Hi,
I have some issue while renewing my ssl certificate.
My domain is: nouvellescreches.fr
I ran this command: renew my ssl certificate on plesk
It produced this output:
Invalid response from https://acme-v01.api.letsencrypt.org/acme/authz/05dt-C4uD9nYj_cFg3QPE8YwAjP93Sdfe0tcM1zyhPM .
Details:
Type: urn:acme:error:connection
Status: 400
Detail: Fetching https://www.nouvellescreches.fr/.well-known/acme-challenge/cTIk77RFBH58jgYlgZcNAFOewtHGgWDba6b_Sg7t4IM: Error getting validation data
My web server is (include version): 46.105.28.234
[Plesk Onyx 17.8.11 update nĀ° 48]
The operating system my web server runs on is (include version): Ubuntu 14.04.6 LTSā¬
My hosting provider, if applicable, is: OVH
I can login to a root shell on my machine (yes or no, or I donāt know): yes
Iām using a control panel to manage my site (no, or provide the name and version of the control panel): plesk
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if youāre using Certbot): command not foundā¦
Thanks for your time and help, as every body itās not the best time for having this issue.
TIA,
Regards,
Erwan
Hi @zedude22
you have ipv4- and ipv6 - addresses ( https://check-your-website.server-daten.de/?q=nouvellescreches.fr ):
Host
T
IP-Address
is auth.
ā Queries
ā Timeout
nouvellescreches.fr
A
46.105.28.234
yes
1
0
AAAA
2001:41d0:401:3000::5de8
yes
www.nouvellescreches.fr
A
46.105.28.234
yes
1
0
AAAA
2001:41d0:401:3000::5de8
yes
But your ipv6 doesn't answer, there are only timeouts:
Is your ipv6 configured?
PS: Letsencrypt prefers ipv6, so this is critical.
More specifically, connecting to http://www.nouvellescreches.fr/ or https://www.nouvellescreches.fr/ using IPv6 results in a āNo route to hostā error.
Thank you Juergen, do you know how can I configure IPV6 for my domain?
I will check with my provider while it seems to be well configured. My domain point to the IPV6 adress transmitted by my vps providerā¦
Well, itās not workingā¦
It could be that the IP address is incorrect (a typo?), or the OSās networking configuration is incorrect, or thereās a firewall blocking everything, or an outage, or something elseā¦
I'll check with my provider and update the ticket. But thanks a lot.
Regards,
Erwan
Perhaps remove the ipv6 address, then create a new certificate and install it.
So you can replace your expired certificate:
CN=nouvellescreches.fr
05.01.2019
05.04.2019
7 days expired
nouvellescreches.fr, www.nouvellescreches.fr - 2 entries
Then try to fix your ipv6 - without a new dns entry. You can check your ipv6 directly ( https://check-your-website.server-daten.de/?q=2001%3A41d0%3A401%3A3000%3A%3A5de8 ).
If that works, then add the new dns entry.
So your website should work and doesn't use a not working dns entry.
Hi @JuergenAuer ,
What happened was I have a IPV6 address declared on my domain and not configured on my server.
I removed the IPV6 adresse from my domain and I managed to get a certificate. I will have to configure an IPV6 for my server and then add the address to my domain. But for now it works and itās not under pressure. Thanks a lot for your help. The topic is closed for me.
1 Like
system
Closed
May 12, 2019, 1:59pm
10
This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.