Dear all, I'm trying to run Certbot without having to stop my web server, but I'm having some issues. I've even tried to create a test path at /opt/tomcat_arcgis_9.0.48/webapps to make sure it was working. Check https://gis.spatialstudieslab.org/.test/index.html. I've also attached the letsencrypt log file.
I ran this command: sudo certbot certonly --webroot --webroot-path /opt/tomcat_arcgis_9.0.48/webapps -d gis.spatialstudieslab.org -d www.gis.spatialstudieslab.org -v
It produced this output:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator webroot, Installer None
Requesting a certificate for gis.spatialstudieslab.org and www.gis.spatialstudieslab.org
Performing the following challenges:
http-01 challenge for gis.spatialstudieslab.org
http-01 challenge for www.gis.spatialstudieslab.org
Using the webroot path /opt/tomcat_arcgis_9.0.48/webapps for all unmatched domains.
Waiting for verification...
Challenge failed for domain gis.spatialstudieslab.org
Challenge failed for domain www.gis.spatialstudieslab.org
http-01 challenge for gis.spatialstudieslab.org
http-01 challenge for www.gis.spatialstudieslab.org
Certbot failed to authenticate some domains (authenticator: webroot). The Certificate Authority reported these problems:
Domain: gis.spatialstudieslab.org
Type: unauthorized
Detail: 128.42.130.15: Invalid response from http://gis.spatialstudieslab.org/.well-known/acme-challenge/nTVfbs1a7QQtUj-3py3EdUzu5dZra7qesc-PPwGNlFc: 404
Domain: www.gis.spatialstudieslab.org
Type: unauthorized
Detail: 128.42.130.15: Invalid response from http://www.gis.spatialstudieslab.org/.well-known/acme-challenge/EI53loU44gRP9hNlokqth-EN9OfMP2Nwo8J_SH-TxeQ: 404
Hint: The Certificate Authority failed to download the temporary challenge files created by Certbot. Ensure that the listed domains serve their content from the provided --webroot-path/-w and that files created there can be downloaded from the internet.
Cleaning up challenges
Some challenges have failed.
Ask for help or search for solutions at https://community.letsencrypt.org. See the logfile /var/log/letsencrypt/letsencrypt.log or re-run Certbot with -v for more details.
My web server is (include version): Tomcat 9.0.48
The operating system my web server runs on is (include version): Ubuntu 18
My hosting provider, if applicable, is: On-prem
I can login to a root shell on my machine (yes or no, or I don't know): Yes
I'm using a control panel to manage my site (no, or provide the name and version of the control panel): No
The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot): certbot 1.30.0
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator standalone, Installer None
Requesting a certificate for gis.spatialstudieslab.org and www.gis.spatialstudieslab.org
Performing the following challenges:
http-01 challenge for gis.spatialstudieslab.org
http-01 challenge for www.gis.spatialstudieslab.org
Waiting for verification...
Challenge failed for domain gis.spatialstudieslab.org
Challenge failed for domain www.gis.spatialstudieslab.org
http-01 challenge for gis.spatialstudieslab.org
http-01 challenge for www.gis.spatialstudieslab.org
Certbot failed to authenticate some domains (authenticator: standalone). The Certificate Authority reported these problems:
Domain: gis.spatialstudieslab.org
Type: connection
Detail: 128.42.130.15: Fetching http://gis.spatialstudieslab.org/.well-known/acme-challenge/sJXRH2Aq6gG8_dqRSQZh6p9xAAdmLXHbgLj98AlZrJ8: Connection refused
Domain: www.gis.spatialstudieslab.org
Type: connection
Detail: 128.42.130.15: Fetching http://www.gis.spatialstudieslab.org/.well-known/acme-challenge/BGwF8xpdpaI2raVEHvOWXGf51Ooji-gRhb7Z8FVQtak: Connection refused
Hint: The Certificate Authority failed to download the challenge files from the temporary standalone webserver started by Certbot on port 80. Ensure that the listed domains point to this machine and that it can accept inbound connections from the internet.
Cleaning up challenges
Some challenges have failed.
Ask for help or search for solutions at https://community.letsencrypt.org. See the logfile /var/log/letsencrypt/letsencrypt.log or re-run Certbot with -v for more details.