Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is: https://minterrors.org
I ran this command: Win-Acme.exe automated script generation
It produced this output:
My web server is (include version): IIS
The operating system my web server runs on is (include version): Win Server 2022
My hosting provider, if applicable, is:
I can login to a root shell on my machine (yes or no, or I don't know): yes
I'm using a control panel to manage my site (no, or provide the name and version of the control panel):
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you're using Certbot):
Hello,
I am running into an issue while using Win-Acme to renew a cert.The failure is listed below.
I DID see that utilizing a firewall and Geo-blocking countries will cause issues. I DO have a few countries blocked. If I know which ones I should unblock and run the update and then block them again OR, there was something mentioned about a DNS setting that may be able to correct the issue.
Any assistance would be greatly appreciated.
A simple Windows ACMEv2 client (WACS)
Software version 2.2.8.1635 (release, pluggable, standalone, 64-bit)
Connecting to https://acme-v02.api.letsencrypt.org/...
Connection OK!
Scheduled task points to different location for .exe and/or working directory
Scheduled task exists but does not look healthy
Please report issues at GitHub - win-acme/win-acme: A simple ACME client for Windows (for use with Let's Encrypt et al.)
N: Create certificate (default settings)
M: Create certificate (full options)
R: Run renewals (1 currently due)
A: Manage renewals (1 total, 1 in error)
O: More options...
Q: Quit
Please choose from the menu: r
Plugin IIS generated source minterrors.org with 1 identifiers
Plugin Single created 1 order
Renewing [IIS] minterrors, (any host)
Cached order has status invalid, discarding
[minterrors.org] Authorizing...
[minterrors.org] Authorizing using http-01 validation (SelfHosting)
[minterrors.org] Authorization result: invalid
[minterrors.org] {"type":"urn:ietf:params:acme:error:unauthorized","detail":"During secondary validation: 96.225.177.48: Invalid response from http://minterrors.org/.well-known/acme-challenge/wt_gs6fcD6nci9xDzLlxsvaTOMUo_Ar1NPjAWN9Hapg: 403","status":403,"instance":null}
[minterrors.org] Deactivating pending authorization
Renewal for [IIS] minterrors, (any host) failed, will retry on next run
Validation failed
No certificate generated
N: Create certificate (default settings)
M: Create certificate (full options)
R: Run renewals (1 currently due)
A: Manage renewals (1 total, 1 in error)
O: More options...
Q: Quit
Please choose from the menu: