55,412:DEBUG:acme.client:JWS payload:
b’’
2020-04-06 03:45:55,414:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/3788939295:
{
“protected”: “eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvODI2MTExNTkiLCAibm9uY2UiOiAiMDAwMnl2bGNzOXBpWmc4ZVhkcWhRVEN2Q1I1MFNtNWVQU0EtS193a2dZeDJNYzAiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LXYzLzM3ODg5MzkyOTUifQ”,
“signature”: “G1EJzVy7GJj5IPQJh4WByu4WlBqaj5_CJ6qZfst1KqxErNfi-193HodKXSWxD6aHFt_FxAal-Gx5Y62Q30vZbpjCQ8qpMT1Fpn6h8WWwbBz-MDK6jVZqw_8FXM6df6WA-L3b0NwLH53ThzItTIQ2H-L2w_zBGy_RSmSBS6FIWzAcq23Jva6ZN2em4TD6e82qRYrq3ewdUdxwN5DfynvV6Mka1ZhSREd7005gYxVV4_EZzhQ34QmHDoyVHaTyb1iIc8XnGyydZKqk-A8t94YcBZR6RcirLt4MMaxBHa9i7BCYpY7gjFYdqC89zZzgAdHVk0N7NJ1_DR1lBZ9IYB8fPg”,
“payload”: “”
}
2020-04-06 03:45:55,507:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 “POST /acme/authz-v3/3788939295 HTTP/1.1” 200 1267
2020-04-06 03:45:55,508:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Mon, 06 Apr 2020 03:45:55 GMT
Content-Type: application/json
Content-Length: 1267
Connection: keep-alive
Boulder-Requester: 82611159
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel=“index”
Replay-Nonce: 00015RLaBXMfu4n9VAsclxAfCtbjXpnwbykBVmlOTIYt01A
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
“identifier”: {
“type”: “dns”,
“value”: “nextcloud.notmyrealdomain.com
},
“status”: “invalid”,
“expires”: “2020-04-13T03:45:48Z”,
“challenges”: [
{
“type”: “http-01”,
“status”: “invalid”,
“error”: {
“type”: “urn:ietf:params:acme:error:unauthorized”,
“detail”: “Invalid response from http://nextcloud.notmyrealdomain.com/.well-known/acme-challenge/3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU [8.8.8.8]: “\u003c!DOCTYPE HTML PUBLIC \”-//IETF//DTD HTML 2.0//EN\”\u003e\n\u003chtml\u003e\u003chead\u003e\n\u003ctitle\u003e404 Not Found\u003c/title\u003e\n\u003c/head\u003e\u003cbody\u003e\n\u003ch1\u003eNot Found\u003c/h1\u003e\n\u003cp"",
“status”: 403
},
“url”: “https://acme-v02.api.letsencrypt.org/acme/chall-v3/3788939295/Wdb-mg”,
“token”: “3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”,
“validationRecord”: [
{
“url”: “http://nextcloud.notmyrealdomain.com/.well-known/acme-challenge/3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU”,
“hostname”: “nextcloud.notmyrealdomain.com”,
“port”: “80”,
“addressesResolved”: [
“8.8.8.8”
],
“addressUsed”: “8.8.8.8”
}
]
}
]
}
2020-04-06 03:45:55,508:DEBUG:acme.client:Storing nonce: 00015RLaBXMfu4n9VAsclxAfCtbjXpnwbykBVmlOTIYt01A
2020-04-06 03:45:55,509:DEBUG:certbot.reporter:Reporting to user: The following errors were reported by the server:

Domain: nextcloud.notmyrealdomain.com
Type: unauthorized
Detail: Invalid response from http://nextcloud.notmyrealdomain.com/.well-known/acme-challenge/3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU [8.8.8.8]: “\n\n404 Not Found\n\n

Not Found

\n<p”

To fix these errors, please make sure that your domain name was entered correctly and the DNS A/AAAA record(s) for that domain contain(s) the right IP address.
2020-04-06 03:45:55,510:DEBUG:certbot.error_handler:Encountered exception:
Traceback (most recent call last):
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 82, in handle_authorizations
self._respond(aauthzrs, resp, best_effort)
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 168, in _respond
self._poll_challenges(aauthzrs, chall_update, best_effort)
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 239, in _poll_challenges
raise errors.FailedChallenges(all_failed_achalls)
certbot.errors.FailedChallenges: Failed authorization procedure. nextcloud.notmyrealdomain.com (http-01): urn:ietf:params:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from http://nextcloud.notmyrealdomain.com/.well-known/acme-challenge/3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU [8.8.8.8]: “\n\n404 Not Found\n\n

Not Found

\n<p”

2020-04-06 03:45:55,510:DEBUG:certbot.error_handler:Calling registered functions
2020-04-06 03:45:55,510:INFO:certbot.auth_handler:Cleaning up challenges
2020-04-06 03:45:55,755:DEBUG:certbot.log:Exiting abnormally:
Traceback (most recent call last):
File “/usr/bin/certbot”, line 11, in
load_entry_point(‘certbot==0.31.0’, ‘console_scripts’, ‘certbot’)()
File “/usr/lib/python3/dist-packages/certbot/main.py”, line 1365, in main
return config.func(config, plugins)
File “/usr/lib/python3/dist-packages/certbot/main.py”, line 1119, in run
certname, lineage)
File “/usr/lib/python3/dist-packages/certbot/main.py”, line 121, in _get_and_save_cert
lineage = le_client.obtain_and_enroll_certificate(domains, certname)
File “/usr/lib/python3/dist-packages/certbot/client.py”, line 410, in obtain_and_enroll_certificate
cert, chain, key, _ = self.obtain_certificate(domains)
File “/usr/lib/python3/dist-packages/certbot/client.py”, line 353, in obtain_certificate
orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
File “/usr/lib/python3/dist-packages/certbot/client.py”, line 389, in _get_order_and_authorizations
authzr = self.auth_handler.handle_authorizations(orderr, best_effort)
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 82, in handle_authorizations
self._respond(aauthzrs, resp, best_effort)
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 168, in _respond
self._poll_challenges(aauthzrs, chall_update, best_effort)
File “/usr/lib/python3/dist-packages/certbot/auth_handler.py”, line 239, in _poll_challenges
raise errors.FailedChallenges(all_failed_achalls)
certbot.errors.FailedChallenges: Failed authorization procedure. nextcloud.notmyrealdomain.com (http-01): urn:ietf:params:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from http://nextcloud.notmyrealdomain.com/.well-known/acme-challenge/3su4j4YAtETzagPtZ9MGsKacWTVxagh02Y-8jyFWIEU [8.8.8.8]: “\n\n404 Not Found\n\n

Not Found

\n<p”

I am using apache and I followed the Certbot apache instructions to install the certificate.

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.