If Let's Encrypt failed, it seems it does not auto-retry next day

ccto

Verified User
Joined
Feb 24, 2005
Messages
290
Location
Hong Kong
Hello,

For existing Let's Encrypt certificate, it shall try to renew the SSL by itself 30 days before SSL expiry.
However, it seems if the renewal process encountered some problem, it did not retry next day.

For example -

Code:
2023/07/26 00:10:24 [INFO] [xxxxxxxxxx.com, www.xxxxxxxxxx.com] acme: Obtaining SAN certificate
2023/07/26 00:10:25 [INFO] [xxxxxxxxxx.com] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/248899xxxxxx
2023/07/26 00:10:25 [INFO] [www.xxxxxxxxxx.com] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/248899xxxxx
2023/07/26 00:10:25 [INFO] [xxxxxxxxxx.com] acme: Could not find solver for: tls-alpn-01
2023/07/26 00:10:25 [INFO] [xxxxxxxxxx.com] acme: use http-01 solver
2023/07/26 00:10:25 [INFO] [www.xxxxxxxxxx.com] acme: Could not find solver for: tls-alpn-01
2023/07/26 00:10:25 [INFO] [www.xxxxxxxxxx.com] acme: use http-01 solver
2023/07/26 00:10:25 [INFO] [xxxxxxxxxx.com] acme: Trying to solve HTTP-01
2023/07/26 00:10:30 [INFO] [xxxxxxxxxx.com] The server validated our request
2023/07/26 00:10:30 [INFO] [www.xxxxxxxxxx.com] acme: Trying to solve HTTP-01
2023/07/26 00:10:40 [INFO] [www.xxxxxxxxxx.com] The server validated our request
2023/07/26 00:10:40 [INFO] [xxxxxxxxxx.com, www.xxxxxxxxxx.com] acme: Validations succeeded; requesting certificates
2023/07/26 00:10:40 Could not obtain certificates:
error: one or more domains had a problem:
[xxxxxxxxxx.com] acme: error: 0 :: POST :: https://acme-v02.api.letsencrypt.org/acme/finalize/10256xxxx/19725120xxxx :: urn:ietf:params:acme:error:rateLimited :: Service busy; retry later.
[www.xxxxxxxxxx.com] acme: error: 0 :: POST :: https://acme-v02.api.letsencrypt.org/acme/finalize/10256xxxx/1972512xxxxx :: urn:ietf:params:acme:error:rateLimited :: Service busy; retry later.
Certificate generation failed.
<br>
 
looking for error: urn:ietf:params:acme:error:rateLimited :: Service busy; retry later.
try configure DA start renew when 10-15 days left till expire - so you will have additional days to prevent rate-limits.
 
Back
Top