Lost of cert.pem after a renewal - logical links modified

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

My domain is:

I ran this command:

It produced this output:

My web server is (include version):

The operating system my web server runs on is (include version):

My hosting provider, if applicable, is:

I can login to a root shell on my machine (yes or no, or I don't know):

I'm using a control panel to manage my site (no, or provide the name and version of the control panel):

The version of my client is (e.g. output of `certbot --version` or `certbot-auto --version` if you're using Certbot):






the renewal work this morning




(root@ns370713) (/etc/letsencrypt/live/atk.lu-0002) $//opt/eff.org/certbot/venv/bin/certbot certonly --apache --cert-name atk.lu -w /home/www/atk -d atk.lu,www.atk.lu,autotracking.be,www.autotracking.be,autotracking.eu,www.autotracking.eu -w /home/www/vigihd -d vigihd.com,www.vigihd.com -w /home/www/dsc -d dsc-security.be,www.dsc-security.be,dsc-security.com,www.dsc-security.com -w /home/www/atkOktopus -d oktopus.autotracking.eu -w /home/www/personalassist -d personalassist.eu,www.personalassist.eu -w /home/www/scsa -d sc-sa.com,www.sc-sa.com,securitycompanysa.com,www.securitycompanysa.com -w /home/www/shop-security -d shop-security.eu,www.shop-security.eu -w /home/www/eshop_atk -d shop.autotracking.eu -w /home/www/atkprocare -d www.atkprocare.com,atkprocare.com,www.atkconnectassist.com,atkconnectassist.com,www.proconnectassist.com,proconnectassist.com,www.procarewatch.com,procarewatch.com
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator apache, Installer apache

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
You are updating certificate atk.lu to include new domain(s):
+ atkconnectassist.com
+ atkprocare.com
+ autotracking.be
+ dsc-security.be
+ dsc-security.com
+ oktopus.autotracking.eu
+ personalassist.eu
+ procarewatch.com
+ proconnectassist.com
+ sc-sa.com
+ securitycompanysa.com
+ shop-security.eu
+ shop.autotracking.eu
+ vigihd.com
+ www.atk.lu
+ www.atkconnectassist.com
+ www.atkprocare.com
+ www.autotracking.be
+ www.autotracking.eu
+ www.dsc-security.be
+ www.dsc-security.com
+ www.personalassist.eu
+ www.procarewatch.com
+ www.proconnectassist.com
+ www.sc-sa.com
+ www.securitycompanysa.com
+ www.shop-security.eu
+ www.vigihd.com

You are also removing previously included domain(s):
(None)

Did you intend to make this change?
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
(U)pdate cert/(C)ancel: u
(U)pdate cert/(C)ancel: U
Renewing an existing certificate
Performing the following challenges:
http-01 challenge for atk.lu
http-01 challenge for atkconnectassist.com
http-01 challenge for atkprocare.com
http-01 challenge for dsc-security.be
http-01 challenge for dsc-security.com
http-01 challenge for oktopus.autotracking.eu
http-01 challenge for personalassist.eu
http-01 challenge for procarewatch.com
http-01 challenge for proconnectassist.com
http-01 challenge for sc-sa.com
http-01 challenge for securitycompanysa.com
http-01 challenge for shop.autotracking.eu
http-01 challenge for vigihd.com
http-01 challenge for www.atk.lu
http-01 challenge for www.atkconnectassist.com
http-01 challenge for www.atkprocare.com
http-01 challenge for www.autotracking.be
http-01 challenge for www.autotracking.eu
http-01 challenge for www.dsc-security.be
http-01 challenge for www.personalassist.eu
http-01 challenge for www.procarewatch.com
http-01 challenge for www.proconnectassist.com
http-01 challenge for www.sc-sa.com
http-01 challenge for www.securitycompanysa.com
http-01 challenge for www.shop-security.eu
http-01 challenge for www.vigihd.com
http-01 challenge for autotracking.be
http-01 challenge for autotracking.eu
http-01 challenge for shop-security.eu
http-01 challenge for www.dsc-security.com
Waiting for verification...
Cleaning up challenges

**important notes:**
 - Congratulations! Your certificate and chain have been saved at:
   /etc/letsencrypt/live/atk.lu/fullchain.pem
   Your key file has been saved at:
   /etc/letsencrypt/live/atk.lu/privkey.pem
   Your cert will expire on 2022-07-20. To obtain a new or tweaked
   version of this certificate in the future, simply run certbot
   again. To non-interactively renew *all* of your certificates, run
   "certbot renew"
 - If you like Certbot, please consider supporting our work by:

   Donating to ISRG / Let's Encrypt:   https://letsencrypt.org/donate
   Donating to EFF:                    https://eff.org/donate-le




Listinf of files i see logical links




(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ls -al
total 36
drwxr-xr-x 2 root root 4096 mai    2 09:24 .
drwx------ 6 root root 4096 mars  28 19:21 ..
lrwxrwxrwx 1 root root   47 mai    2 09:24 cert.pem -> //etc/letsencrypt/archive/atk.lu-0002/cert4.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ls -i
915744 cert.pem        915743 chain.pem         915742 fullchain.pem         914890 privkey.pem         916634 README
917519 cert.pm.backup  917525 chain.pem.backup  917528 fullchain.pem.backup  917523 privkey.pem.backup  917529 README.backup



i want to modify logical links and i lost cert5.pem



(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ln -s cert.pem /etc/letsencrypt/archive/atk.lu/cert5.pem
ln: impossible de créer le lien symbolique « /etc/letsencrypt/archive/atk.lu/cert5.pem »: Le fichier existe
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ln -sf cert.pem /etc/letsencrypt/archive/atk.lu/cert5.pem
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ls -al
total 36


drwxr-xr-x 2 root root 4096 mai    2 09:24 .
drwx------ 6 root root 4096 mars  28 19:21 ..
lrwxrwxrwx 1 root root   47 mai    2 09:24 cert.pem -> //etc/letsencrypt/archive/atk.lu-0002/cert4.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ls -al
total 36
drwxr-xr-x 2 root root 4096 mai    2 09:24 .
drwx------ 6 root root 4096 mars  28 19:21 ..
lrwxrwxrwx 1 root root   47 mai    2 09:24 cert.pem -> //etc/letsencrypt/archive/atk.lu-0002/cert4.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $cd /etc/letsencrypt/archive/atk.lu
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $ls -al
total 48
drwxr-xr-x 2 root root 4096 mai    2 09:49 .
drwx------ 7 root root 4096 avril 20 14:49 ..
-rw-r--r-- 1 root root 1842 avril 20 21:55 cert39.pem
lrwxrwxrwx 1 root root    8 mai    2 09:49 cert5.pem -> cert.pem
-rw-r--r-- 1 root root 3750 avril 20 22:01 chain39.pem
-rw-r--r-- 1 root root 3750 mai    2 09:23 chain5.pem
-rw-r--r-- 1 root root 5592 avril 20 21:56 fullchain39.pem
-rw-r--r-- 1 root root 6348 mai    2 09:23 fullchain5.pem
-rw-r--r-- 1 root root 1704 avril 20 21:57 privkey39.pem
-rw------- 1 root root 1704 avril 21 10:10 privkey4.pem
-rw------- 1 root root 1704 mai    2 09:23 privkey5.pem
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $cd /etc/letsencrypt/live/atk.lu
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $ls
cert.pem  cert.pm.backup  chain.pem  chain.pem.backup  fullchain.pem  fullchain.pem.backup  privkey.pem  privkey.pem.backup  README  README.backup
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $ls -al
total 36
drwxr-xr-x 2 root root 4096 mai    2 09:24 .
drwx------ 6 root root 4096 mars  28 19:21 ..
lrwxrwxrwx 1 root root   47 mai    2 09:24 cert.pem -> //etc/letsencrypt/archive/atk.lu-0002/cert4.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $unlink cert.pem







i think it was no good




(root@ns370713) (/etc/letsencrypt/live/atk.lu) $unlink cert.pem



(root@ns370713) (/etc/letsencrypt/live/atk.lu) $ls -al
total 36
drwxr-xr-x 2 root root 4096 mai    2 09:52 .
drwx------ 6 root root 4096 mars  28 19:21 ..
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $cd /etc/letsencrypt/archive/atk.lu
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $ls
cert39.pem  cert5.pem  chain39.pem  chain5.pem  fullchain39.pem  fullchain5.pem  privkey39.pem  privkey4.pem  privkey5.pem
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $ls -al
total 48
drwxr-xr-x 2 root root 4096 mai    2 09:49 .
drwx------ 7 root root 4096 avril 20 14:49 ..
-rw-r--r-- 1 root root 1842 avril 20 21:55 cert39.pem
lrwxrwxrwx 1 root root    8 mai    2 09:49 cert5.pem -> cert.pem
-rw-r--r-- 1 root root 3750 avril 20 22:01 chain39.pem
-rw-r--r-- 1 root root 3750 mai    2 09:23 chain5.pem
-rw-r--r-- 1 root root 5592 avril 20 21:56 fullchain39.pem
-rw-r--r-- 1 root root 6348 mai    2 09:23 fullchain5.pem
-rw-r--r-- 1 root root 1704 avril 20 21:57 privkey39.pem
-rw------- 1 root root 1704 avril 21 10:10 privkey4.pem
-rw------- 1 root root 1704 mai    2 09:23 privkey5.pem
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $unlink cert5.pem
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $ls
cert39.pem  chain39.pem  chain5.pem  fullchain39.pem  fullchain5.pem  privkey39.pem  privkey4.pem  privkey5.pem


(root@ns370713) (/etc/letsencrypt/live/atk.lu) $ls
cert.pm.backup  chain.pem  chain.pem.backup  fullchain.pem  fullchain.pem.backup  privkey.pem  privkey.pem.backup  README  README.backup
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $unlink chain.pem
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $unlink fullchain.pem
(root@ns370713) (/etc/letsencrypt/live/atk.lu) $unlink privkey.pem



renewal don't work at present



(root@ns370713) (//) $./certbot-auto certonly --cert-name atk.lu -w /home/www/atk -d atk.lu,www.atk.lu,autotracking.be,www.autotracking.be,autotracking.eu,www.autotracking.eu -w /home/www/vigihd -d vigihd.com,www.vigihd.com -w /home/www/delta-epsilon -d delta-epsilon.be,www.delta-epsilon.be,delta-epsilon.eu,www.delta-epsilon.eu,delta-epsilon.fr,www.delta-epsilon.fr -w /home/www/dsc -d dsc-security.be,www.dsc-security.be,dsc-security.com,www.dsc-security.com -w /home/www/atkOktopus -d oktopus.autotracking.eu -w /home/www/watch247 -d 247.autotracking.eu -w /home/www/tektv -d tektv.personalassist.eu -w /home/www/personalassist -d personalassist.eu,www.personalassist.eu -w /home/www/scsa -d sc-sa.com,www.sc-sa.com -w /home/www/securitycompanysa -d securitycompanysa.com,www.securitycompanysa.com -w /home/www/shop-security -d shop-security.eu,www.shop-security.eu,ns370713.ip-91-121-193.eu
bash: ./certbot-auto: Aucun fichier ou dossier de ce type




can you help me ?


I'm going to ask a very simple question, before trying to understand what you pasted:

What were you trying to achieve?

2 Likes

After a renewal i want to point to the good cert5.pem

Now i think i have lost cert5.pem and my logical links are no more functionnal in the live.

The most important is the cert5.pem rebuild if it's possible ?

And after repair certbot on these obsolet server.

You didn't answer.

What, not how.

1 Like

i was trying to renew a blocked certificate because of too much try.

And you succeeded.

After, why did you mess with the files in /etc/letsencrypt?

Nothing good usually comes from that.

I hope you haven't removed a private key.

`in the website domain-ssl.conf file of apache2 i have lines :` 


Include /etc/letsencrypt/options-ssl-apache.conf
SSLCertificateFile /etc/letsencrypt/live/atk.lu/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/atk.lu/privkey.pem
SSLCertificateChainFile /etc/letsencrypt/live/atk.lu/chain.pem



unfortunately the logicals link was



drwxr-xr-x 2 root root 4096 mai    2 09:24 .
drwx------ 6 root root 4096 mars  28 19:21 ..
lrwxrwxrwx 1 root root   47 mai    2 09:24 cert.pem -> //etc/letsencrypt/archive/atk.lu-0002/cert4.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   48 mai    2 09:24 chain.pem -> //etc/letsencrypt/archive/atk.lu-0002/chain4.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   52 mai    2 09:24 fullchain.pem -> //etc/letsencrypt/archive/atk.lu-0002/fullchain4.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   50 mai    2 09:24 privkey.pem -> //etc/letsencrypt/archive/atk.lu-0002/privkey4.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup




i want to point the logical link to


/etc/letsencrypt/archive/atk.lu/cert5.pem
/etc/letsencrypt/archive/atk.lu/chain5.pem
/etc/letsencrypt/archive/atk.lu/fullchain5.pem
/etc/letsencrypt/archive/atk.lu/privkey5.pem




i use only these command




(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ln -s cert.pem /etc/letsencrypt/archive/atk.lu/cert5.pem
ln: impossible de créer le lien symbolique « /etc/letsencrypt/archive/atk.lu/cert5.pem »: Le fichier existe
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ln -sf cert.pem /etc/letsencrypt/archive/atk.lu/cert5.pem





the result after the command



(root@ns370713) (//etc/letsencrypt/live/atk.lu) $cd /etc/letsencrypt/archive/atk.lu
(root@ns370713) (/etc/letsencrypt/archive/atk.lu) $ls -al
total 48
drwxr-xr-x 2 root root 4096 mai    2 09:49 .
drwx------ 7 root root 4096 avril 20 14:49 ..
-rw-r--r-- 1 root root 1842 avril 20 21:55 cert39.pem
lrwxrwxrwx 1 root root    8 mai    2 09:49 **cert5.pem -> cert.pem**
-rw-r--r-- 1 root root 3750 avril 20 22:01 chain39.pem
-rw-r--r-- 1 root root 3750 mai    2 09:23 chain5.pem
-rw-r--r-- 1 root root 5592 avril 20 21:56 fullchain39.pem
-rw-r--r-- 1 root root 6348 mai    2 09:23 fullchain5.pem
-rw-r--r-- 1 root root 1704 avril 20 21:57 privkey39.pem
-rw------- 1 root root 1704 avril 21 10:10 privkey4.pem
-rw------- 1 root root 1704 mai    2 09:23 privkey5.pem



i have always the privkey, chain and fullchain renewed files




`**damn** why i didn't do the full qualified filename` : $ln -s /etc/letsencrypt/live/atk.lu/cert.pem /etc/letsencrypt/archive/atk.lu/cert5.pem

You should edit the Apache config instead of messing up the symlinks.

Try recovering with sudo certbot update_symlinks

And know that you can repeat these lines several times, pointing to different certificates:

SSLCertificateFile /etc/letsencrypt/live/atk.lu/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/atk.lu/privkey.pem
SSLCertificateChainFile /etc/letsencrypt/live/atk.lu/chain.pem

SSLCertificateFile /etc/letsencrypt/live/other/cert.pem
SSLCertificateKeyFile /etc/letsencrypt/live/other/privkey.pem
SSLCertificateChainFile /etc/letsencrypt/live/other/chain.pem
1 Like

this result


(root@ns370713) (//) $//opt/eff.org/certbot/venv/bin/certbot update_symlinks
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Expected /etc/letsencrypt/live/atk.lu/cert.pem to be a symlink


var log


(root@ns370713) (/etc/letsencrypt/live/atk.lu) $cat //var/log/letsencrypt/letsencrypt.log
2022-05-02 15:33:20,888:DEBUG:certbot.main:certbot version: 0.30.2
2022-05-02 15:33:20,891:DEBUG:certbot.main:Arguments:
2022-05-02 15:33:20,891:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2022-05-02 15:33:21,092:DEBUG:certbot.log:Root logging level set at 20
2022-05-02 15:33:21,095:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
2022-05-02 15:33:21,144:DEBUG:certbot.log:Exiting abnormally:
Traceback (most recent call last):
File "//opt/eff.org/certbot/venv/bin/certbot", line 11, in
sys.exit(main())
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/main.py", line 1364, in main
return config.func(config, plugins)
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/main.py", line 987, in update_symlinks
cert_manager.update_live_symlinks(config)
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/cert_manager.py", line 40, in update_live_symlinks
storage.RenewableCert(renewal_file, config, update_symlinks=True)
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/storage.py", line 460, in init
self._update_symlinks()
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/storage.py", line 530, in _update_symlinks
previous_link = get_link_target(link)
File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/storage.py", line 213, in get_link_target
"Expected {0} to be a symlink".format(link))
CertStorageError: Expected /etc/letsencrypt/live/atk.lu/cert.pem to be a symlink

Please don't use ALL CAPS in your regular sentences. It comes across as SCREAMING on the internet. Thank you.

2 Likes

It looks like your folders are a mess. Your /live/atk.lu has symlinks to the /archive/atk.lu-0002 folders. That should not be. It looks like you created a duplicate certificate and then manually symlinked to the wrong folder. You should never need to update the symlinks manually.

What does this command show:

//opt/eff.org/certbot/venv/bin/certbot certificates
2 Likes

Thanks Osiris,

is it better of the CAPS in the log i had do. For all logs i have paste it's an obligation i do the change too ?

1 Like

MikeMcQ
it's the result



(root@ns370713) (//) $//opt/eff.org/certbot/venv/bin/certbot certificates
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Renewal configuration file /etc/letsencrypt/renewal/atk.lu.conf produced an unexpected error: expected /etc/letsencrypt/live/atk.lu/cert.pem to be a symlink. Skipping.

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Found the following certs:
  Certificate Name: atk.lu-0001
    Domains: atk.lu autotracking.eu
    Expiry Date: 2022-06-26 16:22:12+00:00 (VALID: 55 days)
    Certificate Path: /etc/letsencrypt/live/atk.lu-0001/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/atk.lu-0001/privkey.pem
  Certificate Name: www.dsc-security.be
    Domains: www.dsc-security.be
    Expiry Date: 2022-07-20 07:11:12+00:00 (VALID: 78 days)
    Certificate Path: /etc/letsencrypt/live/www.dsc-security.be/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/www.dsc-security.be/privkey.pem
  Certificate Name: atk.lu-0002
    Domains: atk.lu autotracking.eu
    Expiry Date: 2022-07-20 07:11:52+00:00 (VALID: 78 days)
    Certificate Path: /etc/letsencrypt/live/atk.lu-0002/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/atk.lu-0002/privkey.pem

The following renewal configurations were invalid:
  /etc/letsencrypt/renewal/atk.lu.conf
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
(root@ns370713) (//) $

I have download cert5.pem from website https://crt.sh/?d=6647662560

wget https://crt.sh/?d=6647662560 

And after mv and cp these new file cert5.pem in archive of atk.lu
I had do a manuel recreation of symlinks

(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ ln -sf /etc/letsencrypt/archive/atk.lu/cert5.pem /etc/letsencrypt/live/atk.lu/cert.pem
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ ln -sf /etc/letsencrypt/archive/atk.lu/chain5.pem /etc/letsencrypt/live/atk.lu/chain.pem
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ ln -sf /etc/letsencrypt/archive/atk.lu/fullchain5.pem /etc/letsencrypt/live/atk.lu/fullchain.pem
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ ln -sf /etc/letsencrypt/archive/atk.lu/privkey5.pem /etc/letsencrypt/live/atk.lu/privkey.pem
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $ls -al
total 36
drwxr-xr-x 2 root root 4096 mai    2 23:42 .
drwx------ 7 root root 4096 mai    2 15:29 ..
lrwxrwxrwx 1 root root   41 mai    2 23:40 cert.pem -> /etc/letsencrypt/archive/atk.lu/cert5.pem
-rw-r--r-- 1 root root 2780 mars  16 09:10 cert.pm.backup
lrwxrwxrwx 1 root root   42 mai    2 23:41 chain.pem -> /etc/letsencrypt/archive/atk.lu/chain5.pem
-rw-r--r-- 1 root root 3750 mars  16 09:11 chain.pem.backup
lrwxrwxrwx 1 root root   46 mai    2 23:41 fullchain.pem -> /etc/letsencrypt/archive/atk.lu/fullchain5.pem
-rw-r--r-- 1 root root 6530 mars  16 09:11 fullchain.pem.backup
lrwxrwxrwx 1 root root   44 mai    2 23:42 privkey.pem -> /etc/letsencrypt/archive/atk.lu/privkey5.pem
-rw-r--r-- 1 root root 1704 mars  16 09:12 privkey.pem.backup
-rw-r--r-- 1 root root  682 juil.  5  2018 README
-rw-r--r-- 1 root root  682 mars  16 09:13 README.backup

J'ai donc ensuite renouvellé la vérif de certificats


(root@ns370713) (//etc/letsencrypt/live/atk.lu) $//opt/eff.org/certbot/venv/bin/certbot certificates
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Renewal configuration file /etc/letsencrypt/renewal/atk.lu.conf produced an unexpected error: fullchain does not match cert + chain for atk.lu!. Skipping.

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Found the following certs:
  Certificate Name: atk.lu-0001
    Domains: atk.lu autotracking.eu
    Expiry Date: 2022-06-26 16:22:12+00:00 (VALID: 54 days)
    Certificate Path: /etc/letsencrypt/live/atk.lu-0001/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/atk.lu-0001/privkey.pem
  Certificate Name: www.dsc-security.be
    Domains: www.dsc-security.be
    Expiry Date: 2022-07-20 07:11:12+00:00 (VALID: 78 days)
    Certificate Path: /etc/letsencrypt/live/www.dsc-security.be/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/www.dsc-security.be/privkey.pem
  Certificate Name: atk.lu-0002
    Domains: atk.lu autotracking.eu
    Expiry Date: 2022-07-20 07:11:52+00:00 (VALID: 78 days)
    Certificate Path: /etc/letsencrypt/live/atk.lu-0002/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/atk.lu-0002/privkey.pem

The following renewal configurations were invalid:
  /etc/letsencrypt/renewal/atk.lu.conf
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -


And this file atk.lu.conf invalid what is the content

(root@ns370713) (//etc/letsencrypt/renewal) $cat atk.lu.conf
# renew_before_expiry = 30 days
version = 0.30.2
archive_dir = /etc/letsencrypt/archive/atk.lu
cert = /etc/letsencrypt/live/atk.lu/cert.pem
privkey = /etc/letsencrypt/live/atk.lu/privkey.pem
chain = /etc/letsencrypt/live/atk.lu/chain.pem
fullchain = /etc/letsencrypt/live/atk.lu/fullchain.pem

# Options used in the renewal process
[renewalparams]
authenticator = apache
account = 8d7e0069197e1cc54c3ade2c1f7c02ea
server = https://acme-v02.api.letsencrypt.org/directory
installer = apache
webroot_path = /home/www/atk, /home/www/vigihd, /home/www/dsc, /home/www/atkOktopus, /home/www/personalassist, /home/www/scsa, /home/www/shop-security, /home/www/eshop_atk, /home/www/atkprocare
[[webroot_map]]
atk.lu = /home/www/atk
www.atk.lu = /home/www/atk
autotracking.be = /home/www/atk
www.autotracking.be = /home/www/atk
autotracking.eu = /home/www/atk
www.autotracking.eu = /home/www/atk
vigihd.com = /home/www/vigihd
www.vigihd.com = /home/www/vigihd
dsc-security.be = /home/www/dsc
www.dsc-security.be = /home/www/dsc
dsc-security.com = /home/www/dsc
www.dsc-security.com = /home/www/dsc
oktopus.autotracking.eu = /home/www/atkOktopus
personalassist.eu = /home/www/personalassist
www.personalassist.eu = /home/www/personalassist
sc-sa.com = /home/www/scsa
www.sc-sa.com = /home/www/scsa
securitycompanysa.com = /home/www/scsa
www.securitycompanysa.com = /home/www/scsa
shop-security.eu = /home/www/shop-security
www.shop-security.eu = /home/www/shop-security
shop.autotracking.eu = /home/www/eshop_atk
www.atkprocare.com = /home/www/atkprocare
atkprocare.com = /home/www/atkprocare
www.atkconnectassist.com = /home/www/atkprocare
atkconnectassist.com = /home/www/atkprocare
www.proconnectassist.com = /home/www/atkprocare
proconnectassist.com = /home/www/atkprocare
www.procarewatch.com = /home/www/atkprocare
procarewatch.com = /home/www/atkprocare
(root@ns370713) (//etc/letsencrypt/renewal) $



/var/log/letsencrypt/letsencrypt.log


(root@ns370713) (//etc/letsencrypt/live/atk.lu) $cat /var/log/letsencrypt/letsencrypt.log
2022-05-03 00:43:49,526:DEBUG:certbot.main:certbot version: 0.30.2
2022-05-03 00:43:49,529:DEBUG:certbot.main:Arguments: []
2022-05-03 00:43:49,529:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2022-05-03 00:43:49,704:DEBUG:certbot.log:Root logging level set at 20
2022-05-03 00:43:49,707:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
2022-05-03 00:43:49,756:WARNING:certbot.cert_manager:Renewal configuration file /etc/letsencrypt/renewal/atk.lu.conf produced an unexpected error: fullchain does not match cert + chain for atk.lu!. Skipping.
2022-05-03 00:43:49,758:DEBUG:certbot.cert_manager:Traceback was:
Traceback (most recent call last):
  File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/cert_manager.py", line 80, in certificates
    crypto_util.verify_renewable_cert(renewal_candidate)
  File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/crypto_util.py", line 224, in verify_renewable_cert
    verify_fullchain(renewable_cert)
  File "/opt/eff.org/certbot/venv/local/lib/python2.7/site-packages/certbot/crypto_util.py", line 310, in verify_fullchain
    raise e
Error: fullchain does not match cert + chain for atk.lu!

2022-05-03 00:43:49,841:DEBUG:certbot.ocsp:Querying OCSP for /etc/letsencrypt/live/atk.lu-0001/cert.pem
2022-05-03 00:43:49,841:DEBUG:certbot.ocsp:openssl ocsp -no_nonce -issuer /etc/letsencrypt/live/atk.lu-0001/chain.pem -cert /etc/letsencrypt/live/atk.lu-0001/cert.pem -url http://r3.o.lencr.org -CAfile /etc/letsencrypt/live/atk.lu-0001/chain.pem -verify_other /etc/letsencrypt/live/atk.lu-0001/chain.pem -trust_other -header Host=r3.o.lencr.org
2022-05-03 00:43:49,947:DEBUG:certbot.ocsp:Querying OCSP for /etc/letsencrypt/live/www.dsc-security.be/cert.pem
2022-05-03 00:43:49,948:DEBUG:certbot.ocsp:openssl ocsp -no_nonce -issuer /etc/letsencrypt/live/www.dsc-security.be/chain.pem -cert /etc/letsencrypt/live/www.dsc-security.be/cert.pem -url http://r3.o.lencr.org -CAfile /etc/letsencrypt/live/www.dsc-security.be/chain.pem -verify_other /etc/letsencrypt/live/www.dsc-security.be/chain.pem -trust_other -header Host=r3.o.lencr.org
2022-05-03 00:43:50,042:DEBUG:certbot.ocsp:Querying OCSP for /etc/letsencrypt/live/atk.lu-0002/cert.pem
2022-05-03 00:43:50,043:DEBUG:certbot.ocsp:openssl ocsp -no_nonce -issuer /etc/letsencrypt/live/atk.lu-0002/chain.pem -cert /etc/letsencrypt/live/atk.lu-0002/cert.pem -url http://r3.o.lencr.org -CAfile /etc/letsencrypt/live/atk.lu-0002/chain.pem -verify_other /etc/letsencrypt/live/atk.lu-0002/chain.pem -trust_other -header Host=r3.o.lencr.org
(root@ns370713) (//etc/letsencrypt/live/atk.lu) $

This is the file backuped


(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $cat cert.pm.backup
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $cat chain.pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

-----BEGIN CERTIFICATE-----
MIIFYDCCBEigAwIBAgIQQAF3ITfU6UK47naqPGQKtzANBgkqhkiG9w0BAQsFADA/
MSQwIgYDVQQKExtEaWdpdGFsIFNpZ25hdHVyZSBUcnVzdCBDby4xFzAVBgNVBAMT
DkRTVCBSb290IENBIFgzMB4XDTIxMDEyMDE5MTQwM1oXDTI0MDkzMDE4MTQwM1ow
TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh
cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwggIiMA0GCSqGSIb3DQEB
AQUAA4ICDwAwggIKAoICAQCt6CRz9BQ385ueK1coHIe+3LffOJCMbjzmV6B493XC
ov71am72AE8o295ohmxEk7axY/0UEmu/H9LqMZshftEzPLpI9d1537O4/xLxIZpL
wYqGcWlKZmZsj348cL+tKSIG8+TA5oCu4kuPt5l+lAOf00eXfJlII1PoOK5PCm+D
LtFJV4yAdLbaL9A4jXsDcCEbdfIwPPqPrt3aY6vrFk/CjhFLfs8L6P+1dy70sntK
4EwSJQxwjQMpoOFTJOwT2e4ZvxCzSow/iaNhUd6shweU9GNx7C7ib1uYgeGJXDR5
bHbvO5BieebbpJovJsXQEOEO3tkQjhb7t/eo98flAgeYjzYIlefiN5YNNnWe+w5y
sR2bvAP5SQXYgd0FtCrWQemsAXaVCg/Y39W9Eh81LygXbNKYwagJZHduRze6zqxZ
Xmidf3LWicUGQSk+WT7dJvUkyRGnWqNMQB9GoZm1pzpRboY7nn1ypxIFeFntPlF4
FQsDj43QLwWyPntKHEtzBRL8xurgUBN8Q5N0s8p0544fAQjQMNRbcTa0B7rBMDBc
SLeCO5imfWCKoqMpgsy6vYMEG6KDA0Gh1gXxG8K28Kh8hjtGqEgqiNx2mna/H2ql
PRmP6zjzZN7IKw0KKP/32+IVQtQi0Cdd4Xn+GOdwiK1O5tmLOsbdJ1Fu/7xk9TND
TwIDAQABo4IBRjCCAUIwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYw
SwYIKwYBBQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vYXBwcy5pZGVudHJ1
c3QuY29tL3Jvb3RzL2RzdHJvb3RjYXgzLnA3YzAfBgNVHSMEGDAWgBTEp7Gkeyxx
+tvhS5B1/8QVYIWJEDBUBgNVHSAETTBLMAgGBmeBDAECATA/BgsrBgEEAYLfEwEB
ATAwMC4GCCsGAQUFBwIBFiJodHRwOi8vY3BzLnJvb3QteDEubGV0c2VuY3J5cHQu
b3JnMDwGA1UdHwQ1MDMwMaAvoC2GK2h0dHA6Ly9jcmwuaWRlbnRydXN0LmNvbS9E
U1RST09UQ0FYM0NSTC5jcmwwHQYDVR0OBBYEFHm0WeZ7tuXkAXOACIjIGlj26Ztu
MA0GCSqGSIb3DQEBCwUAA4IBAQAKcwBslm7/DlLQrt2M51oGrS+o44+/yQoDFVDC
5WxCu2+b9LRPwkSICHXM6webFGJueN7sJ7o5XPWioW5WlHAQU7G75K/QosMrAdSW
9MUgNTP52GE24HGNtLi1qoJFlcDyqSMo59ahy2cI2qBDLKobkx/J3vWraV0T9VuG
WCLKTVXkcGdtwlfFRjlBz4pYg1htmf5X6DYO8A4jqv2Il9DjXA6USbW1FzXSLr9O
he8Y4IWS6wY7bCkjCWDcRQJMEhg76fsO3txE+FiYruq9RUWhiF1myv4Q6W+CyBFC
Dfvp7OOGAN6dEOM4+qR9sdjoSYKEBpsr6GtPAQw4dy753ec5
-----END CERTIFICATE-----
(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $cat fullchain.pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw
TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh
cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw
WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg
RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP
R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx
sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm
NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg
Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG
/kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC
AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB
Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA
FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw
AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw
Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB
gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W
PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl
ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz
CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm
lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4
avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2
yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O
yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids
hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+
HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv
MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX
nLRbwHOoq7hHwg==
-----END CERTIFICATE-----

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

This is the file in atk.lu

(root@ns370713) (/etc/letsencrypt/live/atk.lu) $cat cert.pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

(root@ns370713) (/etc/letsencrypt/live/atk.lu) $cat fullchain.pem
-----BEGIN CERTIFICATE-----
MIIHUTCCBjmgAwIBAgISBCYLmUhxVEZ0xuSqw60cE3BfMA0GCSqGSIb3DQEBCwUA
MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD
EwJSMzAeFw0yMjA1MDIwNjI0MThaFw0yMjA3MzEwNjI0MTdaMBExDzANBgNVBAMT
BmF0ay5sdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKLDA3ppUpQK
JhbvJl5WlxFBLlxw9smuhgrlmcrliAr5Gqlg9mY8D9EdkasM1Q2k44PcSshLRJFo
HOB3kT87BR6JbGc+/nhLYirJYaqhx7tfOgFL6XgFihEVQ2znHmyfXzQ8B44YltDB
vCkIa7egmdGJNfxyPit3JFTWjodpIqqQ4IIZzx8fksgDfYxxzCKaDFn2s/63pzvV
vlGE3hYAxwp4Z5YrqzHKaF2fi4jCe2AzA8ab1UULfsKiYEeQfkbUuH5hUxnhjXXm
DOgW9Zt42GoaXfw8z/ZFnaTcRlGYNcZjWb9fqjASqnCcXEOc4rNtVZzZD/t5UcI8
7yLNZezjYj8CAwEAAaOCBIAwggR8MA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAU
BggrBgEFBQcDAQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUGTjO
E0O9zajtK+g/YA93v0oP3iYwHwYDVR0jBBgwFoAUFC6zF7dYVsuuUAlA5h+vnYsU
wsYwVQYIKwYBBQUHAQEESTBHMCEGCCsGAQUFBzABhhVodHRwOi8vcjMuby5sZW5j
ci5vcmcwIgYIKwYBBQUHMAKGFmh0dHA6Ly9yMy5pLmxlbmNyLm9yZy8wggJQBgNV
HREEggJHMIICQ4IGYXRrLmx1ghRhdGtjb25uZWN0YXNzaXN0LmNvbYIOYXRrcHJv
Y2FyZS5jb22CD2F1dG90cmFja2luZy5iZYIPYXV0b3RyYWNraW5nLmV1gg9kc2Mt
c2VjdXJpdHkuYmWCEGRzYy1zZWN1cml0eS5jb22CF29rdG9wdXMuYXV0b3RyYWNr
aW5nLmV1ghFwZXJzb25hbGFzc2lzdC5ldYIQcHJvY2FyZXdhdGNoLmNvbYIUcHJv
Y29ubmVjdGFzc2lzdC5jb22CCXNjLXNhLmNvbYIVc2VjdXJpdHljb21wYW55c2Eu
Y29tghBzaG9wLXNlY3VyaXR5LmV1ghRzaG9wLmF1dG90cmFja2luZy5ldYIKdmln
aWhkLmNvbYIKd3d3LmF0ay5sdYIYd3d3LmF0a2Nvbm5lY3Rhc3Npc3QuY29tghJ3
d3cuYXRrcHJvY2FyZS5jb22CE3d3dy5hdXRvdHJhY2tpbmcuYmWCE3d3dy5hdXRv
dHJhY2tpbmcuZXWCE3d3dy5kc2Mtc2VjdXJpdHkuYmWCFHd3dy5kc2Mtc2VjdXJp
dHkuY29tghV3d3cucGVyc29uYWxhc3Npc3QuZXWCFHd3dy5wcm9jYXJld2F0Y2gu
Y29tghh3d3cucHJvY29ubmVjdGFzc2lzdC5jb22CDXd3dy5zYy1zYS5jb22CGXd3
dy5zZWN1cml0eWNvbXBhbnlzYS5jb22CFHd3dy5zaG9wLXNlY3VyaXR5LmV1gg53
d3cudmlnaWhkLmNvbTBMBgNVHSAERTBDMAgGBmeBDAECATA3BgsrBgEEAYLfEwEB
ATAoMCYGCCsGAQUFBwIBFhpodHRwOi8vY3BzLmxldHNlbmNyeXB0Lm9yZzCCAQIG
CisGAQQB1nkCBAIEgfMEgfAA7gB1AEHIyrHfIkZKEMahOglCh15OMYsbA+vrS8do
8JBilgb2AAABgIOn37kAAAQDAEYwRAIgC0ElhLSPCl2Eq2mec/UADyf8vKoNqUwf
Dj4c9KUpRKICIGeQVrKDeO3LdHmzHqtpWAyZE/XfKHjbvnT3E7XTUOEcAHUARqVV
63X6kSAwtaKJafTzfREsQXS+/Um4havy/HD+bUcAAAGAg6ff6gAABAMARjBEAiAK
AIHGBob6AKJ9SzgS2ahXxFvwexoS76rzse8Z51i1DQIgSDFq8fD23ZDj0Vg269cp
jke/YRNNcWGBjecLm20NHyQwDQYJKoZIhvcNAQELBQADggEBAHewC33szAHpooAB
mVsVNDxlQ/k5kbuXkeOUkmIxngclIU/Vry9jAzqfIH0tKnicTKOePp8kGBeZiQQm
yzDYkMkoFLYdY3D5U5+OEVdeCZseFxcOH9D1ZUtjPXKwKWqCus3Qekll3amI0Ppx
PMJ8QHHpNAjizJ1D+ZzdskN+uxawfXTVAc61bhkPI9N+oPtg1Rpyq78OlH/4c4Ih
HbnRCLAPJfDv44HYCBABxHf2mEp4AHaNgRalsHo5x0IoJkn7BN/e6qk3YYDntJQp
RLRSIEVp2lXXDx2ftEBdRq6z9n2Hfts6tQkzLxwISlwIOH3aH7F5hI5txizf/rA3
XsIvY8w=
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIFFjCCAv6gAwIBAgIRAJErCErPDBinU/bWLiWnX1owDQYJKoZIhvcNAQELBQAw
TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh
cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjAwOTA0MDAwMDAw
WhcNMjUwOTE1MTYwMDAwWjAyMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3Mg
RW5jcnlwdDELMAkGA1UEAxMCUjMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
AoIBAQC7AhUozPaglNMPEuyNVZLD+ILxmaZ6QoinXSaqtSu5xUyxr45r+XXIo9cP
R5QUVTVXjJ6oojkZ9YI8QqlObvU7wy7bjcCwXPNZOOftz2nwWgsbvsCUJCWH+jdx
sxPnHKzhm+/b5DtFUkWWqcFTzjTIUu61ru2P3mBw4qVUq7ZtDpelQDRrK9O8Zutm
NHz6a4uPVymZ+DAXXbpyb/uBxa3Shlg9F8fnCbvxK/eG3MHacV3URuPMrSXBiLxg
Z3Vms/EY96Jc5lP/Ooi2R6X/ExjqmAl3P51T+c8B5fWmcBcUr2Ok/5mzk53cU6cG
/kiFHaFpriV1uxPMUgP17VGhi9sVAgMBAAGjggEIMIIBBDAOBgNVHQ8BAf8EBAMC
AYYwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMBMBIGA1UdEwEB/wQIMAYB
Af8CAQAwHQYDVR0OBBYEFBQusxe3WFbLrlAJQOYfr52LFMLGMB8GA1UdIwQYMBaA
FHm0WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcw
AoYWaHR0cDovL3gxLmkubGVuY3Iub3JnLzAnBgNVHR8EIDAeMBygGqAYhhZodHRw
Oi8veDEuYy5sZW5jci5vcmcvMCIGA1UdIAQbMBkwCAYGZ4EMAQIBMA0GCysGAQQB
gt8TAQEBMA0GCSqGSIb3DQEBCwUAA4ICAQCFyk5HPqP3hUSFvNVneLKYY611TR6W
PTNlclQtgaDqw+34IL9fzLdwALduO/ZelN7kIJ+m74uyA+eitRY8kc607TkC53wl
ikfmZW4/RvTZ8M6UK+5UzhK8jCdLuMGYL6KvzXGRSgi3yLgjewQtCPkIVz6D2QQz
CkcheAmCJ8MqyJu5zlzyZMjAvnnAT45tRAxekrsu94sQ4egdRCnbWSDtY7kh+BIm
lJNXoB1lBMEKIq4QDUOXoRgffuDghje1WrG9ML+Hbisq/yFOGwXD9RiX8F6sw6W4
avAuvDszue5L3sz85K+EC4Y/wFVDNvZo4TYXao6Z0f+lQKc0t8DQYzk1OXVu8rp2
yJMC6alLbBfODALZvYH7n7do1AZls4I9d1P4jnkDrQoxB3UqQ9hVl3LEKQ73xF1O
yK5GhDDX8oVfGKF5u+decIsH4YaTw7mP3GFxJSqv3+0lUFJoi5Lc5da149p90Ids
hCExroL1+7mryIkXPeFM5TgO9r0rvZaBFOvV2z0gp35Z0+L4WPlbuEjN/lxPFin+
HlUjr8gRsI3qfJOQFy/9rKIJR0Y/8Omwt/8oTWgy1mdeHmmjk7j1nYsvC9JSQ6Zv
MldlTTKB3zhThV1+XWYp6rjd5JW1zbVWEkLNxE7GJThEUG3szgBVGP7pSWTUTsqX
nLRbwHOoq7hHwg==
-----END CERTIFICATE-----

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

(root@ns370713) (/etc/letsencrypt/live/atk.lu) $cat chain.pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

You can leave the contents of the log file as it is. :slight_smile:

Usually, we advice users to put log files and/or commands and their outputs between three backticks (```), the "</>" symbol in the bar at the top of the editor, which would result in the following layout:

example
another example line

This makes these parts of the post clearly different than the regular text, so shouting with caps isn't necessary any longer.

2 Likes

the downloaded file from crt.sh

(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $wget https://crt.sh/?d=6647662560
--2022-05-03 08:48:00--  https://crt.sh/?d=6647662560
Résolution de crt.sh (crt.sh)… 2a0e:ac00:c7:d449::5bc7:d449, 91.199.212.73
Connexion à crt.sh (crt.sh)|2a0e:ac00:c7:d449::5bc7:d449|:443… connecté.
requête HTTP transmise, en attente de la réponse… 200 OK
Taille : 2273 (2,2K) [application/pkix-cert]
Sauvegarde en : « index.html?d=6647662560 »

index.html?d=6647662560                             100%[==================================================================================================================>]   2,22K  --.-KB/s   ds 0s

2022-05-03 08:48:01 (15,0 MB/s) — « index.html?d=6647662560 » sauvegardé [2273/2273]

(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $ls
cert.pem  cert.pm.backup  chain.pem  chain.pem.backup  fullchain.pem  fullchain.pem.backup  index.html?d=6647662560  privkey.pem  privkey.pem.backup  README  README.backup
(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $cat index.html\?d\=6647662560
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
(root@ns370713) (/etc/letsencrypt/live/atk.lu.backup02052022) $

This is your latest best certificate for atk.lu and autotracking.eu :

But, your Apache config still refers to the older cert. Instead of manually changing the symlinks for the old cert you should change your Apache conf to refer to the atk.lu-0002 folder instead. Once you have Apache working with those use the certbot delete command to remove the two certs you no longer use (atk and atk-0001).

2 Likes

The true problem was apache2 don't start because letsencrypt modify .conf of site with a deprecated value "SSLCertificateChainFile " After a coment on these line and a good reference of LN files. All is Working.
Thanks to all for your help.

2 Likes

It is deprecated but now that you removed it you should use the fullchain.pem file instead of cert.pem for the SSLCertificateFile. Your atk.lu site is not sending the intermediate chain so may not work on certain browser / clients anymore.

4 Likes

It's deprecated for apache 2.4, yes. For 2.2 it was the only way.

3 Likes