cerbot renew

Processing /etc/letsencrypt/renewal/

Cert is due for renewal, auto-renewing...
Plugins selected: Authenticator webroot, Installer None
Attempting to renew cert ( from /etc/letsencrypt/renewal/ produced an unexpected error: HTTPSConnectionPool(host='', port=443): Max retries exceeded with url: /directory (Caused by SSLError(SSLError("bad handshake: Error([('SSL routines', 'tls_process_server_certificate', 'certificate verify failed')])"))). Skipping.

apache2, php
I'm using a control panel to manage my site (no, or provide the name and version of the control panel): ISPConfig 3

The version of my client is (e.g. output of certbot --version or certbot-auto --version if you're using Certbot): certbot 0.31.0

"certificate verify failed" is not an error I associate with blocked IP addresses. It sounds more like your system doesn't have the ISRG Root X1 root certificate in its root certificate store.


I have debian 10.12 operating system installed.
Tell me how to install this certificate on the server?

You probably need to update the package ca-certificates.


And, @pimnik98, if that doesn't work you might try upgrading to the current snap version of certbot. Your 0.31 version is fairly old


Reading package lists... Done
Building dependency tree
Reading state information... Done
ca-certificates is already the newest version (20200601~deb10u2).
0 upgraded, 0 newly installed, 0 to remove and 8 not upgraded.