[root@voar12a certbot]# ./certbot-auto certonly --webroot -w /adfa/domains/voar12a/www/root -d consolidatedshoe.com
Output of the above command::
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Obtaining a new certificate
Performing the following challenges:
http-01 challenge for consolidatedshoe.com
Using the webroot path /adfa/domains/voar12a/www/root for all unmatched domains.
Waiting for verification…
Cleaning up challenges
Failed authorization procedure. consolidatedshoe.com (http-01): urn:acme:error:connection :: The server could not connect to the client to verify the domain :: Could not connect to consolidatedshoe.com
To fix these errors, please make sure that your domain name was
entered correctly and the DNS A record(s) for that domain
contain(s) the right IP address. Additionally, please check that
your computer has a publicly routable IP address and that no
firewalls are preventing the server from communicating with the
client. If you’re using the webroot plugin, you should also verify
that you are serving files from the webroot path you provided
Please provide the resolution. Need to implement on Production.
I am assuming you are wanting to work LetsEcnrypt into a Oracle EBS application?
–> Yes because oracle charge for CA. where as LetsEncrypt provide the certificate for free and it is widely used by all.
b) [root@oar12apc certbot]# ls
certbot-auto
[root@oar12apc certbot]# chmod a+x certbot-auto (given the permissions)
[root@oar12apc certbot]# ll
total 48
-rwxr-xr-x. 1 root root 46789 Feb 7 18:15 certbot-auto
c) [root@oar12apc certbot]# ./certbot-auto
Bootstrapping dependencies for RedHat-based OSes…
yum is /usr/bin/yum
Loaded plugins: amazon-id, rhui-lb, search-disabled-repos
Repodata is over 2 weeks old. Install yum-cron? Or run: yum makecache fast
rhui-REGION-client-config-server-7 | 2.9 kB 00:00
rhui-REGION-rhel-server-extras | 3.4 kB 00:00
…
…installed the RPM’s (packages)
…verified, upgraded, installed the dependencies
…
Installing Python packages…
Installation succeeded.
Saving debug log to /var/log/letsencrypt/letsencrypt.log Failed to find apachectl in PATH: /usr/lib64/qt-3.3/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin
Certbot doesn’t know how to automatically configure the web server on this system. However, it can still get a certificate for you. Please run “certbot-auto certonly” to do so. You’ll need to manually configure your web server to use the resulting certificate
d) [root@voar12a certbot]# ./certbot-auto certonly --webroot -w /adfa/domains/voar12a/www/root -d consolidatedshoe.com
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Obtaining a new certificate
Performing the following challenges:
http-01 challenge for consolidatedshoe.com
Using the webroot path /adfa/domains/voar12a/www/root for all unmatched domains.
Waiting for verification…
Cleaning up challenges
Failed authorization procedure. consolidatedshoe.com (http-01): urn:acme:error:connection :: The server could not connect to the client to verify the domain :: Could not connect to consolidatedshoe.com
To fix these errors, please make sure that your domain name was
entered correctly and the DNS A record(s) for that domain
contain(s) the right IP address. Additionally, please check that
your computer has a publicly routable IP address and that no
firewalls are preventing the server from communicating with the
client. If you’re using the webroot plugin, you should also verify
that you are serving files from the webroot path you provided.
–> ./certbot-auto certonly --webroot -w /adfa/domains/voar12a/www/root -d consolidatedshoe.com
/adfa/domains/voar12a/www/root – i created this directory structure. And got .Well-Known directory with empty got created.
As of now i am facing the above issue to get the certificate.