# Failing when tring to get SSled

**URL:** <https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089>\
**Category:** Help\
**Created:** [October 9, 2025, 8:25pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089 "2025-10-09T20:25:25Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![kriptokyng](https://avatars.discourse-cdn.com/v4/letter/k/e36b37/32.png) [@kriptokyng](https://community.letsencrypt.org/u/kriptokyng)\
**Post date:** [October 9, 2025, 8:25pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/1 "2025-10-09T20:25:25Z")

</div>

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. [crt.sh | example.com](https://crt.sh/?q=example.com)), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is:kriptokyng.com

I ran this command:sudo certbot --nginx

It produced this output:  
Certbot failed to authenticate some domains (authenticator: nginx). The Certificate Authority reported these problems:  
Domain: [api.kriptokng.com](http://api.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain

Domain: [kriptokng.com](http://kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [kriptokng.com](http://kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [kriptokng.com](http://kriptokng.com) - check that a DNS record exists for this domain

Domain: [stratum.kriptokng.com](http://stratum.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [stratum.kriptokng.com](http://stratum.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [stratum.kriptokng.com](http://stratum.kriptokng.com) - check that a DNS record exists for this domain

Domain: [www.kriptokng.com](http://www.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [www.kriptokng.com](http://www.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [www.kriptokng.com](http://www.kriptokng.com) - check that a DNS record exists for this domain

Hint: The Certificate Authority failed to verify the temporary nginx configuration changes made by Certbot. Ensure the listed domains point to this nginx server and that it is accessible from the internet.

Some challenges have failed.yes

My web server is (include version):nginx

The operating system my web server runs on is (include version):ubuntu 22.04

My hosting provider, if applicable, is:namescheap

I can login to a root shell on my machine (yes or no, or I don't know):yes

I'm using a control panel to manage my site (no, or provide the name and version of the control panel):webmin

The version of my client is (e.g. output of `certbot --version` or `certbot-auto --version` if you're using Certbot):certbot

---

<div class="post-metadata">

**Author:** ![kriptokyng](https://avatars.discourse-cdn.com/v4/letter/k/e36b37/32.png) [@kriptokyng](https://community.letsencrypt.org/u/kriptokyng)\
**Post date:** [October 9, 2025, 8:26pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/2 "2025-10-09T20:26:05Z")

</div>

Certbot failed to authenticate some domains (authenticator: nginx). The Certificate Authority reported these problems:  
Domain: [api.kriptokng.com](http://api.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain

Domain: [kriptokng.com](http://kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [kriptokng.com](http://kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [kriptokng.com](http://kriptokng.com) - check that a DNS record exists for this domain

Domain: [stratum.kriptokng.com](http://stratum.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [stratum.kriptokng.com](http://stratum.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [stratum.kriptokng.com](http://stratum.kriptokng.com) - check that a DNS record exists for this domain

Domain: [www.kriptokng.com](http://www.kriptokng.com)  
Type: dns  
Detail: DNS problem: NXDOMAIN looking up A for [www.kriptokng.com](http://www.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [www.kriptokng.com](http://www.kriptokng.com) - check that a DNS record exists for this domain

Hint: The Certificate Authority failed to verify the temporary nginx configuration changes made by Certbot. Ensure the listed domains point to this nginx server and that it is accessible from the internet.

Some challenges have failed.

---

<div class="post-metadata">

**Author:** ![kriptokyng](https://avatars.discourse-cdn.com/v4/letter/k/e36b37/32.png) [@kriptokyng](https://community.letsencrypt.org/u/kriptokyng)\
**Post date:** [October 9, 2025, 8:27pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/3 "2025-10-09T20:27:04Z")

</div>

kriptokyng@kriptokyng:~$ nslookup [www.kriptokyng.com](http://www.kriptokyng.com)  
Server: 127.0.0.53  
Address: 127.0.0.53#53

Non-authoritative answer:  
Name: [www.kriptokyng.com](http://www.kriptokyng.com)  
Address: 99.148.47.138

kriptokyng@kriptokyng:~$ ^C

---

<div class="post-metadata">

**Author:** ![danb35](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/danb35/32/70869_2.png) [@danb35](https://community.letsencrypt.org/u/danb35)\
**Post date:** [October 9, 2025, 8:29pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/4 "2025-10-09T20:29:39Z")

</div>

Is there a reason you didn't continue this discussion in your original thread?

> [@It will not complete says "NXDOMAIN looking up A for api.kriptokng.com - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for api.kriptokng.com - check that "](https://community.letsencrypt.org/t/it-will-not-complete-says-nxdomain-looking-up-a-for-api-kriptokng-com-check-that-a-dns-record-exists-for-this-domain-dns-problem-nxdomain-looking-up-aaaa-for-api-kriptokng-com-check-that/242048):
>
> P…

---

<div class="post-metadata">

**Author:** ![kriptokyng](https://avatars.discourse-cdn.com/v4/letter/k/e36b37/32.png) [@kriptokyng](https://community.letsencrypt.org/u/kriptokyng)\
**Post date:** [October 9, 2025, 9:00pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/5 "2025-10-09T21:00:20Z")

</div>

What you mean

---

<div class="post-metadata">

**Author:** ![griffin](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/griffin/32/50204_2.png) [@griffin](https://community.letsencrypt.org/u/griffin)\
**Post date:** [October 9, 2025, 10:37pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/6 "2025-10-09T22:37:16Z")

</div>

This is already solved in your previous thread, right? Just confirming that you're good.

---

<div class="post-metadata">

**Author:** ![Bruce5051](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/bruce5051/32/76576_2.png) [@Bruce5051](https://community.letsencrypt.org/u/Bruce5051)\
**Post date:** [October 9, 2025, 10:40pm UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/7 "2025-10-09T22:40:50Z")

</div>

> [@kriptokyng](#):
>
> Domain: [api.kriptokng.com](http://api.kriptokng.com)  
> Type: dns  
> Detail: DNS problem: NXDOMAIN looking up A for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for [api.kriptokng.com](http://api.kriptokng.com) - check that a DNS record exists for this domain

You can see here the domain name does not exist, as was the case your previous thread that DanB35 pointed out.  
[https://letsdebug.net/api.kriptokng.com/2583802](https://letsdebug.net/api.kriptokng.com/2583802)

### Edit

To further demonstrate that domain name in question does not exist using ICANN's lookup

 ![image](https://global.discourse-cdn.com/letsencrypt/original/3X/a/9/a939ac775dc4e9c2af096cfde576550e7f2058bf.png)

---

<div class="post-metadata">

**Author:** ![Osiris](https://avatars.discourse-cdn.com/v4/letter/o/839c29/32.png) [@Osiris](https://community.letsencrypt.org/u/Osiris)\
**Post date:** [October 10, 2025, 5:19am UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/8 "2025-10-10T05:19:38Z")

</div>

Please continue in your previous thread. I'm closing this one.

---

<div class="post-metadata">

**Author:** ![Osiris](https://avatars.discourse-cdn.com/v4/letter/o/839c29/32.png) [@Osiris](https://community.letsencrypt.org/u/Osiris)\
**Post date:** [October 10, 2025, 5:19am UTC](https://community.letsencrypt.org/t/failing-when-tring-to-get-ssled/242089/9 "2025-10-10T05:19:43Z")

</div>


