# Need help first time configuring Let's Encrypt

**URL:** <https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609>\
**Category:** Help\
**Created:** [June 12, 2020, 7:32pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609 "2020-06-12T19:32:18Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![Eugenia20259478](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/eugenia20259478/32/28907_2.png) [@Eugenia20259478](https://community.letsencrypt.org/u/Eugenia20259478)\
**Post date:** [June 12, 2020, 7:32pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/1 "2020-06-12T19:32:18Z")

</div>

Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. [https://crt.sh/?q=example.com](https://crt.sh/?q=example.com)), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.

SUBDOMAINS entered, processing  
Only subdomains, no URL in cert  
Sub-domains processed are: -d kiwix.lucadent.ro -d nextcloud.lucadent.ro -d pass.lucadent.ro -d server.lucadent.ro  
E-mail address entered: office@lucadent.ro  
http validation is selected  
Generating new certificate  
Saving debug log to /var/log/letsencrypt/letsencrypt.log  
Plugins selected: Authenticator standalone, Installer None  
Obtaining a new certificate  
Performing the following challenges:  
http-01 challenge for kiwix.lucadent.ro  
http-01 challenge for nextcloud.lucadent.ro  
http-01 challenge for pass.lucadent.ro  
http-01 challenge for server.lucadent.ro  
Waiting for verification…  
Challenge failed for domain kiwix.lucadent.ro  
Challenge failed for domain nextcloud.lucadent.ro  
Challenge failed for domain pass.lucadent.ro  
Challenge failed for domain server.lucadent.ro  
http-01 challenge for kiwix.lucadent.ro  
http-01 challenge for nextcloud.lucadent.ro  
http-01 challenge for pass.lucadent.ro  
http-01 challenge for server.lucadent.ro  
Cleaning up challenges  
Some challenges have failed.  
IMPORTANT NOTES:

- The following errors were reported by the server:

Domain: kiwix.lucadent.ro  
Type: unauthorized  
Detail: Invalid response from  
[http://kiwix.lucadent.ro/.well-known/acme-challenge/zfPC3NsoLFJlEk5ggOBdsz2t4p6wsNKIPmTKFAEWE6c](http://kiwix.lucadent.ro/.well-known/acme-challenge/zfPC3NsoLFJlEk5ggOBdsz2t4p6wsNKIPmTKFAEWE6c)  
[90.95.143.143]: “\r\n404 Not  
Found\r\n\r\n

# 404 Not Found
\r\n
* * *
nginx\r\n”

Domain: nextcloud.lucadent.ro  
Type: unauthorized  
Detail: Invalid response from  
[http://nextcloud.lucadent.ro/.well-known/acme-challenge/ZsVbDsHXxldghoEhxhU627vN3dOUSK9DjMua0WraVXo](http://nextcloud.lucadent.ro/.well-known/acme-challenge/ZsVbDsHXxldghoEhxhU627vN3dOUSK9DjMua0WraVXo)  
[90.95.143.143]: “\r\n404 Not  
Found\r\n\r\n

# 404 Not Found
\r\n
* * *
nginx\r\n”

Domain: pass.lucadent.ro  
Type: unauthorized  
Detail: Invalid response from  
[http://pass.lucadent.ro/.well-known/acme-challenge/UO4MKGHb94JLRV-McNRpoybavyq5NofIGlFt\_TaQeOA](http://pass.lucadent.ro/.well-known/acme-challenge/UO4MKGHb94JLRV-McNRpoybavyq5NofIGlFt_TaQeOA)  
[90.95.143.143]: “\r\n404 Not  
Found\r\n\r\n

# 404 Not Found
\r\n
* * *
nginx\r\n”

Domain: server.lucadent.ro  
Type: unauthorized  
Detail: Invalid response from  
[http://server.lucadent.ro/.well-known/acme-challenge/bk-24FEeF1iED-S0xGspeTtbDR7fzPi-p7nIn9B5l2E](http://server.lucadent.ro/.well-known/acme-challenge/bk-24FEeF1iED-S0xGspeTtbDR7fzPi-p7nIn9B5l2E)  
[90.95.143.143]: “\r\n404 Not  
Found\r\n\r\n

# 404 Not Found
\r\n
* * *
nginx\r\n”

To fix these errors, please make sure that your domain name was  
entered correctly and the DNS A/AAAA record(s) for that domain  
contain(s) the right IP address.  
ERROR: Cert does not exist! Please see the validation error above. The issue may be due to incorrect dns or port forwarding settings. Please fix your settings and recreate the container

---

<div class="post-metadata">

**Author:** ![danb35](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/danb35/32/70869_2.png) [@danb35](https://community.letsencrypt.org/u/danb35)\
**Post date:** [June 12, 2020, 10:05pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/2 "2020-06-12T22:05:17Z")

</div>

The combination of this:

> [@Eugenia20259478](#):
>
> Authenticator standalone

and this:

> [@Eugenia20259478](#):
>
> [90.95.143.143]: “\r\n404 Not  
> Found\r\n\r\n

makes me suspect that the machine on which you're running certbot is not the machine that those domain names resolve to. Is it? Because if not, there's your problem.

---

<div class="post-metadata">

**Author:** ![Eugenia20259478](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/eugenia20259478/32/28907_2.png) [@Eugenia20259478](https://community.letsencrypt.org/u/Eugenia20259478)\
**Post date:** [June 13, 2020, 6:49am UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/3 "2020-06-13T06:49:39Z")

</div>

Yes. you are right… those subdomains are on a different server where i have my domain and my host server…i have those subdomains made…cname …redirecting to duckdns…  
how can i fix it?

---

<div class="post-metadata">

**Author:** ![schoen](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/schoen/32/79_2.png) [@schoen](https://community.letsencrypt.org/u/schoen)\
**Post date:** [June 13, 2020, 9:03pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/4 "2020-06-13T21:03:56Z")

</div>

Can you run the Let’s Encrypt client application on the same machine where the certificates will ultimately be used?

---

<div class="post-metadata">

**Author:** ![Eugenia20259478](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/eugenia20259478/32/28907_2.png) [@Eugenia20259478](https://community.letsencrypt.org/u/Eugenia20259478)\
**Post date:** [June 14, 2020, 7:33pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/5 "2020-06-14T19:33:00Z")

</div>

yes… the certificates and let’s encrypt are to an unraid srever

---

<div class="post-metadata">

**Author:** ![schoen](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/schoen/32/79_2.png) [@schoen](https://community.letsencrypt.org/u/schoen)\
**Post date:** [June 15, 2020, 10:28pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/6 "2020-06-15T22:28:24Z")

</div>

Sorry, I didn’t quite understand your answer to my question.

Could you also run a Let’s Encrypt client application on the same server where the subdomains are pointed, instead of only running it on the server that they’re not pointed to?

---

<div class="post-metadata">

**Author:** ![Eugenia20259478](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/eugenia20259478/32/28907_2.png) [@Eugenia20259478](https://community.letsencrypt.org/u/Eugenia20259478)\
**Post date:** [June 16, 2020, 8:22pm UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/7 "2020-06-16T20:22:08Z")

</div>

Hello Schoen. Thank you for helping me… I have a personal server at home where i run let’s encrypt, nextcloud, bitwarden…and i have a domain at a local provider, there i keep my office website. On my domain i have made 3 subsdomains, enter them on my home server let’s encrypt (that is an Unraid System - debian /ubuntu base), i run it on a docker container. when i try to validate everything,i get that error. all i want do is to access my bitwarden and nextcloud outside my local network… for that i try use let’s encrypt and duckdns

---

<div class="post-metadata">

**Author:** ![schoen](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/schoen/32/79_2.png) [@schoen](https://community.letsencrypt.org/u/schoen)\
**Post date:** [June 22, 2020, 5:59am UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/8 "2020-06-22T05:59:31Z")

</div>

Is it possible that the Docker container doesn’t have the relevant permissions to create publicly visible files for the domain control challenges?

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/letsencrypt/original/3X/c/a/ca6c06ea1ea201324bba7048c6841ce60236468d.png) [@system](https://community.letsencrypt.org/u/system)\
**Post date:** [July 22, 2020, 5:59am UTC](https://community.letsencrypt.org/t/need-help-first-time-configuring-lets-encrypt/125609/9 "2020-07-22T05:59:34Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
