Error with LetsEncrypt request

MarkusM

New member
Joined
Dec 29, 2021
Messages
2
My supporter and I have been trying for hours to fix this and similar messages, we tried all we could find in this forum and web. I used to work until the re-installed after issues with license downgrade.

Help is much appreciate.

Error with LetsEncrypt request​

2021-12-29 06:23
Found wildcard domain name and http challenge type, switching to dns-01 validation.
2021/12/29 11:12:02 [INFO] [kolmok.xyz, *.kolmok.xyz] acme: Obtaining SAN certificate
2021/12/29 11:12:03 [INFO] [*.kolmok.xyz] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/63057517930
2021/12/29 11:12:03 [INFO] [kolmok.xyz] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/63057517940
2021/12/29 11:12:03 [INFO] [*.kolmok.xyz] acme: use dns-01 solver
2021/12/29 11:12:03 [INFO] [kolmok.xyz] acme: Could not find solver for: tls-alpn-01
2021/12/29 11:12:03 [INFO] [kolmok.xyz] acme: Could not find solver for: http-01
2021/12/29 11:12:03 [INFO] [kolmok.xyz] acme: use dns-01 solver
2021/12/29 11:12:03 [INFO] [*.kolmok.xyz] acme: Preparing to solve DNS-01
2021/12/29 11:12:04 [INFO] [*.kolmok.xyz] acme: Trying to solve DNS-01
2021/12/29 11:12:04 [INFO] [*.kolmok.xyz] acme: Checking DNS record propagation using [8.8.8.8:53]
2021/12/29 11:12:34 [INFO] Wait for propagation [timeout: 5m0s, interval: 30s]
2021/12/29 11:12:44 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:13:24 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:14:04 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:14:44 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:15:24 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:16:05 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:16:45 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:17:25 [INFO] [*.kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:17:55 [INFO] [*.kolmok.xyz] acme: Cleaning DNS-01 challenge
2021/12/29 11:17:55 [INFO] [kolmok.xyz] acme: Preparing to solve DNS-01
2021/12/29 11:17:55 [INFO] [kolmok.xyz] acme: Trying to solve DNS-01
2021/12/29 11:17:55 [INFO] [kolmok.xyz] acme: Checking DNS record propagation using [8.8.8.8:53]
2021/12/29 11:18:25 [INFO] Wait for propagation [timeout: 5m0s, interval: 30s]
2021/12/29 11:18:35 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:19:16 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:19:56 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:20:36 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:21:16 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:21:56 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:22:36 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:23:16 [INFO] [kolmok.xyz] acme: Waiting for DNS record propagation.
2021/12/29 11:23:46 [INFO] [kolmok.xyz] acme: Cleaning DNS-01 challenge
2021/12/29 11:23:47 [INFO] retry due to: acme: error: 400 :: POST :: https://acme-v02.api.letsencrypt.org/acme/authz-v3/63057517930 :: urn:ietf:params:acme:error:badNonce :: JWS has an invalid anti-replay nonce: "0102uft9WguhEatR2ml4i_ud2GFyHFomWEQrTxERqYPfLrM"
2021/12/29 11:23:47 [INFO] Deactivating auth: https://acme-v02.api.letsencrypt.org/acme/authz-v3/63057517930
2021/12/29 11:23:47 [INFO] Deactivating auth: https://acme-v02.api.letsencrypt.org/acme/authz-v3/63057517940
2021/12/29 11:23:48 Could not obtain certificates:
error: one or more domains had a problem:
[*.kolmok.xyz] time limit exceeded: last error: read udp 192.168.122.150:42168->135.181.112.89:53: i/o timeout
[kolmok.xyz] time limit exceeded: last error: read udp 192.168.122.150:34842->135.181.112.89:53: i/o timeout
Certificate generation failed.
 
You can try zerossl certificate
Code:
/usr/local/directadmin/custombuild/build update
/usr/local/directadmin/custombuild/build lego
/usr/local/directadmin/custombuild/build letsencrypt
touch /root/.zerossl
/usr/local/directadmin/scripts/letsencrypt.sh request servername.example.net
 
You better not use Google DNS 8.8.8.8 because they have limits to certain requests.
Which could have caused this issue.

So if you run into something kindlike with RBL lookups or zero ssl, change to 1.1.1.1 or something else.
 
Back
Top