Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 2023-11-29 11:52:46,723:DEBUG:certbot._internal.display.obj:Notifying user:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 11:52:46,724:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
- 2023-11-29 11:52:46,724:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
- 2023-11-29 11:52:46,724:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 11:52:46,724:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/snap/certbot/3462/bin/certbot", line 8, in <module>
- sys.exit(main())
- File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/main.py", line 19, in main
- return internal_main.main(cli_args)
- File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/main.py", line 1873, in main
- return config.func(config, plugins)
- File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/main.py", line 1642, in renew
- renewed_domains, failed_domains = renewal.handle_renewal_request(config)
- File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/renewal.py", line 568, in handle_renewal_request
- raise errors.Error(
- certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
- 2023-11-29 11:52:46,725:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
- 2023-11-29 18:41:27,560:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Arguments: []
- 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:41:27,571:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:41:27,572:DEBUG:certbot._internal.plugins.selection:Requested authenticator None and installer None
- 2023-11-29 18:41:27,618:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 18:41:27,855:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40>
- Prep: True
- 2023-11-29 18:41:27,856:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40>
- 2023-11-29 18:41:27,856:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 18:41:27,974:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 18:41:27,975:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 18:41:27,976:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:41:28,471:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 18:41:28,472:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:28 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "5uycbj9etJA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 18:41:32,856:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fe870b673a0> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fe870b673a0>
- 2023-11-29 18:41:33,004:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 18:41:33,004:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 18:41:33,004:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 18:41:33,252:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0365_key-certbot.pem
- 2023-11-29 18:41:33,261:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0365_csr-certbot.pem
- 2023-11-29 18:41:33,263:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 18:41:33,263:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 18:41:33,416:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 18:41:33,417:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:33 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjQNlvmJ2FmZg6fC_enIt3nUu6z-cp2it--JnSTNR-m2k
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 18:41:33,417:DEBUG:acme.client:Storing nonce: SFMYLIQjQNlvmJ2FmZg6fC_enIt3nUu6z-cp2it--JnSTNR-m2k
- 2023-11-29 18:41:33,417:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 18:41:33,423:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUU5sdm1KMkZtWmc2ZkNfZW5JdDNuVXU2ei1jcDJpdC0tSm5TVE5SLW0yayIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "VMiigfpdJlMRqn6o7B929MfmDS2gY3ETZABMxsO3Q0-y_2u2Sdtg-B5C_h84plXKbFVGTOIy2X6TB7aOb93QSY2GaU7IT_9qm3qjx78yVmsNOPBTLSKIGSHNO-P44tYaEYO9Q1D3kjpfTdCPv8DOInmp34yhFrgPKYdFenzGM7tc8Pd1FiIXuIV6fBtxVdCA-2tw9Tjlw_25bwLey1lv2Nw5vE-ICoD6iz0odqJ1FuetlCxpDTG5tWCbXFT-OglQCnamAbZAtXx68oxf4eyzvk-9UM8TtbHsJl8d9ptdxze-rvLNc0XewUA75MTXvMtfdhF2Csn5O6h4AG14iFdOPQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 18:41:33,606:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
- 2023-11-29 18:41:33,607:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:33 GMT
- Content-Type: application/json
- Content-Length: 339
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/224244431446
- Replay-Nonce: SFMYLIQj8RHInX0uQfX9tWOIIto2P48904Jd9NszAan2zYjqcOo
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-11-30T11:50:55Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/224244431446"
- }
- 2023-11-29 18:41:33,607:DEBUG:acme.client:Storing nonce: SFMYLIQj8RHInX0uQfX9tWOIIto2P48904Jd9NszAan2zYjqcOo
- 2023-11-29 18:41:33,608:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:41:33,613:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqOFJISW5YMHVRZlg5dFdPSUl0bzJQNDg5MDRKZDlOc3pBYW4yellqcWNPbyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg2NzA3MDMyNjI2In0",
- "signature": "XhIxWK08QZ2Gk19zsM-pXO-yGrtGmy5fLes-awSWkBtfAjMDH8KqE-8uLObRKo0tXEUY2OuPLsgNaXDd95i1Z7rnDRPWGNn8nDWkaUdqFIZ6jqC6qz8R7Do8Re2Wadp0wzFLXHjWVQVKbWCWmYOnZoOBPqiz-jBpnn0dzB7QwKf8yBc65AGp-l1Tnnq9FRy5krjFwfvatlHWtuNhMn9-PpzGPUWleMLRQ0ICh6y6Hqzi1c3Cwpz-gxEvGX5h3jAUZcVO1Ztd8024rii21Xvi-dMJ6EA87gz6Br0cRXHjE2Cf95Xc7zbrvFif6eO1EhHKeQRNS-L6qh4uMZcM4o9euQ", "payload": ""
- }
- 2023-11-29 18:41:33,771:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/286707032626 HTTP/1.1" 200 798
- 2023-11-29 18:41:33,772:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:33 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjQcc-_R416PoIsuM6G6pgPa9nAQqgzlLjDxW9IT44zmU
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-11-30T11:50:55Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
- "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/vDxyNA",
- "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/jgUyAQ",
- "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
- }
- ]
- }
- 2023-11-29 18:41:33,773:DEBUG:acme.client:Storing nonce: SFMYLIQjQcc-_R416PoIsuM6G6pgPa9nAQqgzlLjDxW9IT44zmU
- 2023-11-29 18:41:33,774:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 18:41:33,774:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:41:33,789:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: lexyy.ddns.net in: /etc/apache2/sites-enabled/000-default-le-ssl.conf
- 2023-11-29 18:41:33,789:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:41:33,790:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 18:41:33,791:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 18:41:33,878:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default-le-ssl.conf
- 2023-11-29 18:41:33,878:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 18:41:33,879:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:41:37,032:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 18:41:37,038:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUWNjLV9SNDE2UG9Jc3VNNkc2cGdQYTluQVFxZ3psTGpEeFc5SVQ0NHptVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg2NzA3MDMyNjI2L0w4WUxlUSJ9",
- "signature": "dX1OvZnr8vrKDbTsxJBqHufQKEGmmol7xa0YsEOT1hcFu22ayS599q8znlYwPMVsyWIlZVVDQ_HGKB4Un6N-gO4hWr0pA3U0Q08_SS_Nny9PjTwtyawEATcwI1N7V0lnpYKCJV9spUniWzgLSXyrCxWapqJn_wM-TNfo7XKab0MGYZ-8urczsz-_07zc_O4jwZChzJ5j2cLyFI_dnf8rmr_TdrXvEbUKA_l7zco1MA3XrS-oW9wr864PdCZ15RNsWN5DTuqisXYZahYiXcNFqFKcgKA831GQ21YuiEirZsVodMM8jiPSbMawE2jsd3LAOm5jd4lbAlOsXB0oABi-_A", "payload": "e30"
- }
- 2023-11-29 18:41:37,272:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/286707032626/L8YLeQ HTTP/1.1" 200 187
- 2023-11-29 18:41:37,273:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:37 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ
- Replay-Nonce: jXyutbsnbdzc43RRzw9z4AyLKsVMAzDOUhQ-PxShnU4UePaNcI8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
- "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
- }
- 2023-11-29 18:41:37,273:DEBUG:acme.client:Storing nonce: jXyutbsnbdzc43RRzw9z4AyLKsVMAzDOUhQ-PxShnU4UePaNcI8
- 2023-11-29 18:41:37,274:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 18:41:38,275:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:41:38,281:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuYmR6YzQzUlJ6dzl6NEF5TEtzVk1BekRPVWhRLVB4U2huVTRVZVBhTmNJOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg2NzA3MDMyNjI2In0",
- "signature": "WV-0lDRS0uvCtu8MYXsKY-343LRIlFHOjZHuF_4c_S9bP4Nqteq9KyPxWDodVkPfujVQknP58CmgZleG9OpFp-OrwlTRWXNE-n6PuKZONCoqvPl7VoSXUZWHvVOz-mxXX77E_LdlZUFyJDrgD3D8hRDg4OkK6Fe-1grAISRoWHSq6hGgD6PL-Wy-mqxabxFUNANV48euSl4kM2MRkGbPSH_oMq7wLjRo1bw27gCw2T4uLLKIrne3xqQIdYZTxNt8Jd96tecp6jXcpy1BiAxPrUd6DD_ggiGvZjcEbw-lcNxKVLbmSuUyJbGHJoxj5kuDfc1TcOhxmTD4S2rGmMPkPQ", "payload": ""
- }
- 2023-11-29 18:41:38,447:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/286707032626 HTTP/1.1" 200 1024
- 2023-11-29 18:41:38,448:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:41:38 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjoaO7WavJJ7Zib_VDRThwFPmotuRixXmF4-KFer6pbe8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-11-30T11:50:55Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
- "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T18:41:37Z"
- }
- ]
- }
- 2023-11-29 18:41:38,449:DEBUG:acme.client:Storing nonce: SFMYLIQjoaO7WavJJ7Zib_VDRThwFPmotuRixXmF4-KFer6pbe8
- 2023-11-29 18:41:38,449:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 18:41:38,450:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:41:38,450:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 18:41:38,451:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:41:38,451:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 18:41:38,451:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 18:41:38,643:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:41:38,644:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 18:43:50,806:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Arguments: ['--dry-run']
- 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:43:50,827:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:43:50,829:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fa8b2a8dd80> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fa8b2a8dd80>
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var dry_run=True (set by user).
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var server={'dry_run', 'staging'} (set by user).
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var dry_run=True (set by user).
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var server={'dry_run', 'staging'} (set by user).
- 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var account={'server'} (set by user).
- 2023-11-29 18:43:50,871:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 18:43:50,872:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 18:43:50,872:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 18:43:50,925:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 18:43:51,184:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
- Prep: True
- 2023-11-29 18:43:51,185:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
- Prep: True
- 2023-11-29 18:43:51,185:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
- 2023-11-29 18:43:51,186:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 18:43:51,308:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-staging-v02.api.letsencrypt.org/acme/acct/89271354', new_authzr_uri=None, terms_of_service=None), df83302bac3ba3f24f584c1c5884413d, Meta(creation_dt=datetime.datetime(2023, 2, 20, 19, 44, 14, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 18:43:51,309:DEBUG:acme.client:Sending GET request to https://acme-staging-v02.api.letsencrypt.org/directory.2023-11-29 18:43:51,310:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-staging-v02.api.letsencrypt.org:443
- 2023-11-29 18:43:51,822:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 826
- 2023-11-29 18:43:51,823:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:51 GMT
- Content-Type: application/json
- Content-Length: 826
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "NZDQSPNp7ZA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org/docs/staging-environment/"
- },
- "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-staging-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 18:43:51,829:DEBUG:certbot._internal.display.obj:Notifying user: Simulating renewal of an existing certificate for lexyy.ddns.net
- 2023-11-29 18:43:52,154:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 18:43:52,154:DEBUG:acme.client:Sending HEAD request to https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 18:43:52,310:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 18:43:52,311:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:52 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: eEfWeHZdkpWYp5vqSiLWUgKhGE14JnGsJ7s_OffZx2BVZLsAQjI
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 18:43:52,311:DEBUG:acme.client:Storing nonce: eEfWeHZdkpWYp5vqSiLWUgKhGE14JnGsJ7s_OffZx2BVZLsAQjI
- 2023-11-29 18:43:52,311:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 18:43:52,317:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJlRWZXZUhaZGtwV1lwNXZxU2lMV1VnS2hHRTE0Sm5Hc0o3c19PZmZaeDJCVlpMc0FRakkiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "IYW_wHbdyOmPSye9Ls4s5R7tPNHmuXyCtb-VGPIh65bLnlKPnzEOpN2RYCGUMBmEW97621j4a6sb0pt1k4tINlyNODXB4l4GQfSoIwKhg83UrXthL9CFeM398Pg2_jgXgHUqjVAdRI4vD0AonL9k79N1LzSGKEsGbimiIsxHNyCvbS0DA1DZbQ6hoYMUkJPiYkvhjkoEHGLq74BgELZuFEJwH4JnrY5Y3r2iBM-bIIvZiRSHIZLCudFM7HjjvYkeYAFjHodPcCHJH2K57rbH7CyRXA-nOBmKsco9dAM6kNf7QugvHTWEvYqneh_bxbw7RxRQ7DlS8kDzTzdZieWC1g", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 18:43:52,529:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 351
- 2023-11-29 18:43:52,530:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:52 GMT
- Content-Type: application/json
- Content-Length: 351
- Connection: keep-alive
- Boulder-Requester: 89271354
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-staging-v02.api.letsencrypt.org/acme/order/89271354/12630257814
- Replay-Nonce: DjWxb77NcsZkayaKx_1u1MoJsN1YuBcWjNdSUw5NzokKIln0CPc
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T18:43:52Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434"
- ],
- "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/89271354/12630257814"
- }
- 2023-11-29 18:43:52,530:DEBUG:acme.client:Storing nonce: DjWxb77NcsZkayaKx_1u1MoJsN1YuBcWjNdSUw5NzokKIln0CPc
- 2023-11-29 18:43:52,531:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:43:52,536:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJEald4Yjc3TmNzWmtheWFLeF8xdTFNb0pzTjFZdUJjV2pOZFNVdzVOem9rS0lsbjBDUGMiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvOTc2MzA4NTQzNCJ9",
- "signature": "PhP7a5CPI6o0Xt81VvUsDGjJhSXkHGuNCZ10yWTZo4QOojswdcPoHjO_j1gX-bQTuHMBsJRAVzwlBPVB3zezbDUAScJOFqcEe9z49iiYaDaaoKm2EcjUfYQGrisflpZRxjXBzZ4qWuRh6BDy60jj-l93OcwJiY_dtlzOgEj_2ya2vi5gM-8jasy8uSkqydv8gjTHehtIjaUVp2qxgTs-gMYw4Jq3q3kvo9lacz-E3V9z08kfP0rnXOrfAfFZ0c_27e8-MgbY7eZie2JpJNh8-agn-uK8ky_6Cweur4qVukTPSbBdOJhS3xz_AIzD6bK-yeJqjnoy9k2SQHHdltkyKQ", "payload": ""
- }
- 2023-11-29 18:43:52,706:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/9763085434 HTTP/1.1" 200 816
- 2023-11-29 18:43:52,707:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:52 GMT
- Content-Type: application/json
- Content-Length: 816
- Connection: keep-alive
- Boulder-Requester: 89271354
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: DjWxb77NDJ31ibozPvp0P9Zx746K2j_WkeyFexHzTRqI27T5XZA
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T18:43:52Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
- "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/fdfGxw",
- "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/HopTEQ",
- "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
- }
- ]
- }
- 2023-11-29 18:43:52,707:DEBUG:acme.client:Storing nonce: DjWxb77NDJ31ibozPvp0P9Zx746K2j_WkeyFexHzTRqI27T5XZA
- 2023-11-29 18:43:52,708:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 18:43:52,708:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:43:52,723:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: lexyy.ddns.net in: /etc/apache2/sites-enabled/000-default-le-ssl.conf
- 2023-11-29 18:43:52,723:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:43:52,724:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 18:43:52,725:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default-le-ssl.conf
- 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 18:43:55,977:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 18:43:55,983:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJEald4Yjc3TkRKMzFpYm96UHZwMFA5Wng3NDZLMmpfV2tleUZleEh6VFJxSTI3VDVYWkEiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvOTc2MzA4NTQzNC8yRklzT2cifQ",
- "signature": "B2ggB0GRiVEGbpPGmXti5S8ChFh3gQVEIZTMU-gHmV7qHXRHRm-pI6OR_9hVSjk3Dwj1X5qYzrcL7l9ybEfY3nHtXqi2rXpbxeW_NSpm2ZQf6xRH8eMhbixra-vPLOFf-kgTA9ZsorLZKGa8esUFpG3AAhFDt7gtqvZLEtn_bSmJREuHZm5xuN0QP9zOxr4zxWVFmKeXmogzMUWt4jKCbPXMklMgWWhak71Kfh0PyfdkcFVdoKLEXXwwtmeCcB565AbedLkYw83KxRFsLxrTWBEe8ISEn8v8s9K7sbRe_jOn8MpoM3wdisCqMXcJ6BBfBIWZbTOIBgF8RRtec_F9ww", "payload": "e30"
- }
- 2023-11-29 18:43:56,149:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/9763085434/2FIsOg HTTP/1.1" 200 193
- 2023-11-29 18:43:56,150:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:56 GMT
- Content-Type: application/json
- Content-Length: 193
- Connection: keep-alive
- Boulder-Requester: 89271354
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434>;rel="up"
- Location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg
- Replay-Nonce: eEfWeHZdcgBPbZnXyj_SsAWAPfmKA5Y2eYWD7taXMS3BS7jflyw
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
- "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
- }
- 2023-11-29 18:43:56,150:DEBUG:acme.client:Storing nonce: eEfWeHZdcgBPbZnXyj_SsAWAPfmKA5Y2eYWD7taXMS3BS7jflyw
- 2023-11-29 18:43:56,151:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 18:43:57,152:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:43:57,158:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJlRWZXZUhaZGNnQlBiWm5YeWpfU3NBV0FQZm1LQTVZMmVZV0Q3dGFYTVMzQlM3amZseXciLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvOTc2MzA4NTQzNCJ9",
- "signature": "WUB7wdr84sxa7BNUhiSIYpz0TwEktFggKkTxlxbjidHhBEdtusHbm1Zh5BwOr6033ZR85cuxDCo8RJ6dR-9Kw9FHeD85dv8qD7thwYr5U1NRccM-MaWsA08awltNZObq536BK9TxplcEga1O4T9TkLlBGyLiItrhXP4T5pRQCzkFOsVGmhWHrDUqf1XatTyS-ivaxNTlOxlzbi7PuEgQkdAEvUf8rieAecTF95U5qYPyCT5KCHigNYUW0VmlHsevkgybxeZguBaFgIhQhHDolRtLvVY43j-T69EWkHbljBk8Y9Eat_auIrFUuoe4XMajS2UMUmyEOvpmZe5PMlRo6A", "payload": ""
- }
- 2023-11-29 18:43:57,317:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/9763085434 HTTP/1.1" 200 1030
- 2023-11-29 18:43:57,318:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:43:57 GMT
- Content-Type: application/json
- Content-Length: 1030
- Connection: keep-alive
- Boulder-Requester: 89271354
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: eEfWeHZdFES8WZKhRHKaRw4gFNNs_-n9o5aXNvSOQ3_LaxPDwFE
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T18:43:52Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A: 404",
- "status": 403
- },
- "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
- "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T18:43:56Z"
- }
- ]
- }
- 2023-11-29 18:43:57,318:DEBUG:acme.client:Storing nonce: eEfWeHZdFES8WZKhRHKaRw4gFNNs_-n9o5aXNvSOQ3_LaxPDwFE
- 2023-11-29 18:43:57,319:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 18:43:57,319:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:43:57,319:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 18:43:57,320:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:43:57,320:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 18:43:57,321:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 18:43:57,531:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: Some challenges have failed.
- 2023-11-29 18:43:57,533:DEBUG:certbot._internal.renewal:Traceback was:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
- main.renew_cert(lineage_config, plugins, renewal_candidate)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
- renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:43:57,534:DEBUG:certbot._internal.display.obj:Notifying user:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 18:43:57,535:ERROR:certbot._internal.renewal:All simulated renewals failed. The following certificates could not be renewed:
- 2023-11-29 18:43:57,535:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
- 2023-11-29 18:43:57,535:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 18:43:57,536:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
- renewal.handle_renewal_request(config)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
- raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
- certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
- 2023-11-29 18:43:57,536:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
- 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Arguments: []
- 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:45:29,709:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:45:29,820:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
- Certificate Name: lexyy.ddns.net
- Serial Number: 4333940fba7738a69ce6607bb69f195d20a
- Key Type: RSA
- Domains: lexyy.ddns.net
- Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
- Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
- Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
- 2023-11-29 18:51:21,278:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:51:21,279:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:51:21,279:DEBUG:certbot._internal.main:Arguments: []
- 2023-11-29 18:51:21,280:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:51:21,307:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:51:21,451:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
- Certificate Name: lexyy.ddns.net
- Serial Number: 4333940fba7738a69ce6607bb69f195d20a
- Key Type: RSA
- Domains: lexyy.ddns.net
- Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
- Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
- Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
- 2023-11-29 18:53:19,147:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:53:19,158:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:53:19,159:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 18:53:19,202:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 18:53:19,438:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0>
- Prep: True
- 2023-11-29 18:53:19,439:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0>
- 2023-11-29 18:53:19,439:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 18:53:19,560:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 18:53:19,561:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 18:53:19,562:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:53:20,053:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 18:53:20,054:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:53:19 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "2_dy1fWdtb8": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 18:53:57,204:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 18:54:08,466:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for www.lexyy.ddns.net and lexyy.ddns.net
- 2023-11-29 18:54:08,702:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0366_key-certbot.pem
- 2023-11-29 18:54:08,711:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0366_csr-certbot.pem
- 2023-11-29 18:54:08,713:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 18:54:08,714:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 18:54:08,871:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 18:54:08,871:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:08 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: jXyutbsn0JIpcdb7TgcXSH9Aq0Ach1ytCEhKXwBZFVZOFjHKsH0
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 18:54:08,871:DEBUG:acme.client:Storing nonce: jXyutbsn0JIpcdb7TgcXSH9Aq0Ach1ytCEhKXwBZFVZOFjHKsH0
- 2023-11-29 18:54:08,872:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "www.lexyy.ddns.net"\n },\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 18:54:08,874:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuMEpJcGNkYjdUZ2NYU0g5QXEwQWNoMXl0Q0VoS1h3QlpGVlpPRmpIS3NIMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "r3CaoQlYRXmOLnuDOeGDxuhxZ5wvAtCCyhlJnz4fTtBu-CNyQ6N0uajvxDJpPsh5sq_o7CYr3ojjwFh3pCabcN9BLcD0FmXTgiIZnrdilTC2hEfiu_yNhpjCt1IS96L8O1L1zjNgM60v6GJgBrSCjXXbGPtNPKdQQIAH717H4f3ZmlKMep780CGTxXeDyi-M9KGXEPWr_KFhokf45ulaYcP22ekilPkkL1z5YlnBnc4in1XXS1hL-VXLc5-DpEG04RWOEzj-KEsuImuLYugzn5iBaybb0nnWG1OFgJVP1kOVWrovSrBElV-bWTrE_fH0wAivCJ6tsjohaVMFZVtIqw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogInd3dy5sZXh5eS5kZG5zLm5ldCIKICAgIH0sCiAgICB7CiAgICAgICJ0eXBlIjogImRucyIsCiAgICAgICJ2YWx1ZSI6ICJsZXh5eS5kZG5zLm5ldCIKICAgIH0KICBdCn0"
- }
- 2023-11-29 18:54:09,083:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 480
- 2023-11-29 18:54:09,084:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:09 GMT
- Content-Type: application/json
- Content-Length: 480
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225710845906
- Replay-Nonce: jXyutbsnMu-Bi1qcaC9xLkqdvxpHKCA_Wa1qyvjAuntDz5RzvCQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T18:54:09Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- {
- "type": "dns",
- "value": "www.lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446",
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225710845906"
- }
- 2023-11-29 18:54:09,085:DEBUG:acme.client:Storing nonce: jXyutbsnMu-Bi1qcaC9xLkqdvxpHKCA_Wa1qyvjAuntDz5RzvCQ
- 2023-11-29 18:54:09,085:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:54:09,091:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuTXUtQmkxcWNhQzl4TGtxZHZ4cEhLQ0FfV2ExcXl2akF1bnREejVSenZDUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDQ2In0",
- "signature": "F8on-l9UG379TO6cdFQnOcjXCZKLEcGWVFlwsitQGcZB5zdrJdBXxJf6UzJ79UpzuIb5lCtdurRRNdLl23S8F63TFAgf_diLSlqPEZrMv--8fptxsHjkJwVYlBl6oaYZKvRU6xKH4NMFBgnDFXfSHHZMN28PXvP3e-8U9FoK7KMBdhmrQtjUjOF-WtRpzhLINMMfNIFJXdwaU8tESXnQ8kyBIJt0c9zTpmfNKW0n2nSmONYiuwVsFGf-1dxld5SjSrYWzi-LQDngVVo5qlJDvwc54O-Byt6gHT5nsAJSFVRHEPyc9PsiZ7Cz5hAIO_CgOTmkeDPCJ75YX-WsNWoNiw", "payload": ""
- }
- 2023-11-29 18:54:09,252:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470446 HTTP/1.1" 200 798
- 2023-11-29 18:54:09,253:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:09 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjY40xF14TteAuzo4h6Etk2HURLJm-ZAs8hmZH6nHepOY
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T18:54:09Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
- "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/42rutg",
- "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/9ms10Q",
- "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
- }
- ]
- }
- 2023-11-29 18:54:09,254:DEBUG:acme.client:Storing nonce: SFMYLIQjY40xF14TteAuzo4h6Etk2HURLJm-ZAs8hmZH6nHepOY
- 2023-11-29 18:54:09,254:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:54:09,260:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqWTQweEYxNFR0ZUF1em80aDZFdGsySFVSTEptLVpBczhobVpINm5IZXBPWSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDU2In0",
- "signature": "dOcqDnNq_TDueIPIiLKHaXEsYMdFpoWbYObkouabNFHW57vX-aQ3xXdJsBCKmbKn0NQJSn1Bs0wOanUPzADzDnGct0sp8IH-TorgzuvVzai7XTyN9Be2uHrLQdipHjgb0Nt5mXlPGOph-JVoKUdUsiq9tUqQYF5mqW5uL-5hQg8csyHmub1QgP7Z-VZjgf8lZy9H9PRlrlecOLxCJtXlFscEln8b6d8jpbm5i3SAbw99JKz2d60VC0pFOxvgx61NSTWU36LYYvRU1sXlyWcTn4VZm-hXlP_uCwA4FHWsPcgJD3QBrvRRnDsGk05umg09UWm3Fagdsk9OEgh-oR33Xw", "payload": ""
- }
- 2023-11-29 18:54:09,439:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470456 HTTP/1.1" 200 802
- 2023-11-29 18:54:09,440:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:09 GMT
- Content-Type: application/json
- Content-Length: 802
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: jXyutbsnvYyb5hITrYH8_JVUJOjXrIUvqbnL18QEfbZ10BTlwCQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "www.lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T18:54:09Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
- "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/5BY4_g",
- "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/QnU7Tg",
- "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
- }
- ]
- }
- 2023-11-29 18:54:09,441:DEBUG:acme.client:Storing nonce: jXyutbsnvYyb5hITrYH8_JVUJOjXrIUvqbnL18QEfbZ10BTlwCQ
- 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:http-01 challenge for www.lexyy.ddns.net
- 2023-11-29 18:54:09,456:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:54:09,457:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 18:54:09,458:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 18:54:09,517:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:54:09,518:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 18:54:12,679:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 18:54:12,685:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNudll5YjVoSVRyWUg4X0pWVUpPalhySVV2cWJuTDE4UUVmYloxMEJUbHdDUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NDcwNDQ2L1lCX0RfdyJ9",
- "signature": "aub2DIQXcYPKihM8qi8JR_yWsGZ3m4Qmz5hGuwg0oMiwYYeQAzbEJp5h5EFarMMkUQ-vIA3-mPvvahOGfu1bm7SYzFw60uRhdLPjoiwXpzIRfeQPLoo_RlZ8SjC0ZGwp2Aj8Sy53Vxf1qDgH8OMb_DWymoDXM3YnhKVmvSF5RMJCKbLlL-xU4rpBSLfoSNpq8znEy4kbnmzPbkxSXvl2BsSbHNr7b0kiJ6W6M3fYk5ni_NEdtXN_Hf22K1oOAIwZVHk1e4r7a-3lHlCqRu2k-2qZGfZnkibBMDW_UF9kToLsdOcm9wXXxcDFn001_j_Snb_prhDhE30OgQ-btQyzqA", "payload": "e30"
- }
- 2023-11-29 18:54:12,849:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768470446/YB_D_w HTTP/1.1" 200 187
- 2023-11-29 18:54:12,850:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:12 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w
- Replay-Nonce: SFMYLIQjPtLoxVU7Yc6lLvA2NOonA1lsrRAf10bquBpUQlYoK2o
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
- "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
- }
- 2023-11-29 18:54:12,850:DEBUG:acme.client:Storing nonce: SFMYLIQjPtLoxVU7Yc6lLvA2NOonA1lsrRAf10bquBpUQlYoK2o
- 2023-11-29 18:54:12,851:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 18:54:12,857:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUHRMb3hWVTdZYzZsTHZBMk5Pb25BMWxzclJBZjEwYnF1QnBVUWxZb0sybyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NDcwNDU2L256NW9DdyJ9",
- "signature": "l_mTYyt6LeOB_RdbcVK9BtvtFdHSj6GMNmJkP0VxNbsBg045jeWAbEikGTWrUNtspEKHHmTq0T-V87p-rNmpcx6skvIJCyUox4elpt11rSJFJf91TWAYL5PwlBzOGEBQlyiUw6zcNXwbU4lt9wb4Q2_HgKR6MHyCXu1tGba8VjuS3vYz2B_w9utg4U45c63GoMEyUnaOR86gHAOpxgfDnz7rLrCZS_BJUjcpDj6BHA2GUIo_oDkUX3YqlGg80D2B_D9kbhHwo5nzfGP-fkxRftRNs7xe--F2j_bfZoULSsX92LgpTQevIGsvi2nveuf8N9HUkgJFApOooBHkmZpDuw", "payload": "e30"
- }
- 2023-11-29 18:54:13,021:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768470456/nz5oCw HTTP/1.1" 200 187
- 2023-11-29 18:54:13,022:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:12 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw
- Replay-Nonce: jXyutbsn70UL13qEfaTtLauUAUBUDOccUiVGlrw_YPEx4wLQbIQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
- "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
- }
- 2023-11-29 18:54:13,022:DEBUG:acme.client:Storing nonce: jXyutbsn70UL13qEfaTtLauUAUBUDOccUiVGlrw_YPEx4wLQbIQ
- 2023-11-29 18:54:13,023:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 18:54:14,024:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:54:14,030:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuNzBVTDEzcUVmYVR0TGF1VUFVQlVET2NjVWlWR2xyd19ZUEV4NHdMUWJJUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDQ2In0",
- "signature": "G9-HjqbQZPaVAYhS28IFpW4jKjHlNQQKp1_NOs7qa0Dr51Xu34MzPZ49051LvmDNfbwzCZtfvDPn73gWaKkUMq0H0JUZat5JzZvPjzxEBpvNidA7D5uv1ORw77jPIu0TvKkUs2HgxQY0tMg0oZdmzqmzqLoHXUWfn93qs4gUOAJlywQWD11qT9Oeh5iq-fb9WR6uHOZXZ7Q3uY7UpmXX5gIIfqeFHecZuOc9mIgxeS0zM3CpCgcm7cLxsLgIop_FuTwzvpkOavFdTHPgdOzhproyr4QcAZRqn-n1aMIlIWiCKPn-ZGq7jkrsSzzC2iP58U_6ySPptNH0ATXfg4Ev_g", "payload": ""
- }
- 2023-11-29 18:54:14,194:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470446 HTTP/1.1" 200 1024
- 2023-11-29 18:54:14,195:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:14 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjtEdX7DNXmaiCxa08oiXZehibBb98liu__LmtEEdQrRI
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T18:54:09Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
- "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T18:54:12Z"
- }
- ]
- }
- 2023-11-29 18:54:14,195:DEBUG:acme.client:Storing nonce: SFMYLIQjtEdX7DNXmaiCxa08oiXZehibBb98liu__LmtEEdQrRI
- 2023-11-29 18:54:14,196:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:54:14,202:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqdEVkWDdETlhtYWlDeGEwOG9pWFplaGliQmI5OGxpdV9fTG10RUVkUXJSSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDU2In0",
- "signature": "Dbw5OGma8JFGiZ85qHxDMYMb-duayZiTtMaYrOmROw4zQNAFe-_k__8R35nJwEDocZqPv1c38hPVH_cpHyg2miIJQ0Lmc3dLXNBQN0Bcq2NdQSWXDPhNtOABEHTyw3PxoEzBZ1HdL9Volvgc2Aq7l2pCxw1OvSnYss0pfbPogMT26OUBAa2nRDoj6HKZEhf0n-Z4owOoKxuGKE2TiH6-daaNbqRMmdc6GuASEES73FE2f-9TGjufZFqo3ZxXnpWCtboQWICpOrWu9_uO6cjbxOo0EVM7i84WarUCgkJDkTg58C93w5pyKps7dI4HHSXwoMFUM4RYQpYgPDnGRC9q_w", "payload": ""
- }
- 2023-11-29 18:54:14,363:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470456 HTTP/1.1" 200 753
- 2023-11-29 18:54:14,364:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:54:14 GMT
- Content-Type: application/json
- Content-Length: 753
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjAbd3jWX0Etd-hpw6nyM0Og2tzNyRxmneomYi5Frhsn0
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "www.lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T18:54:09Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:dns",
- "detail": "DNS problem: NXDOMAIN looking up A for www.lexyy.ddns.net - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for www.lexyy.ddns.net - check that a DNS record exists for this domain",
- "status": 400
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
- "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM",
- "validated": "2023-11-29T18:54:12Z"
- }
- ]
- }
- 2023-11-29 18:54:14,364:DEBUG:acme.client:Storing nonce: SFMYLIQjAbd3jWX0Etd-hpw6nyM0Og2tzNyRxmneomYi5Frhsn0
- 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:Challenge failed for domain www.lexyy.ddns.net
- 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:54:14,366:INFO:certbot._internal.auth_handler:http-01 challenge for www.lexyy.ddns.net
- 2023-11-29 18:54:14,366:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: www.lexyy.ddns.net
- Type: dns
- Detail: DNS problem: NXDOMAIN looking up A for www.lexyy.ddns.net - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for www.lexyy.ddns.net - check that a DNS record exists for this domain
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 18:54:14,367:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:54:14,367:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 18:54:14,367:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 18:54:14,555:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:54:14,557:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 18:55:24,899:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 18:55:24,910:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 18:55:24,911:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 18:55:24,954:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 18:55:25,114:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0>
- Prep: True
- 2023-11-29 18:55:25,115:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0>
- 2023-11-29 18:55:25,115:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 18:55:25,212:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 18:55:25,213:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 18:55:25,214:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:55:25,676:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 18:55:25,677:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:25 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert",
- "wocUNx0eals": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
- }
- 2023-11-29 18:55:29,168:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 18:55:29,318:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 18:55:29,318:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 18:55:29,318:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 18:55:29,598:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0367_key-certbot.pem
- 2023-11-29 18:55:29,607:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0367_csr-certbot.pem
- 2023-11-29 18:55:29,610:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 18:55:29,610:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 18:55:29,758:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 18:55:29,759:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:29 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfi8cccGGPzdM8N8aVK_UX3yJEb5XtxmR6HdDyqpjYCsD8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 18:55:29,759:DEBUG:acme.client:Storing nonce: v0bMowfi8cccGGPzdM8N8aVK_UX3yJEb5XtxmR6HdDyqpjYCsD8
- 2023-11-29 18:55:29,759:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 18:55:29,762:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpOGNjY0dHUHpkTThOOGFWS19VWDN5SkViNVh0eG1SNkhkRHlxcGpZQ3NEOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "EXK2FGDvoyMRhPVv0zoCzOYonHrgcCyqygstYOvU6fWUbCifamksNswhfRpWJyInRFelUW0DDQqZqiMmBCoB464Ooo4hEDRgDf0QCZIDviDWZYBnjS6pg8vwHo_tIhBPMDabVLIc-tn2MEqYpfUUz3ZyPvOzsrfwPktWv1oR_i7bRc_VVRGBXPcGGekGGUNYcIvdYKNC2TKDbri0zUAUig86i1SX08viNQiMYGwq_pUnKFtSDbXOXnUYBC-HSLup5yEBGgm2zq0_RD91nDaI2-wBkE9WWXuDB_53K1nOzNfpDaQ8GtuqknvfzwHtHdEhG7-JSnBl-QKMUNhMT6gxfg", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 18:55:30,082:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
- 2023-11-29 18:55:30,083:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:30 GMT
- Content-Type: application/json
- Content-Length: 339
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711045986
- Replay-Nonce: v0bMowficW_vRCGIW6WuhCXHMHQoxtiFYpI8a1P2pLmbP4_odhc
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T18:55:29Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711045986"
- }
- 2023-11-29 18:55:30,083:DEBUG:acme.client:Storing nonce: v0bMowficW_vRCGIW6WuhCXHMHQoxtiFYpI8a1P2pLmbP4_odhc
- 2023-11-29 18:55:30,084:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:55:30,088:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpY1dfdlJDR0lXNld1aENYSE1IUW94dGlGWXBJOGExUDJwTG1iUDRfb2RoYyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NzQ0NTQ2In0",
- "signature": "KAzDo__n72cvmSExoNe0TcC6TG_VudT9Gtebwugefxr9v0HmMIhLRuP_QREilpekZBCLe1_jb9po_J2O7HMrT_2ck9qJC8ENKOhgRvBbhV0zvYcZoS8ohoFgyGE_B9JF1RKVTzlbyJsVqLN1A7RnMgqtn6bfCMOYAFpMfGLOnalD0INuFYZBy7pO_QRS8u2gBo-q0bxcRxL4E2qjS46Ngamo3RIJLFX_6YbTz6AcPQIxDR87Fk9CaHkkBmrUZkm0PPRXDo3QsSRvcswmTENXbaIHGPbiBC_aDsfUaK_fxIU-jiPcnFTl5TQOfYxAoMuNnJnlXCM36YCp6OgYvfchVQ", "payload": ""
- }
- 2023-11-29 18:55:30,238:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768744546 HTTP/1.1" 200 798
- 2023-11-29 18:55:30,239:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:30 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8FokEgNvyhUNeKmjEy2AINw2S7HuhmqtPUA_uYREAN4s
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T18:55:29Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
- "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/a6fYcQ",
- "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/OUULOA",
- "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
- }
- ]
- }
- 2023-11-29 18:55:30,240:DEBUG:acme.client:Storing nonce: nbWKegf8FokEgNvyhUNeKmjEy2AINw2S7HuhmqtPUA_uYREAN4s
- 2023-11-29 18:55:30,241:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 18:55:30,241:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:55:30,254:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:55:30,255:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 18:55:30,255:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 18:55:30,313:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 18:55:30,314:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 18:55:33,490:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 18:55:33,497:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4Rm9rRWdOdnloVU5lS21qRXkyQUlOdzJTN0h1aG1xdFBVQV91WVJFQU40cyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NzQ0NTQ2LzVCOEJBZyJ9",
- "signature": "auK6cYYijgXuyR_Lpch838qGq5nmvsQBStuOoxDDX_QDqdAUIxx979ADpBtnjUj2ohFvbseHwzUX8Mxt2EWnJWXLW1xJYVip1Hjtv5I6--X1dDti12Tsv-io1IH1sC9-CkzGOkK5BeAAa0tGsTJaN03REVuYnqL6QmWdPoUQI1b0zxpH048fifXps3F1xLzbgqQflKKCkwoQ_i5d9CgAzLVRQ4Ty-eGTi4PPTWX5Yl8qv0hcWnjJQoWONT443nUj50obn34z0FI-k4bOaNzSoAVgBAaja-tVoxbG1gmSq_olsPAOt_EkMfHLaXGtWsrSkKh6RoLNmDI4u4tGd6EDOg", "payload": "e30"
- }
- 2023-11-29 18:55:33,649:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768744546/5B8BAg HTTP/1.1" 200 187
- 2023-11-29 18:55:33,650:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:33 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg
- Replay-Nonce: v0bMowfir9fPKK93kSuIgi_Y-yAGvW6Aw6g_byR1ZisNtvGGG6U
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
- "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
- }
- 2023-11-29 18:55:33,650:DEBUG:acme.client:Storing nonce: v0bMowfir9fPKK93kSuIgi_Y-yAGvW6Aw6g_byR1ZisNtvGGG6U
- 2023-11-29 18:55:33,651:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 18:55:34,652:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 18:55:34,658:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpcjlmUEtLOTNrU3VJZ2lfWS15QUd2VzZBdzZnX2J5UjFaaXNOdHZHR0c2VSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NzQ0NTQ2In0",
- "signature": "pdu6SND5DmFGyizy4xJRe8pDl98ncF7Q-HTUMHoiGynOx1dWA1J64R1HBZUGl6-6ow61tB6hEaPtsQveszOD7hjmUTBn0m1XrHYCygv1eURozo5Ymzp3QFoSUq0HG4RX0EQU3xlcbjFPYPtbg2XcAXH0bInXdPoB2yHvdK3wAXUoxApadtZ8R1r-HpLiFtYoJj_oUtn836v70PssXGHaTD0bA47-BnGSlNcVPiPztY3bz_85n2UaVEHZk8GNUkya-IK0UFNPSMc6YFY6zt4WzHv_921v-3-0TYjkVnwWC_12ua-0cTfxRbQ1edqAmWEgrSUKI_Na5Nz77bcHSqarqw", "payload": ""
- }
- 2023-11-29 18:55:34,808:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768744546 HTTP/1.1" 200 1024
- 2023-11-29 18:55:34,809:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 18:55:34 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfiqrI8pUl3haN47avxzgEvqH4c5LZ-fS7O-XPGyF4f3YI
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T18:55:29Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
- "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T18:55:33Z"
- }
- ]
- }
- 2023-11-29 18:55:34,809:DEBUG:acme.client:Storing nonce: v0bMowfiqrI8pUl3haN47avxzgEvqH4c5LZ-fS7O-XPGyF4f3YI
- 2023-11-29 18:55:34,810:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 18:55:34,810:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 18:55:34,811:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 18:55:34,811:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:55:34,812:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 18:55:34,812:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 18:55:35,002:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 18:55:35,004:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:00:37,810:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:00:37,811:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:00:37,855:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:00:38,096:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0>
- Prep: True
- 2023-11-29 19:00:38,096:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0>
- 2023-11-29 19:00:38,096:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:00:38,195:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:00:38,196:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:00:38,197:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:00:38,742:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:00:38,744:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:38 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "pmTdXKNrDjE": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:00:43,967:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:00:44,107:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:00:44,107:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:00:44,107:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:00:44,487:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0368_key-certbot.pem
- 2023-11-29 19:00:44,496:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0368_csr-certbot.pem
- 2023-11-29 19:00:44,498:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:00:44,498:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:00:44,658:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:00:44,658:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:44 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: jXyutbsnI-OUzNmpFmJK7d78rj8pUrzJ17Vv3IFNDbsX9CR1NCQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:00:44,658:DEBUG:acme.client:Storing nonce: jXyutbsnI-OUzNmpFmJK7d78rj8pUrzJ17Vv3IFNDbsX9CR1NCQ
- 2023-11-29 19:00:44,658:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:00:44,661:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuSS1PVXpObXBGbUpLN2Q3OHJqOHBVcnpKMTdWdjNJRk5EYnNYOUNSMU5DUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "oiaQ2qU_pcA_xtaaX1KTiFyXAnfhA7WBUpZWzhhrxjwNU2bX0IYR9w_s7rxshQO25u-ed68Uv_ABt5Sm5UXW3HMDyoDIgCG5bUevAP0yvzfJXt7eKMHFL9uNz7gnyUErxUTKPA33oyt5u4V3bqghy9qYIOpJleYRNqiFRn54yuTJyQ0QmUxMiyySpGcf0QwPNw328CADec0RjIork6SUGEkYkftwo44-4ICPi0tkjba-7NAbGe5TgiRRWG9wz5yoREUsag8WcVQqYIrBdqDK49YJMLaKOK5B_-U6AwNRRpBltm7oXdJAwbGvUXwTw5fIQ04WEh39E1_SLv3f5b5PkQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:00:45,035:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
- 2023-11-29 19:00:45,036:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:44 GMT
- Content-Type: application/json
- Content-Length: 339
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711817466
- Replay-Nonce: SFMYLIQjfF92dTHKDutNQtiV7ZLF2ORN31vyWEJBlbBbScJV384
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T19:00:44Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711817466"
- }
- 2023-11-29 19:00:45,036:DEBUG:acme.client:Storing nonce: SFMYLIQjfF92dTHKDutNQtiV7ZLF2ORN31vyWEJBlbBbScJV384
- 2023-11-29 19:00:45,037:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:00:45,041:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqZkY5MmRUSEtEdXROUXRpVjdaTEYyT1JOMzF2eVdFSkJsYkJiU2NKVjM4NCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODIwMTk2In0",
- "signature": "bMuevnt7KkMrTGrzyVbFOde1Uiwic5eACf9Jy2w_OmC74nlETIShrCMePjMkAgIXpfahW9foqTh-_4jYonv7r7NFWcVikGgrnnvR9l-wbHx9aaRXOI0_wT4B8Lba8u90Hztcon8MXDoIIDLI-k4Sv8Xj5zpfChCXjroj4KvG4dHBJFgCIzqMey647NJ0XhsdG_zxMhhbmfwgz3Z95PUvYYQQRQSpHnHKVpOSI5_2AGkbbbmsZwAhxLymyI70BwnO__8RyxvyUYoupilPLe7Lk1nth-w0o17BfvyocYYGwgMv4TBHglWmwVuolFe2wthlGctwZTnPUuSqtBZ24_VW9w", "payload": ""
- }
- 2023-11-29 19:00:45,203:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769820196 HTTP/1.1" 200 798
- 2023-11-29 19:00:45,204:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:45 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQj0BqPn6cHV9PsPwPNE5sRHYjYCH-LOC8TVQGCAQeHtIE
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T19:00:44Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
- "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/dOY-8g",
- "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/MJ7j1A",
- "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
- }
- ]
- }
- 2023-11-29 19:00:45,204:DEBUG:acme.client:Storing nonce: SFMYLIQj0BqPn6cHV9PsPwPNE5sRHYjYCH-LOC8TVQGCAQeHtIE
- 2023-11-29 19:00:45,205:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 19:00:45,206:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:00:45,218:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:00:45,219:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 19:00:45,220:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 19:00:45,280:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 19:00:45,280:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:00:48,453:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 19:00:48,459:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqMEJxUG42Y0hWOVBzUHdQTkU1c1JIWWpZQ0gtTE9DOFRWUUdDQVFlSHRJRSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY5ODIwMTk2L1hYbjMydyJ9",
- "signature": "hm3F64xbsAsfd7XOy1a5TEomnDpSrXxovgF7LZ-IFBwDDVEym30b8HOLhLbDLeqsyvF1ftyFYc0GVLXx3U9qC1B-Su-6sQevFLO7vD1k4jrJfI6w8lnHHzOZQgJ4QJdQufN9LMxIWgwk0oZ_Vj9bSkEqgBjjeWwUoRHVDZH27bIH7JKJWEGJkJZAKzZxFwESv6rMsIH35Gh9JT8vYWsq-HGD6ElXQrgSmdITrOvXEEqA8P2Ky6bUKR1FABZSxfjmVCyLQAsh7FR3BJxZILcYp-1t7axHEWWZT1WorW7DRye89w14X6Hf9Yc0m0zJBIMJdLWsyalDT-sbXqmNcI21ew", "payload": "e30"
- }
- 2023-11-29 19:00:48,665:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288769820196/XXn32w HTTP/1.1" 200 187
- 2023-11-29 19:00:48,666:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:48 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w
- Replay-Nonce: jXyutbsnP3-yiA5LOPnAyXD0JUM5ACHunZx7Fef9CXvWywUCQEA
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
- "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
- }
- 2023-11-29 19:00:48,666:DEBUG:acme.client:Storing nonce: jXyutbsnP3-yiA5LOPnAyXD0JUM5ACHunZx7Fef9CXvWywUCQEA
- 2023-11-29 19:00:48,667:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 19:00:49,668:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:00:49,674:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuUDMteWlBNUxPUG5BeVhEMEpVTTVBQ0h1blp4N0ZlZjlDWHZXeXdVQ1FFQSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODIwMTk2In0",
- "signature": "KcR1ZKzfamezMyBw8gQ2r_puj5KfQ0ETJRIzCEcE6N2T-AKRaHZQsNGvI9ZKk8_mZIEos8nf5Vz1lDjBVy7yQr_8lV7rKTHHUYbl69ClydVEglaTuIrLn_FsiGZsaIbHhkMSivxNMmoGDB5iX54J2KQ8tojDxrQVvcv1CuPtuTmALCzY2lb0ecukF2V6bom1yYDtt5daDCJ2cedxQGNemsLklcS1cCVIohFhKLvTmo6u75gES-ixLgnqnDPaWicsrBsXidlmwrexZw1P1b_I_bQDXZl6jq48OwTcRsewayM4lJawdZQk6qkNVB81DNpNtIf7xJSy2aMc4VIasVtMOQ", "payload": ""
- }
- 2023-11-29 19:00:49,836:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769820196 HTTP/1.1" 200 1024
- 2023-11-29 19:00:49,837:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:49 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: SFMYLIQjB-btGmS6pOpyE6mkCWPpLinLNsopA_o_tDIqRuiuAF8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T19:00:44Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
- "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T19:00:48Z"
- }
- ]
- }
- 2023-11-29 19:00:49,837:DEBUG:acme.client:Storing nonce: SFMYLIQjB-btGmS6pOpyE6mkCWPpLinLNsopA_o_tDIqRuiuAF8
- 2023-11-29 19:00:49,838:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 19:00:49,838:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:00:49,838:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 19:00:49,839:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:00:49,840:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 19:00:49,840:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 19:00:50,033:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:00:50,035:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 19:00:53,221:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:00:53,221:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:00:53,222:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 19:00:53,222:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:00:53,232:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:00:53,232:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:00:53,278:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:00:53,530:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0>
- Prep: True
- 2023-11-29 19:00:53,531:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0>
- 2023-11-29 19:00:53,531:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:00:53,650:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:00:53,650:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:00:53,651:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:00:54,099:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:00:54,100:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:54 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "IugVZQZNsBA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:00:58,848:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:00:58,993:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:00:58,993:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:00:58,993:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:00:59,322:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0369_key-certbot.pem
- 2023-11-29 19:00:59,331:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0369_csr-certbot.pem
- 2023-11-29 19:00:59,334:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:00:59,334:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:00:59,479:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:00:59,480:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:59 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfi0UV4GsC3cfx9VEDHVe-DNGNxnbfcdnz4UFw9wwPDaEQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:00:59,480:DEBUG:acme.client:Storing nonce: v0bMowfi0UV4GsC3cfx9VEDHVe-DNGNxnbfcdnz4UFw9wwPDaEQ
- 2023-11-29 19:00:59,480:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:00:59,484:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpMFVWNEdzQzNjZng5VkVESFZlLUROR054bmJmY2RuejRVRnc5d3dQRGFFUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "rMB0mjnNd-l0wff27XNk2oBvYC_KNOItiSytvGc0GRoZGCIvEern-ImGAsfBT3lCrnn1baeB0MnBVGs3T1NMzFLTpSjWIBfty_2fxOFrmpptorv11Ndk_GV-hHD1k18pLPWYSbiyzjfCwyXKPSFOw8HnsTKFIkrksBMTyc154FhcOzhhtSZ0g-_H9-hRUW4l2FJ1VKbWJA4YREjxTJAtM4PMixQDR4bNF7xbgkWWp2ZuAj21_OmkealJWSaJqP6JtTSuZnlT84xRCXksCrHuM9x-DMEplpz9tX8DtuuCyLjPnxOLYNhX2Lm0KqwmEPmRq_OSPvOCd1GzXDa8NjLsgQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:00:59,870:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
- 2023-11-29 19:00:59,871:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:59 GMT
- Content-Type: application/json
- Content-Length: 339
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711851526
- Replay-Nonce: v0bMowfiHIZTumaC_7dvMxGEF2SdAzlwsfUrOahfbqRI5cQ2ZGw
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T19:00:59Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711851526"
- }
- 2023-11-29 19:00:59,872:DEBUG:acme.client:Storing nonce: v0bMowfiHIZTumaC_7dvMxGEF2SdAzlwsfUrOahfbqRI5cQ2ZGw
- 2023-11-29 19:00:59,872:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:00:59,878:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpSElaVHVtYUNfN2R2TXhHRUYyU2RBemx3c2ZVck9haGZicVJJNWNRMlpHdyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODY5NDk2In0",
- "signature": "Vfys0HMV68VABz0zS73yqUA5oz8RuiX3CVTSJo4w430eOWCLTad8fPxN3LqezOBlUbY0x9VyNEOmm6kCdDFOzfTK-syxxFo7dP19p_AMnrNLb3U7GF-8aF8j5ngizuU_MQ9QSOWAT122d2WHrLH-u5IXAfaTRCKqsjHJCo7M5qoPRjf_iRj3e-LRL04QN_Z4_B9fYE8gg4tBULIVNqNsIt50LLUtFTVbO0YsPe6112uuSL6wdTlrMOHujyVuhAwaKwqG7jdgyUb8eL-Xy2xNSpIVhUPwpbvco2Ib4E0en9KL5ToCMKHzV2foZR_xOLGmtNvXUaVZZRmRBVfxQyHepQ", "payload": ""
- }
- 2023-11-29 19:01:00,029:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769869496 HTTP/1.1" 200 798
- 2023-11-29 19:01:00,030:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:00:59 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfigBGeLrNAlJAMaI-bGSB3eWrLt_SLNd1zg2sXYI6gk3I
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T19:00:59Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
- "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/m6ZLuw",
- "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/qwCx-Q",
- "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
- }
- ]
- }
- 2023-11-29 19:01:00,031:DEBUG:acme.client:Storing nonce: v0bMowfigBGeLrNAlJAMaI-bGSB3eWrLt_SLNd1zg2sXYI6gk3I
- 2023-11-29 19:01:00,032:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 19:01:00,032:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:01:00,044:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:01:00,045:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 19:01:00,046:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 19:01:00,106:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 19:01:00,106:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:01:03,273:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 19:01:03,279:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpZ0JHZUxyTkFsSkFNYUktYkdTQjNlV3JMdF9TTE5kMXpnMnNYWUk2Z2szSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY5ODY5NDk2L1VCNTk2dyJ9",
- "signature": "AK5KaT-IGYujjHChQ_hgSEKp-rGBouGwzShaFi4zXZY0SWkhjVNP8eQU-uL0sHUN_GWq7UL-AmaMf3yTqmNDPNjdCl4p5hFiYi6i17te9T0fBEiMM7YNMTO0Nk_atBdiGgNpPXzep1-rsKXJpKaIlaO8xlc-PuEHw_5fYKc90dNI7KsAZxalVM93a9XpfPtfA7wK4Pdp-_4SJwuaGoB3ImlT83nhAo7-yUPCRA0uuX180xAckQfOLNl2JLJ66f6mKuJ6fb7UxwijO6b8dqDi1KUev719jJG2N1TUPuM46e8lCpPP8CvgXtlvpIY691zaV8NNtFn_anu7J856fmtAcw", "payload": "e30"
- }
- 2023-11-29 19:01:03,444:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288769869496/UB596w HTTP/1.1" 200 187
- 2023-11-29 19:01:03,445:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:01:03 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w
- Replay-Nonce: v0bMowfiYverh4ktDEmkZ9eM3M3ul-9DAcmpq6RDZJq_NtrgjQc
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
- "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
- }
- 2023-11-29 19:01:03,446:DEBUG:acme.client:Storing nonce: v0bMowfiYverh4ktDEmkZ9eM3M3ul-9DAcmpq6RDZJq_NtrgjQc
- 2023-11-29 19:01:03,446:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 19:01:04,448:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:01:04,454:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpWXZlcmg0a3RERW1rWjllTTNNM3VsLTlEQWNtcHE2UkRaSnFfTnRyZ2pRYyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODY5NDk2In0",
- "signature": "HBiQc6mgbOOzyULLxtIQBi8dr3gMiASVbFQyXUiK9u1HFqVBzlwHkjkK6WtNcndf9Td-RIWYf8e0-DXQOBbji0japOIq38jpeyfAv7v0Vb-82JNIq_3pEDJdtbQ6ou-uKgc7N1YfHVxwqPS66FiwtiFXIVS7y3nuf153J_EnirNU3oqeGiqjZeHVoHE3w3_4CbNquSVj2nYi8FD8YZ_b9laU8U-I5a7Wkqvw8V1VhPc3twdLO6ICBvzMfQzXN96XM-bhSImdO_qcA6k9p76GfrPxGhVkKPvVyC1NVy7IJtx9W5P6znjhkweykHKsHf_k4gb8i-4IXGXs39ZYEVaD2Q", "payload": ""
- }
- 2023-11-29 19:01:04,607:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769869496 HTTP/1.1" 200 1024
- 2023-11-29 19:01:04,608:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:01:04 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8GaiZr52S6SwBYikUSTi2ciinf1NMlG_iPSVu5O_kiMY
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T19:00:59Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
- "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T19:01:03Z"
- }
- ]
- }
- 2023-11-29 19:01:04,608:DEBUG:acme.client:Storing nonce: nbWKegf8GaiZr52S6SwBYikUSTi2ciinf1NMlG_iPSVu5O_kiMY
- 2023-11-29 19:01:04,609:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 19:01:04,609:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:01:04,609:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 19:01:04,610:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:01:04,610:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 19:01:04,611:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 19:01:04,801:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:01:04,802:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 19:09:40,639:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:09:40,660:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:09:40,661:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:09:40,717:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:09:40,963:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0>
- Prep: True
- 2023-11-29 19:09:40,964:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0>
- 2023-11-29 19:09:40,964:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:09:41,089:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:09:41,090:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:09:41,091:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:09:41,558:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:09:41,559:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:41 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert",
- "vue7KzT97Kg": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
- }
- 2023-11-29 19:09:45,202:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:09:45,350:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:09:45,350:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:09:45,351:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:09:46,217:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0370_key-certbot.pem
- 2023-11-29 19:09:46,227:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0370_csr-certbot.pem
- 2023-11-29 19:09:46,229:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:09:46,229:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:09:46,373:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:09:46,373:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:46 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfiwzYHg438UAocRrDCCdMxna0YRdyw26Ix9ztQae-M2p8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:09:46,373:DEBUG:acme.client:Storing nonce: v0bMowfiwzYHg438UAocRrDCCdMxna0YRdyw26Ix9ztQae-M2p8
- 2023-11-29 19:09:46,374:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:09:46,377:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2Zpd3pZSGc0MzhVQW9jUnJEQ0NkTXhuYTBZUmR5dzI2SXg5enRRYWUtTTJwOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "odYdZ1V4zMVNG7_ZNYAPSDb9ILCsZvmH0OpgS9_Y3W6MpnRvAS04A-__coumsriXh4chp6qRT1HTYPYdAKXY5zQp9FxdaP11OrIE4ef6zXYWgfV1jAiDUks0CQK9Dlfielj7comlcjx5R-DeyjOivhADamYIWXZv_vM1Z7QpJ0M3VduhFuNvbTUNeyy1tu_dsT14iJkrx8j0WbM-xG7UTEZaiEPbLKCyn3_Ihg92hR1WzsR7EH5bUi3fw8OhNaDfuJ1Bbzx1ealD_cUAxjeLxcZIYytZrUm17q9G-mFzBnmZSE9UhG3Cmpb78D3Ws-1TytmnION2A6rG-bFPjyBIZg", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:09:46,679:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
- 2023-11-29 19:09:46,680:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:46 GMT
- Content-Type: application/json
- Content-Length: 339
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225713301266
- Replay-Nonce: nbWKegf8Z54g3E5sAOdizyTPpYkVvkUxKb6Mgtx3txg4OZm4Nlg
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "status": "pending",
- "expires": "2023-12-06T19:09:46Z",
- "identifiers": [
- {
- "type": "dns",
- "value": "lexyy.ddns.net"
- }
- ],
- "authorizations": [
- "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726"
- ],
- "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225713301266"
- }
- 2023-11-29 19:09:46,680:DEBUG:acme.client:Storing nonce: nbWKegf8Z54g3E5sAOdizyTPpYkVvkUxKb6Mgtx3txg4OZm4Nlg
- 2023-11-29 19:09:46,680:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:09:46,686:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4WjU0ZzNFNXNBT2RpenlUUHBZa1Z2a1V4S2I2TWd0eDN0eGc0T1ptNE5sZyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzcxOTI4NzI2In0",
- "signature": "ML9aaWsT9dZXpV2ppO2stvjUdxy8kTm_eM1uJUIIQAuCNQu2oT7grR4qiQa6iC49XDSWauaXbdeDTS4hkWOo91viC-XyeYy8btmwy-AevH1fN5tOfT86uZWp-GI5dMvU6RpdxYYUmKNEVIFcv0uOh7H0GlfT9k9iTDsSJhg6ckkDT2QeqBrggc6gvMs5BUYeF9zud540uPzZoGKN_seWEe_1K3fH1iZzCqnYahQwCzWN_6N0K1B74IuS4Zw1wc-kgh4_2AvVUwzmn4Fsqlkh3lLiXdnueC-4uj0xToz0duQMCK7QjfY419IJlIrTFglEZvbOSKUGha1hJ5RtQER48w", "payload": ""
- }
- 2023-11-29 19:09:46,854:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288771928726 HTTP/1.1" 200 798
- 2023-11-29 19:09:46,855:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:46 GMT
- Content-Type: application/json
- Content-Length: 798
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8B9XV9OVcJa1-TpPBod5OwKYwio4tT4V_9xC8kgzxdVs
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "pending",
- "expires": "2023-12-06T19:09:46Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
- "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/Wa2Nxw",
- "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
- },
- {
- "type": "tls-alpn-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/-zVaTQ",
- "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
- }
- ]
- }
- 2023-11-29 19:09:46,855:DEBUG:acme.client:Storing nonce: nbWKegf8B9XV9OVcJa1-TpPBod5OwKYwio4tT4V_9xC8kgzxdVs
- 2023-11-29 19:09:46,856:INFO:certbot._internal.auth_handler:Performing the following challenges:
- 2023-11-29 19:09:46,857:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:09:46,869:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:09:46,870:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
- RewriteEngine on
- RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
- 2023-11-29 19:09:46,871:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
- <Directory /var/lib/letsencrypt/http_challenges>
- Require all granted
- </Directory>
- <Location /.well-known/acme-challenge>
- Require all granted
- </Location>
- 2023-11-29 19:09:46,934:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
- 2023-11-29 19:09:46,935:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2023-11-29 19:09:50,093:DEBUG:acme.client:JWS payload:
- b'{}'
- 2023-11-29 19:09:50,099:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4QjlYVjlPVmNKYTEtVHBQQm9kNU93S1l3aW80dFQ0Vl85eEM4a2d6eGRWcyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzcxOTI4NzI2L3QxR1N0USJ9",
- "signature": "FKhKLBdCXH4_by6GXp7T8Kklf6HU336aqTv51lOdfnkjPc3vOaZyr9thgFga7esS00wgapgVY7yFnYnRFYgVvLD0qw1CRHQvPtediCNBAX0vDNxvxW7ydVBYspfsx6mihS5FT7jHlBk40WW7edZncq0S4hUk5mLmYwOMdrn62P7XO-NoJp8U-k6hXIJRlRuuaKy3mEyQwyLGvNqnPxTZHesOjquSGDPDNvh_JFN0vkl_gRI4wrwOQgXXZMUfmVMLUIb0cKU60ngzHyZBs9F4MP5s3vYPLbN9PIcwmqVb-Cj8wylf9xUI7FJ1zHZ5eoxLYRkMl4_QvE6xXdzCFaYsag", "payload": "e30"
- }
- 2023-11-29 19:09:50,255:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288771928726/t1GStQ HTTP/1.1" 200 187
- 2023-11-29 19:09:50,256:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:50 GMT
- Content-Type: application/json
- Content-Length: 187
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726>;rel="up"
- Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ
- Replay-Nonce: nbWKegf8RgTo1ewA0nDS1vj0JtgJCPaxIQI4I7H1DDjaNYgV6-0
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "type": "http-01",
- "status": "pending",
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
- "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
- }
- 2023-11-29 19:09:50,257:DEBUG:acme.client:Storing nonce: nbWKegf8RgTo1ewA0nDS1vj0JtgJCPaxIQI4I7H1DDjaNYgV6-0
- 2023-11-29 19:09:50,257:INFO:certbot._internal.auth_handler:Waiting for verification...
- 2023-11-29 19:09:51,259:DEBUG:acme.client:JWS payload:
- b''
- 2023-11-29 19:09:51,264:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4UmdUbzFld0EwbkRTMXZqMEp0Z0pDUGF4SVFJNEk3SDFERGphTllnVjYtMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzcxOTI4NzI2In0",
- "signature": "KbOiLsrU6aj6kL0Sgqm7g9OM1KQr8k48FcHPXTuQE2KWYvHOEaVOe7l-8vEwJd3jPcAj3qMnpB82iHqshYWD2rwiIq68Jg5w_V_1-Loxd14h5xbCrLDxXc8H6r_HQ83T_mMRIqV54iw7DMYqYD2s16TZQ1jAViG3v3ePW4FboasVwwhpI_qC9z9xRgk_7LJ1sgy9Pi6PUj5_giF56bBLM57D1izlcVkZe43V_6laPPnPo3LtOrO1kfoQ1K4UoD5nZ7f5DJlA3kgUoqMgvF2fNZNfrrowsFT3wqDDCPneV5bQ0YlO_5Wz2pJaBZ2RnsEjqUzEQpEmF79jasmH1jHo2g", "payload": ""
- }
- 2023-11-29 19:09:51,429:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288771928726 HTTP/1.1" 200 1024
- 2023-11-29 19:09:51,430:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:09:51 GMT
- Content-Type: application/json
- Content-Length: 1024
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf88xspczOPLAkOksEnEUWoIt1Et-yud17SNwCH1ktyggQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "identifier": {
- "type": "dns",
- "value": "lexyy.ddns.net"
- },
- "status": "invalid",
- "expires": "2023-12-06T19:09:46Z",
- "challenges": [
- {
- "type": "http-01",
- "status": "invalid",
- "error": {
- "type": "urn:ietf:params:acme:error:unauthorized",
- "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w: 404",
- "status": 403
- },
- "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
- "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w",
- "validationRecord": [
- {
- "url": "http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w",
- "hostname": "lexyy.ddns.net",
- "port": "80",
- "addressesResolved": [
- "77.22.225.214"
- ],
- "addressUsed": "77.22.225.214"
- }
- ],
- "validated": "2023-11-29T19:09:50Z"
- }
- ]
- }
- 2023-11-29 19:09:51,430:DEBUG:acme.client:Storing nonce: nbWKegf88xspczOPLAkOksEnEUWoIt1Et-yud17SNwCH1ktyggQ
- 2023-11-29 19:09:51,431:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
- 2023-11-29 19:09:51,431:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
- 2023-11-29 19:09:51,431:DEBUG:certbot._internal.display.obj:Notifying user:
- Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
- Domain: lexyy.ddns.net
- Type: unauthorized
- Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w: 404
- Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
- 2023-11-29 19:09:51,432:DEBUG:certbot._internal.error_handler:Encountered exception:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:09:51,432:DEBUG:certbot._internal.error_handler:Calling registered functions
- 2023-11-29 19:09:51,433:INFO:certbot._internal.auth_handler:Cleaning up challenges
- 2023-11-29 19:09:51,623:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
- authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
- self._poll_authorizations(authzrs, max_retries, best_effort)
- File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
- raise errors.AuthorizationError('Some challenges have failed.')
- certbot.errors.AuthorizationError: Some challenges have failed.
- 2023-11-29 19:09:51,624:ERROR:certbot._internal.log:Some challenges have failed.
- 2023-11-29 19:14:38,322:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:14:38,333:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:14:38,334:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:14:38,385:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:14:38,671:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0>
- Prep: True
- 2023-11-29 19:14:38,671:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0>
- 2023-11-29 19:14:38,672:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:14:38,797:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:14:38,798:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:14:38,799:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:14:39,261:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:14:39,262:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:14:39 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "5jRh4Prk7nQ": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:14:43,673:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:14:43,820:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:14:43,820:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:14:43,820:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:14:44,115:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0371_key-certbot.pem
- 2023-11-29 19:14:44,124:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0371_csr-certbot.pem
- 2023-11-29 19:14:44,126:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:14:44,126:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:14:44,271:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:14:44,271:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:14:44 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8KiLtxakZx-lqvNJU2Y2VxTAEqu3sCMGK8J8GYFVTnR8
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:14:44,272:DEBUG:acme.client:Storing nonce: nbWKegf8KiLtxakZx-lqvNJU2Y2VxTAEqu3sCMGK8J8GYFVTnR8
- 2023-11-29 19:14:44,272:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:14:44,277:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4S2lMdHhha1p4LWxxdk5KVTJZMlZ4VEFFcXUzc0NNR0s4SjhHWUZWVG5SOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "hBqK9j9uUbC-hwip91dPm7KUEiJ8BDpO8iMtXMM81ems5Pej63Aqwqh06yavzkfKoCQ9LKvut-lRw9-HT8EwWSqvbNKd71aGlqs4Z07AuMB7hS2vHlJ3GDeCGObFgZbqdwo91CH-n-6D94LOA4Kh7CAxEwbWwen_AkHSSA19A5NZ27SZfKsA4VWXjRnRwvO-Mlk68t04gI5akOWrMrJgmKzXAm8QBH3OA_Y2Mnlxwmgh6V4VfLmyTqOJawrHWQ5kMXCADSvaZ9MFPTP8cHwSGkZL-9pFowSJEYwQe2hwdYkBerb_5x0sWCO3cymmh2w4y85LkZbCPER9dBIta0_WYw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:14:44,520:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
- 2023-11-29 19:14:44,521:DEBUG:acme.client:Received response:
- HTTP 429
- Server: nginx
- Date: Wed, 29 Nov 2023 19:14:44 GMT
- Content-Type: application/problem+json
- Content-Length: 213
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfizjSz8Ng__OxKDByzHSvNBg9xtLuZ24m9HqJwDd-jbLs
- {
- "type": "urn:ietf:params:acme:error:rateLimited",
- "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
- "status": 429
- }
- 2023-11-29 19:14:44,521:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
- orderr = self.acme.new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
- return cast(ClientV2, self.client).new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
- response = self._post(self.directory['newOrder'], order)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
- return self.net.post(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
- return self._post_once(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
- response = self._check_response(response, content_type=content_type)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
- raise messages.Error.from_json(jobj)
- acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:14:44,527:ERROR:certbot._internal.log:An unexpected error occurred:
- 2023-11-29 19:14:44,527:ERROR:certbot._internal.log:There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Arguments: []
- 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:17:02,831:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:17:02,940:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
- Certificate Name: lexyy.ddns.net
- Serial Number: 4333940fba7738a69ce6607bb69f195d20a
- Key Type: RSA
- Domains: lexyy.ddns.net
- Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
- Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
- Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
- 2023-11-29 19:23:11,127:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Arguments: ['--apache']
- 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:23:11,147:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:23:11,149:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:23:11,206:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:23:11,466:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0>
- Prep: True
- 2023-11-29 19:23:11,467:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0>
- 2023-11-29 19:23:11,467:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:23:11,579:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:23:11,580:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:23:11,581:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:23:12,042:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:23:12,043:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:23:11 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "UvI_f3q4_OM": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:23:15,865:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:23:16,012:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:23:16,012:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:23:16,012:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:23:16,273:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0372_key-certbot.pem
- 2023-11-29 19:23:16,283:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0372_csr-certbot.pem
- 2023-11-29 19:23:16,285:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:23:16,285:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:23:16,429:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:23:16,429:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:23:16 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8Q9np6yN8Xka9Hvxb0lNGiQzlCM3oGDFQXlhWAI3ezKM
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:23:16,429:DEBUG:acme.client:Storing nonce: nbWKegf8Q9np6yN8Xka9Hvxb0lNGiQzlCM3oGDFQXlhWAI3ezKM
- 2023-11-29 19:23:16,430:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:23:16,432:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4UTlucDZ5TjhYa2E5SHZ4YjBsTkdpUXpsQ00zb0dERlFYbGhXQUkzZXpLTSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "CF-iIb7d8eaFrazOyw9v8W_ykMDDmVOhvjtV6P0OZLthkYcAq1jRG-ZqdNCERsjtCCWoOV8Udv_3P0EW8Tq6aZreKwR6zKeuQCkJlp50VMiDW7u3bbOpaxoL11hNz7a_5VEgAMS6AIvmOgMhiqtwfZbEWkIhZOov65yzM7vMAZX_8uNwT235kzeMOOGeg7e9kIXVQuVZl7o1bTr0l9oVWv-4l-5SsCOFRT7wqMqdSH-nZh4_i91Bd2lnVOluL7jPmmG6tGQRjyTSYyoFsQnVbaHXhWDEL9tHyhbh6FLqDQREzqIeqWh0Y5hblvc0EwcgiS_f90R_TJi7EgnxEaslgw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:23:16,692:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
- 2023-11-29 19:23:16,693:DEBUG:acme.client:Received response:
- HTTP 429
- Server: nginx
- Date: Wed, 29 Nov 2023 19:23:16 GMT
- Content-Type: application/problem+json
- Content-Length: 213
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfiqg7GRC6FtHmzFPGi7fZzxtojiF1dUbPl-Qx-oS2xhaM
- {
- "type": "urn:ietf:params:acme:error:rateLimited",
- "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
- "status": 429
- }
- 2023-11-29 19:23:16,693:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
- new_lineage = _get_and_save_cert(le_client, config, domains,
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
- orderr = self.acme.new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
- return cast(ClientV2, self.client).new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
- response = self._post(self.directory['newOrder'], order)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
- return self.net.post(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
- return self._post_once(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
- response = self._check_response(response, content_type=content_type)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
- raise messages.Error.from_json(jobj)
- acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:23:16,697:ERROR:certbot._internal.log:An unexpected error occurred:
- 2023-11-29 19:23:16,697:ERROR:certbot._internal.log:There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Arguments: ['-q']
- 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:29:03,537:DEBUG:certbot._internal.log:Root logging level set at 40
- 2023-11-29 19:29:03,538:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
- 2023-11-29 19:29:03,547:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fafd308db10> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fafd308db10>
- 2023-11-29 19:29:03,560:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:29:03,560:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:29:03,560:INFO:certbot._internal.renewal:Non-interactive renewal: random delay of 20.46360467921181 seconds
- 2023-11-29 19:29:24,045:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:29:24,117:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:29:24,404:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
- Prep: True
- 2023-11-29 19:29:24,405:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
- Prep: True
- 2023-11-29 19:29:24,405:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
- 2023-11-29 19:29:24,405:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:29:24,535:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:29:24,537:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:29:24,538:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:29:25,036:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:29:25,037:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:29:24 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "4VMPz0rMiSA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:29:25,043:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:29:25,384:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0373_key-certbot.pem
- 2023-11-29 19:29:25,393:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0373_csr-certbot.pem
- 2023-11-29 19:29:25,395:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:29:25,395:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:29:25,552:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:29:25,553:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:29:25 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: jXyutbsnq670xulmvOuRCEnTDTpV26jaVuIxVYPLPKs4W-PzUvI
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:29:25,553:DEBUG:acme.client:Storing nonce: jXyutbsnq670xulmvOuRCEnTDTpV26jaVuIxVYPLPKs4W-PzUvI
- 2023-11-29 19:29:25,553:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:29:25,559:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNucTY3MHh1bG12T3VSQ0VuVERUcFYyNmphVnVJeFZZUExQS3M0Vy1QelV2SSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "WfMwTZ03YabW_9iq35mCXTW_zBDVUXWvygYIJTuZ_heHs31y_EOdvM6fgSHmXoFURrZ_gMM2s2mbeUieyd7RFJfmwASSzUDhqFVWTjysZsfUiKSyYVhVLwTiCEi_ehAvHGXe6na8fo_zy-e-dmprhy99oln0Ld6fjNgt7NGKRDDNOpLbQPmgt0SHvEEwYFf2iLoWGz_nJIrLMzJ0QhLlHOpA116z_Bwd7SbboOu5JgGu74SiNCiNNHxJdE42IteOffIvkfpuglVfaVFpFxV_rjC1QWBBMs3pWru2lWQv3p4WAYB70MD-Q1vZwKvjYh_eqFRwkjh80iqA7hbFr8-Qvw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:29:25,736:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
- 2023-11-29 19:29:25,737:DEBUG:acme.client:Received response:
- HTTP 429
- Server: nginx
- Date: Wed, 29 Nov 2023 19:29:25 GMT
- Content-Type: application/problem+json
- Content-Length: 213
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: jXyutbsnFnvGbnyX4hyPETPhm9hE2YiFiST5nQX-WaoDCV9uCK8
- {
- "type": "urn:ietf:params:acme:error:rateLimited",
- "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
- "status": 429
- }
- 2023-11-29 19:29:25,737:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:29:25,740:DEBUG:certbot._internal.renewal:Traceback was:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
- main.renew_cert(lineage_config, plugins, renewal_candidate)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
- renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
- orderr = self.acme.new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
- return cast(ClientV2, self.client).new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
- response = self._post(self.directory['newOrder'], order)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
- return self.net.post(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
- return self._post_once(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
- response = self._check_response(response, content_type=content_type)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
- raise messages.Error.from_json(jobj)
- acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:29:25,743:DEBUG:certbot._internal.display.obj:Notifying user:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 19:29:25,744:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
- 2023-11-29 19:29:25,744:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
- 2023-11-29 19:29:25,744:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 19:29:25,745:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
- renewal.handle_renewal_request(config)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
- raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
- certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
- 2023-11-29 19:29:25,746:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
- 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:certbot version: 1.21.0
- 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
- 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Arguments: []
- 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2023-11-29 19:35:40,874:DEBUG:certbot._internal.log:Root logging level set at 30
- 2023-11-29 19:35:40,875:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
- 2023-11-29 19:35:40,884:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7f5f580f9cc0> and installer <certbot._internal.cli.cli_utils._Default object at 0x7f5f580f9cc0>
- 2023-11-29 19:35:40,897:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
- 2023-11-29 19:35:40,897:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
- 2023-11-29 19:35:40,897:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
- 2023-11-29 19:35:40,968:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
- 2023-11-29 19:35:41,229:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
- Prep: True
- 2023-11-29 19:35:41,230:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin
- Interfaces: Installer, Authenticator, Plugin
- Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
- Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
- Prep: True
- 2023-11-29 19:35:41,230:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
- 2023-11-29 19:35:41,230:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
- 2023-11-29 19:35:41,360:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
- 2023-11-29 19:35:41,362:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
- 2023-11-29 19:35:41,363:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:35:41,827:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
- 2023-11-29 19:35:41,829:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:35:41 GMT
- Content-Type: application/json
- Content-Length: 752
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- {
- "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
- "meta": {
- "caaIdentities": [
- "letsencrypt.org"
- ],
- "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
- "website": "https://letsencrypt.org"
- },
- "nSDgzp4n0rU": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
- "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
- "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
- "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
- "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
- "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
- }
- 2023-11-29 19:35:41,835:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
- 2023-11-29 19:35:42,210:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0374_key-certbot.pem
- 2023-11-29 19:35:42,220:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0374_csr-certbot.pem
- 2023-11-29 19:35:42,222:DEBUG:acme.client:Requesting fresh nonce
- 2023-11-29 19:35:42,222:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
- 2023-11-29 19:35:42,368:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
- 2023-11-29 19:35:42,368:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Date: Wed, 29 Nov 2023 19:35:42 GMT
- Connection: keep-alive
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: nbWKegf8cOWJHaevemLjXKboBnmbIag_C8h_W07KUwCVDOhiPO4
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- 2023-11-29 19:35:42,368:DEBUG:acme.client:Storing nonce: nbWKegf8cOWJHaevemLjXKboBnmbIag_C8h_W07KUwCVDOhiPO4
- 2023-11-29 19:35:42,368:DEBUG:acme.client:JWS payload:
- b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
- 2023-11-29 19:35:42,371:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
- {
- "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4Y09XSkhhZXZlbUxqWEtib0JubWJJYWdfQzhoX1cwN0tVd0NWRE9oaVBPNCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
- "signature": "XX5LF3JHvf7ugMFim_0kEFzfBmk3ctAAhyHKJyQSeBCUVDV05Bec87LS2BfEHHTRNpfvkPpzOeMuaBh0zVBVsP0N7X16xsuvAZWPgO6HiYNxb0sm31Pbb7BgOUAPKLlzZWTyJZGFPqZn7cfVZE45jw6OkeMFTkK5JFmX5d3EdGSfFkHDe304B6zmBl-uJtPUSdrtWA96iJZWMCh2H1KqkvNPE98It9HDoI56eNbjkui7UXk3pSZGUil_XtJJ1oOU3PXz_-F2uQdW2Z8yjR6LJ1Lu-wpDcKKmlkgCEexQF79GlABzarWSgegfu3EHlfZAxNI9lK4FWvjVI_C99spoPw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
- }
- 2023-11-29 19:35:42,546:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
- 2023-11-29 19:35:42,547:DEBUG:acme.client:Received response:
- HTTP 429
- Server: nginx
- Date: Wed, 29 Nov 2023 19:35:42 GMT
- Content-Type: application/problem+json
- Content-Length: 213
- Connection: keep-alive
- Boulder-Requester: 974447006
- Cache-Control: public, max-age=0, no-cache
- Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
- Replay-Nonce: v0bMowfivhwCdgX8NN_y1pZ1J9myejITFoBhe10Rr3eE43lundY
- {
- "type": "urn:ietf:params:acme:error:rateLimited",
- "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
- "status": 429
- }
- 2023-11-29 19:35:42,548:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:35:42,551:DEBUG:certbot._internal.renewal:Traceback was:
- Traceback (most recent call last):
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
- main.renew_cert(lineage_config, plugins, renewal_candidate)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
- renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
- new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
- orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
- File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
- orderr = self.acme.new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
- return cast(ClientV2, self.client).new_order(csr_pem)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
- response = self._post(self.directory['newOrder'], order)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
- return self.net.post(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
- return self._post_once(*args, **kwargs)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
- response = self._check_response(response, content_type=content_type)
- File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
- raise messages.Error.from_json(jobj)
- acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
- 2023-11-29 19:35:42,553:DEBUG:certbot._internal.display.obj:Notifying user:
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 19:35:42,554:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
- 2023-11-29 19:35:42,554:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
- 2023-11-29 19:35:42,554:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
- 2023-11-29 19:35:42,555:DEBUG:certbot._internal.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/usr/bin/certbot", line 33, in <module>
- sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
- File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
- return internal_main.main(cli_args)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
- return config.func(config, plugins)
- File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
- renewal.handle_renewal_request(config)
- File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
- raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
- certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
- 2023-11-29 19:35:42,556:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement