Standalone expand gives challenge failed

sudo apachectl stop
sudo certbot certonly --standalone --expand -d -d

It produced this output:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator standalone, Installer None
Renewing an existing certificate for and
Performing the following challenges:
http-01 challenge for
Waiting for verification...
Challenge failed for domain
http-01 challenge for
Cleaning up challenges
Some challenges have failed.


gunicorn (version 20.0.4)

cat /etc/os-release
NAME="Oracle Linux Server"

cat /etc/redhat-release
Red Hat Enterprise Linux Server release 7.9 (Maipo)

No. My webserver is behind a public load balancer which already has a certificate generated by certbot. It works. I want to expand my cert and that is what is not working

sudo certbot --version
certbot 1.13.0

Hi @galactic_hitchhiker,

Interestingly, it seems like you have two different servers answering there, maybe behind some kind of load balancer? When I try to connect to your server with curl, it seems to alternate between one machine that says Welcome to Metrics Dashboard and one that says This is Web Server 1, and the two of them seem to be running different server software. If so, I'd guess that that's the reason for the failed challenge—when the Let's Encrypt CA tried to connect to your server to confirm your control over the domain name, it worked sometimes (because sometimes it connected to the machine running certbot --standalone) and failed sometimes (because sometimes it connected to another machine). This could also explain why it failed in secondary rather than primary validation.

OMG! You hit it on the head!
Of course, now I see it. Thanks for the second set of eyes.
I was shutting down Apache but not gunicorn.
My load balancer was still redirecting port 80 traffic to port 5000 after SSL termination and that ended up being handled by the gunicorn server so the certbot could not see it.
Once I stopped gunicorn too, everything worked like a charm.

Thank you @schoen

