First Time Problem - certbot failed to auth during secondary validation

I'll check them out manana - I've been using their 1.1.1.1 in my home router for years, may as well sign up and kiss the ring. Carry on.

4 Likes

Thanks Bruce! Seems legit at first glance - I see Cloudfare on there and NOT no-ip soo...worth a shot!

Y'all are the best. Go ahead and take the day off tomorrow, you have my permission.

4 Likes

I am retired; I would rather not take the day off from being retired. :slight_smile:

4 Likes

Does that mean you would have to go to work? :slight_smile:

4 Likes

Aight. Got a new domain name (at $10 expense) on cloudfare. Now the certbot is not timing out, but I'm getting an 'unauthorized' error.

https://dukeofgood.com

I guess I can't get my $10 back,so now I'm stuck making this new one work. :smiley:

Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  Domain: dukeofgood.com
  Type:   unauthorized
  Detail: 2606:4700:3030::6815:f30: Invalid response from http://dukeofgood.com/.well-known/acme-challenge/2M98hF0z9dSihDtnzwNgytNFYNAbP8CVWJl7-3YfTm0: 522

  Domain: www.dukeofgood.com
  Type:   unauthorized
  Detail: 2606:4700:3037::ac43:cd89: Invalid response from http://www.dukeofgood.com/.well-known/acme-challenge/QuMnF7zuqgpSUm7fEZGQ1elapFbpVM2il8JyiBfkrtE: 522

Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.

That means CF isn't able to connect to your server.

2 Likes

Well...I can. What's the matter with the internet?
Is Al Gore up to his shenanigans again?
Seriously - a telnet on port 80 works every time. An HTTP request to. For me.
Is there no carbon based life forms in this process anymore? Nobody to call?

CF settings are likely unaligned with your... aura or system.

2 Likes

I'll try it again,next full moon.

Maybe the CF support community can better assist you [now].

3 Likes

true. maybe. for a price. but I'll go ahead and bow out gracefully, I can see y'all trying to get rid of me . LOL.

If you're using Cloudflares CDN it's probably a good idea to use their Origin CA: Origin CA certificates · Cloudflare SSL/TLS docs.

Would save you all the issues with ACME CAs and their validation.

5 Likes

Holy ItWorks Batman!

Origin cert and cloudfront FTW!

Y'all aight,I don't care what everyone else say. Thanks for all the assistance! Got er done for a $10/year domain name. Check me out - https://dukeofgood.com.

Oh yea, and shameless plug for my existing blog, https://dukeofgood.site (on bluehost for gobs of $$)

Marking this as solved.

1 Like

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.