New-ACMEIdentifier -Dns -Alias vpn-crowconsultants-com2

Get-ACMEIdentifier vpn-crowconsultants-com2

Get-ACMEIdentifier vpn-crowconsultants-com2 | select -expand Challenges | select Type

Get-ACMEIdentifier vpn-crowconsultants-com2 | select -expand Combinations

Complete-ACMEChallenge vpn-crowconsultants-com2 -ChallengeType http-01 -Handler iis -HandlerParameters @{ WebSiteRef = ‘Default Web Site’ }

Submit-ACMEChallenge vpn-crowconsultants-com2 -ChallengeType http-01

Update-ACMEIdentifier vpn-crowconsultants-com2 -ChallengeType http-01
IdentifierPart : ACMESharp.Messages.IdentifierPart
IdentifierType : dns
Identifier :
Uri :
Status : pending
Expires : 2/19/2019 12:59:23 AM
Challenges : {, , iis}
Combinations : {1, 0, 2}

IdentifierType : dns
Identifier :
Uri :
Status : invalid
Expires : 2/18/2019 9:10:04 PM
Challenges : {, , }
Combinations : {1, 0, 2}

server 2016 essentials 1203-1755

None default iis webpage. I am setting this up for vpn validation

Yes. I am using PSVersion 5.1.14393.2636
PSEdition Desktop

I am using the acme-sharp ps modules for this

This is my first time using a lets encrypt cert. I normally just buy them for domains. then I validate them using either a txt file or mail to my admin email.

I am attempting to get a cert here mainly for my vpn connections. I am going to direct all my traffic through this subdomain off of my main site.

My main site is hosted by google. I am redirecting a subdomain to my home server.

I have forwarded ports 80,8080, and 443. They are open and tested.
I have also created a cname alias inside my lan (dns on server) that points the domain on my cert to my local server, both in my reverse lookup zone and standard. A standard google search gets to my iis default web page, both in and out of the lan.

I made sure to add the -useclobber flag when installing the iis provider. Acme server vault was initialized. I was following the quickstart guide on the github page for the ACMEsharp modules step by step.

IIS shows as a handler.
Get-ACMEIdentifier vpn-crowconsultants-com2 | select -expand Challenges | select Type



I am quite puzzled as to why this isn’t working.
I made multiple attempts and kept failing the challenge.
Any help is appreciated.


As soon as I posted this and ran through everything again it all worked just fine.

I think it just wanted me to admit it could do something and I couldn’t see what it did. I am even stepping through this in the ise so it wasn’t a miss spelling.

Thanks for reading

