FEJIDIF, we are exactly at the same point, but ... I just received another IONOS reply redirecting me to this plesk post.

And seem that work's!!!

It's important to make the two steps...

  1. Remove .well-known directory.
  2. Temporary disable the option Permanent SEO-safe 301 redirect from HTTP to HTTPS
  3. Disable custom redirect rules

I think the step 3 (Disable custom redirect rules) is the reason why sometimes (or some domains) the cert renew works only with the step 2 (what you write before).

My .httaccess file (auto generated by prestashop in this example)...

# ~~start~~ Do not remove this comment, Prestashop will keep automatically the code outside this comment when .htaccess will be generated again
# .htaccess automaticaly generated by PrestaShop e-commerce open-source solution
# -

<IfModule mod_rewrite.c>
<IfModule mod_env.c>

RewriteEngine on

RewriteRule . - [E=REWRITEBASE:/]
RewriteRule ^api(?:/(.*))?$ %{ENV:REWRITEBASE}webservice/dispatcher.php?url=$1 [QSA,L]

# AlphaImageLoader for IE and fancybox
RewriteRule ^images_ie/?([^/]+)\.(jpe?g|png|gif)$ js/jquery/plugins/fancybox/images/$1.$2 [L]

AddType application/ .eot
AddType font/ttf .ttf
AddType font/otf .otf
AddType application/font-woff .woff
AddType font/woff2 .woff2
<IfModule mod_headers.c>
	<FilesMatch "\.(ttf|ttc|otf|eot|woff|woff2|svg)$">
		Header set Access-Control-Allow-Origin "*"

    <FilesMatch "\.pdf$">
      Header set Content-Disposition "Attachment"
      Header set X-Content-Type-Options "nosniff"

<Files composer.lock>
    # Apache 2.2
    <IfModule !mod_authz_core.c>
        Order deny,allow
        Deny from all

    # Apache 2.4
    <IfModule mod_authz_core.c>
        Require all denied
#If rewrite mod isn't enabled
ErrorDocument 404 /index.php?controller=404

# ~~end~~ Do not remove this comment, Prestashop will keep automatically the code outside this comment when .htaccess will be generated again

I don't see nothing strange o related to let's encrypt well-know folder.