Unable to renew Certificate

Hi,

When I run this command, certbot renew --dry-run , I am getting this output.



Processing /etc/letsencrypt/renewal/freeost.com.conf


Simulating renewal of an existing certificate for freeost.com and www.freeost.com

Certbot failed to authenticate some domains (authenticator: nginx). The Certificate Authority reported these problems:
Domain: freeost.com
Type: serverInternal
Detail: During secondary validation: Secondary validation RPC failed

Domain: www.freeost.com
Type: serverInternal
Detail: During secondary validation: Secondary validation RPC failed

Hint: The Certificate Authority failed to verify the temporary nginx configuration changes made by Certbot. Ensure the listed domains point to this nginx server and that it is accessible from the internet.

Failed to renew certificate freeost.com with error: Some challenges have failed.

How to fix it?

Digital Ocean is my host. They reported something related to this at, DigitalOcean Status - Let's Encrypt SSL Provisioning

Thanks for your help.

Most likely still related to the "Degraded Performance" currently affecting LE systems. Please see the orange bar at the top of this Community.

You can follow the status of the current issue at Let's Encrypt Status.

It's not wise to "hammer" the LE systems, but if you try again at reasonable intervals, it might suddenly work.

1 Like

Thanks for your reply.

I would like to ask, if this error is only for dry-run ? Will actual renewal work?

Any idea about how much time will this take to fix?

Thanks

Both production and staging were affected.

According to the status page, everything is all good now. It says "Services have stabilized" at 09:39 UTC.

2 Likes