I have 72 certificates on a server, and running certbot renew
every 12 hours. Lately, I’ve seen an increase in secondary validation DNS errors: 6 times in the last 2.5 weeks. The domains are using name servers at Cloudflare and Rackspace. None of our other monitored services have triggered alerts, so I suspect Let’s Encrypt’s network has been having issues. Has anyone else seen this?
2020-07-21T00:01:39.803286+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: gieseswany.com
Type: None
Detail: During secondary validation: DNS problem: query timed out
looking up CAA for com
- The following errors were reported by the server:
Domain: menteenbalancecom.alias.strangecode.com
Type: None
Detail: During secondary validation: DNS problem: query timed out
looking up CAA for menteenbalancecom.alias.strangecode.com
Domain: www.contemplarte.org
Type: None
Detail: During secondary validation: DNS problem: query timed out
looking up CAA for www.contemplarte.org
2020-07-25T00:01:40.048264+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: morningthundercafe.com
Type: None
Detail: During secondary validation: No valid IP addresses found
for morningthundercafe.com
- The following errors were reported by the server:
Domain: think-portland.com
Type: None
Detail: During secondary validation: DNS problem: networking error
looking up A for think-portland.com
2020-07-26T00:00:59.365046+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: chicoweb.design
Type: None
Detail: During secondary validation: No valid IP addresses found
for chicoweb.design
Domain: identity-international.com
Type: None
Detail: During secondary validation: DNS problem: networking error
looking up A for identity-international.com
2020-08-02T00:00:58.937809+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: ministry-to-children.com
Type: None
Detail: During secondary validation: No valid IP addresses found
for ministry-to-children.com
Domain: ministry-to-childrencom.alias.strangecode.com
Type: None
Detail: During secondary validation: DNS problem: query timed out
looking up CAA for strangecode.com
2020-08-05T00:00:57.279056+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: kilometerzero.org
Type: None
Detail: During secondary validation: DNS problem: networking error
looking up A for kilometerzero.org
Domain: kilometerzeroorg.alias.strangecode.com
Type: None
Detail: During secondary validation: DNS problem: networking error
looking up A for kilometerzeroorg.alias.strangecode.com
2020-08-07T00:00:59.007494+00:00
2 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: www.frayons.com
Type: None
Detail: During secondary validation: DNS problem: query timed out
looking up CAA for frayons.com
2020-08-08T00:01:09.073189+00:00
1 renew failure(s), 0 parse failure(s)
IMPORTANT NOTES:
- The following errors were reported by the server:
Domain: www.lists.burb.tv
Type: None
Detail: During secondary validation: DNS problem: networking error
looking up A for www.lists.burb.tv