Free Let's Encrypt certificates error: domain was skipped due to unreachable

euroG

Verified User
Joined
Mar 22, 2018
Messages
15
AlmaLinux Server Release 8.9, DirectAdmin 1.700, OpenLiteSpeed

We have a problem renewing free Let's Encrypt certificates for at least 3 domains:

domain.it was skipped due to unreachable http://domain.it/.well-known/acme-challenge/letsencrypt_2c33e1e015043ea836ed19cbea6c84bd file.
www.domain.it was skipped due to unreachable http://www.domain.it/.well-known/acme-challenge/letsencrypt_73c6041f5c23cccf9cc9318198529632 file.
No domains pointing to this server to generate the certificate for.


The domains have been around for a long time, they are visible and point to the server, they already have free Let's Encrypt certificates, they have not made any changes in the applications in recent months.

The .htaccess file doesn't block the display of folders/files if I create them manually in the webroot:

/.well-known/acme-challenge/letsencrypt_73c6041f5c23cccf9cc9318198529632.txt

the file is visible correctly.

Two out of three domains do not have the IPV6 record in the zone.
I did dozens of tests to see if there were any communication problems between my server and let's encrypt or something else but everything came back negative.

I regenerated the server certificate, on the domain that supports the server without errors but I can't renew/regenerate the certificates of the individual hosts.

Thank you
Gabriella
 
Hello,



That's the error you should address

Thanks for the reply.
As I mentioned, all 3 domains point to the server correctly, are visible, and already have a Let's Encrypt certificate created in February.

All domains have external nameserves from 3 different providers (Aruba, Register.it and Cloudflare)

We also tried disabling the firewall
 
Last edited:
If directadmin reports the error, then domains are not accessible over public DNS resolvers (unless your ISP or government blocks Google's and/or CloudFlare's DNS resolvers). If you need any further assistance you will need to show your real domain names either publicly or privately.
 
Back
Top