I tried it. I gave these commands:
[root@ip-172-31-26-6 bruce]# ./certbot-auto --apache
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator apache, Installer apache
No names were found in your configuration files. Please enter in your domain
name(s) (comma and/or space separated) (Enter 'c' to cancel): csstix.com
Cert not yet due for renewal
You have an existing certificate that has exactly the same domains or certificate name you requested and isn't close to expiry.
(ref: /etc/letsencrypt/renewal/csstix.com.conf)
What would you like to do?
1: Attempt to reinstall this existing certificate
2: Renew & replace the cert (limit ~5 per 7 days)
Select the appropriate number [1-2] then [enter] (press 'c' to cancel): 1
Keeping the existing certificate
We were unable to find a vhost with a ServerName or Address of csstix.com.
Which virtual host would you like to choose?
(note: conf files with multiple vhosts are not yet supported)
1: httpd.conf | | | Enabled
2: zendserver_gui.conf | | | Enabled
3: ssl.conf | | HTTPS | Enabled
Select the appropriate number [1-3] then [enter] (press 'c' to cancel): 1
The selected vhost would conflict with other HTTPS VirtualHosts within Apache. Please select another vhost or add ServerNames to your configuration.
VirtualHost not able to be selected.
IMPORTANT NOTES:
- Unable to install the certificate
- Congratulations! Your certificate and chain have been saved at:
/etc/letsencrypt/live/csstix.com/fullchain.pem
Your key file has been saved at:
/etc/letsencrypt/live/csstix.com/privkey.pem
Your cert will expire on 2018-02-06. To obtain a new or tweaked
version of this certificate in the future, simply run certbot-auto
again with the "certonly" option. To non-interactively renew all
of your certificates, run "certbot-auto renew"
Here's the letsencrypt log:
2017-11-08 03:05:51,345:DEBUG:certbot.main:certbot version: 0.19.0
2017-11-08 03:05:51,345:DEBUG:certbot.main:Arguments: ['--apache']
2017-11-08 03:05:51,345:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2017-11-08 03:05:51,361:DEBUG:certbot.log:Root logging level set at 20
2017-11-08 03:05:51,361:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
2017-11-08 03:05:51,362:DEBUG:certbot.plugins.selection:Requested authenticator apache and installer apache
2017-11-08 03:05:51,450:DEBUG:certbot_apache.configurator:Apache version is 2.4.6
2017-11-08 03:05:51,608:DEBUG:certbot.plugins.selection:Single candidate plugin: * apache
Description: Apache Web Server plugin - Beta
Interfaces: IAuthenticator, IInstaller, IPlugin
Entry point: apache = certbot_apache.configurator:ApacheConfigurator
Initialized: <certbot_apache.configurator.ApacheConfigurator object at 0x1023890>
Prep: True
2017-11-08 03:05:51,609:DEBUG:certbot.plugins.selection:Selected authenticator <certbot_apache.configurator.ApacheConfigurator object at 0x1023890> and installer <certbot_apache.configurator.ApacheConfigurator object at 0x1023890>
2017-11-08 03:05:51,609:INFO:certbot.plugins.selection:Plugins selected: Authenticator apache, Installer apache
2017-11-08 03:05:51,613:DEBUG:certbot.main:Picked account: <Account(RegistrationResource(body=Registration(status=None, contact=(u'mailto:bruce@centerstagesoftware.com',), agreement=u'https://letsencrypt.org/documents/LE-SA-v1.1.1-August-1-2016.pdf', key=JWKRSA(key=<ComparableRSAKey(<cryptography.hazmat.backends.openssl.rsa._RSAPublicKey object at 0x1d9f110>)>)), uri=u'https://acme-v01.api.letsencrypt.org/acme/reg/23933527', new_authzr_uri=u'https://acme-v01.api.letsencrypt.org/acme/new-authz', terms_of_service=u'https://letsencrypt.org/documents/LE-SA-v1.1.1-August-1-2016.pdf'), 99fdbbdf40b07bb0c3194537d19ed68a, Meta(creation_host=u'ip-172-31-26-6.us-east-2.compute.internal', creation_dt=datetime.datetime(2017, 11, 8, 2, 19, 32, tzinfo=)))>
2017-11-08 03:05:51,614:DEBUG:acme.client:Sending GET request to https://acme-v01.api.letsencrypt.org/directory.
2017-11-08 03:05:51,617:DEBUG:requests.packages.urllib3.connectionpool:Starting new HTTPS connection (1): acme-v01.api.letsencrypt.org
2017-11-08 03:05:51,888:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 561
2017-11-08 03:05:51,889:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Content-Type: application/json
Content-Length: 561
Replay-Nonce: GSNfv6fhiMivbsoeJwWB4_O0xaV5amHuzejQnW6c82Q
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Wed, 08 Nov 2017 03:05:51 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Wed, 08 Nov 2017 03:05:51 GMT
Connection: keep-alive
{
"AMzTwnKdmuM": "Adding random entries to the directory",
"key-change": "https://acme-v01.api.letsencrypt.org/acme/key-change",
"meta": {
"terms-of-service": "https://letsencrypt.org/documents/LE-SA-v1.1.1-August-1-2016.pdf"
1,1 Top