I'm trying to see if I can ensure that d03 is the only responder. But d03 is having the main issues right? Perhaps only leave d02 and test there?
d03 hasnt go online at all yet down for now till i finish setting it up was supposed to be line this week. d02 will be only one online give me one second to shut it down
you are the man giffin a+ in my book 
Thanks. I try. 
we are offline in d01
Let me check now... 
On d02 from this point...
sudo certbot certificates
I'm assuming all 3 vms are nginx?
yes all nginx pretty much the same. i set them up from scratch with installs of everything not cloned.
i could do this over discord if you want save time if not here
Here's OK if Ok with you. I'm doing this all from an android phone.
that open acme looks interesting like what I need but looks scary to set up. I should probably go that route. Someone on my site mentioned it too. Would it work with my setup you think?
it's dns based, so yep. 
Did you run this on d02?
sudo certbot certificates
droid@ubuntu-s-1vcpu-1gb-nyc3-02:~$ sudo certbot certificates
[sudo] password for droid:
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Renewal configuration file /etc/letsencrypt/renewal/tipvote.com.conf produced an unexpected error: expected /etc/letsencrypt/live/tipvote.com/cert.pem to be a symlink. Skipping.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Found the following certs:
Certificate Name: tipvote.com-0001
Domains: tipvote.com www.tipvote.com
Expiry Date: 2021-01-03 15:37:04+00:00 (VALID: 87 days)
Certificate Path: /etc/letsencrypt/live/tipvote.com-0001/fullchain.pem
Private Key Path: /etc/letsencrypt/live/tipvote.com-0001/privkey.pem
Certificate Name: tipvote.com-0002
Domains: tipvote.com
Expiry Date: 2021-01-05 15:37:10+00:00 (VALID: 89 days)
Certificate Path: /etc/letsencrypt/live/tipvote.com-0002/fullchain.pem
Private Key Path: /etc/letsencrypt/live/tipvote.com-0002/privkey.pem
Certificate Name: www.tipvote.com
Domains: www.tipvote.com
Expiry Date: 2021-01-05 15:06:08+00:00 (VALID: 89 days)
Certificate Path: /etc/letsencrypt/live/www.tipvote.com/fullchain.pem
Private Key Path: /etc/letsencrypt/live/www.tipvote.com/privkey.pem
The following renewal configurations were invalid:
/etc/letsencrypt/renewal/tipvote.com.conf
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
if you are on a phone i am by my computer almost 24/7 coding and I got notifications set up so we can continue when you are more comfortable
I'm good if you are. If you need to run though at a point let me know. I've got a plan in mind.
i have about 30 mins till I leave for work then go home and code lol exciting life I live!
Let's try this quickly then.
That isn't really necessary for this tiny problem I think. Easy to fix.
No, see my own output: certbot simply won't accept that.
The most important rate limits are a sliding window of one week.
Not sure then. Think I have a plan though.