Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
My domain is: *.hostland.ru
I ran this command:
acme.sh/acme.sh --issue --force -d ‘*.hostland.ru’ --dns --yes-I-know-dns-manual-mode-enough-go-ahead-please --debug --output-insecure
It produced this output:
[Tue Sep 24 11:08:15 MSK 2019] Lets find script dir.
[Tue Sep 24 11:08:15 MSK 2019] SCRIPT=’/home/michael/acme.sh/acme.sh’
[Tue Sep 24 11:08:15 MSK 2019] _script=’/home/michael/acme.sh/acme.sh’
[Tue Sep 24 11:08:15 MSK 2019] _script_home=’/home/michael/acme.sh’
[Tue Sep 24 11:08:15 MSK 2019] Using default home:/root/.acme.sh
[Tue Sep 24 11:08:15 MSK 2019] Using config home:/root/.acme.sh
v2.8.3
[Tue Sep 24 11:08:15 MSK 2019] Running cmd: issue
[Tue Sep 24 11:08:15 MSK 2019] _main_domain=’.hostland.ru’
[Tue Sep 24 11:08:15 MSK 2019] _alt_domains=‘no’
[Tue Sep 24 11:08:15 MSK 2019] Using config home:/root/.acme.sh
[Tue Sep 24 11:08:15 MSK 2019] ACME_DIRECTORY=‘https://acme-v02.api.letsencrypt.org/directory’
[Tue Sep 24 11:08:15 MSK 2019] DOMAIN_PATH=’/root/.acme.sh/.hostland.ru’
[Tue Sep 24 11:08:15 MSK 2019] Using ACME_DIRECTORY: https://acme-v02.api.letsencrypt.org/directory
[Tue Sep 24 11:08:15 MSK 2019] _init api for server: https://acme-v02.api.letsencrypt.org/directory
[Tue Sep 24 11:08:15 MSK 2019] GET
[Tue Sep 24 11:08:15 MSK 2019] url=‘https://acme-v02.api.letsencrypt.org/directory’
[Tue Sep 24 11:08:15 MSK 2019] timeout=
[Tue Sep 24 11:08:15 MSK 2019] _CURL=‘curl -L --silent --dump-header /root/.acme.sh/http.header -g ’
[Tue Sep 24 11:08:16 MSK 2019] ret=‘0’
[Tue Sep 24 11:08:16 MSK 2019] ACME_KEY_CHANGE=‘https://acme-v02.api.letsencrypt.org/acme/key-change’
[Tue Sep 24 11:08:16 MSK 2019] ACME_NEW_AUTHZ
[Tue Sep 24 11:08:16 MSK 2019] ACME_NEW_ORDER=‘https://acme-v02.api.letsencrypt.org/acme/new-order’
[Tue Sep 24 11:08:16 MSK 2019] ACME_NEW_ACCOUNT=‘https://acme-v02.api.letsencrypt.org/acme/new-acct’
[Tue Sep 24 11:08:16 MSK 2019] ACME_REVOKE_CERT=‘https://acme-v02.api.letsencrypt.org/acme/revoke-cert’
[Tue Sep 24 11:08:16 MSK 2019] ACME_AGREEMENT=‘https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf’
[Tue Sep 24 11:08:16 MSK 2019] ACME_NEW_NONCE=‘https://acme-v02.api.letsencrypt.org/acme/new-nonce’
[Tue Sep 24 11:08:16 MSK 2019] ACME_VERSION=‘2’
[Tue Sep 24 11:08:16 MSK 2019] Le_NextRenewTime
[Tue Sep 24 11:08:16 MSK 2019] _on_before_issue
[Tue Sep 24 11:08:16 MSK 2019] _chk_main_domain=’.hostland.ru’
[Tue Sep 24 11:08:16 MSK 2019] _chk_alt_domains
[Tue Sep 24 11:08:16 MSK 2019] Le_LocalAddress
[Tue Sep 24 11:08:16 MSK 2019] d=’.hostland.ru’
[Tue Sep 24 11:08:16 MSK 2019] Check for domain=’.hostland.ru’
[Tue Sep 24 11:08:16 MSK 2019] _currentRoot=‘dns’
[Tue Sep 24 11:08:16 MSK 2019] d
[Tue Sep 24 11:08:16 MSK 2019] _saved_account_key_hash is not changed, skip register account.
[Tue Sep 24 11:08:16 MSK 2019] Read key length:
[Tue Sep 24 11:08:16 MSK 2019] _createcsr
[Tue Sep 24 11:08:16 MSK 2019] Single domain=’.hostland.ru’
[Tue Sep 24 11:08:16 MSK 2019] Getting domain auth token for each domain
[Tue Sep 24 11:08:16 MSK 2019] d
[Tue Sep 24 11:08:16 MSK 2019] url=‘https://acme-v02.api.letsencrypt.org/acme/new-order’
[Tue Sep 24 11:08:16 MSK 2019] payload=’{“identifiers”: [{“type”:“dns”,“value”:"*.hostland.ru"}]}’
[Tue Sep 24 11:08:16 MSK 2019] RSA key
[Tue Sep 24 11:08:16 MSK 2019] HEAD
[Tue Sep 24 11:08:16 MSK 2019] _post_url=‘https://acme-v02.api.letsencrypt.org/acme/new-nonce’
[Tue Sep 24 11:08:16 MSK 2019] _CURL='curl -L --silent --dump-header /root/.acme.sh/http.header -g ’
[root@serv3 ~]# ps aux | grep curl
root 2449 0.0 0.0 188160 10348 pts/2 S+ 11:08 0:00 curl -L --silent --dump-header /root/.acme.sh/http.header -g --user-agent acme.sh/2.8.3 (https://github.com/Neilpang/acme.sh) -X HEAD -H Content-Type: application/jose+json -H -H -H -H -H --data https://acme-v02.api.letsencrypt.org/acme/new-nonce
root 7280 0.0 0.0 103324 1988 pts/3 S+ 11:13 0:00 grep curl
[root@serv3 ~]# strace -p 2449
Process 2449 attached - interrupt to quit
restart_syscall(<… resuming interrupted call …>) = 0
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 0) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 1000) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 0) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 1000) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 0) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 1000) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 0) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 1000) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 0) = 0 (Timeout)
poll([{fd=3, events=POLLIN|POLLPRI|POLLRDNORM|POLLRDBAND}], 1, 1000^C <unfinished …>
My web server is (include version):
nginx
The operating system my web server runs on is (include version):
[root@serv3 ~]# uname -a
Linux serv3.hostland.ru 4.9.130-11.el6.x86_64 #1 SMP Tue Oct 2 17:19:17 MSK 2018 x86_64 x86_64 x86_64 GNU/Linux
My hosting provider, if applicable, is:
Hostland LTD Russia
I can login to a root shell on my machine (yes or no, or I don’t know):
yes
I’m using a control panel to manage my site (no, or provide the name and version of the control panel):
no
The version of my client is (e.g. output of certbot --version
or certbot-auto --version
if you’re using Certbot):
[root@serv3 ~]# curl --version
curl 7.19.7 (x86_64-redhat-linux-gnu) libcurl/7.19.7 NSS/3.27.1 zlib/1.2.3 libidn/1.18 libssh2/1.4.2
Protocols: tftp ftp telnet dict ldap ldaps http file https ftps scp sftp
Features: GSS-Negotiate IDN IPv6 Largefile NTLM SSL libz