Advertisement
LexUnlegit

Letsencrypt log

Nov 29th, 2023
49
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 187.00 KB | Source Code | 0 0
  1. 2023-11-29 11:52:46,723:DEBUG:certbot._internal.display.obj:Notifying user:
  2. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  3. 2023-11-29 11:52:46,724:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
  4. 2023-11-29 11:52:46,724:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
  5. 2023-11-29 11:52:46,724:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  6. 2023-11-29 11:52:46,724:DEBUG:certbot._internal.log:Exiting abnormally:
  7. Traceback (most recent call last):
  8. File "/snap/certbot/3462/bin/certbot", line 8, in <module>
  9. sys.exit(main())
  10. File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/main.py", line 19, in main
  11. return internal_main.main(cli_args)
  12. File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/main.py", line 1873, in main
  13. return config.func(config, plugins)
  14. File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/main.py", line 1642, in renew
  15. renewed_domains, failed_domains = renewal.handle_renewal_request(config)
  16. File "/snap/certbot/3462/lib/python3.8/site-packages/certbot/_internal/renewal.py", line 568, in handle_renewal_request
  17. raise errors.Error(
  18. certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
  19. 2023-11-29 11:52:46,725:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
  20. 2023-11-29 18:41:27,560:DEBUG:certbot._internal.main:certbot version: 1.21.0
  21. 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  22. 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Arguments: []
  23. 2023-11-29 18:41:27,561:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  24. 2023-11-29 18:41:27,571:DEBUG:certbot._internal.log:Root logging level set at 30
  25. 2023-11-29 18:41:27,572:DEBUG:certbot._internal.plugins.selection:Requested authenticator None and installer None
  26. 2023-11-29 18:41:27,618:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  27. 2023-11-29 18:41:27,855:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  28. Description: Apache Web Server plugin
  29. Interfaces: Installer, Authenticator, Plugin
  30. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  31. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40>
  32. Prep: True
  33. 2023-11-29 18:41:27,856:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fe871097c40>
  34. 2023-11-29 18:41:27,856:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  35. 2023-11-29 18:41:27,974:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  36. 2023-11-29 18:41:27,975:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  37. 2023-11-29 18:41:27,976:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:41:28,471:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  38. 2023-11-29 18:41:28,472:DEBUG:acme.client:Received response:
  39. HTTP 200
  40. Server: nginx
  41. Date: Wed, 29 Nov 2023 18:41:28 GMT
  42. Content-Type: application/json
  43. Content-Length: 752
  44. Connection: keep-alive
  45. Cache-Control: public, max-age=0, no-cache
  46. X-Frame-Options: DENY
  47. Strict-Transport-Security: max-age=604800
  48.  
  49. {
  50. "5uycbj9etJA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  51. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  52. "meta": {
  53. "caaIdentities": [
  54. "letsencrypt.org"
  55. ],
  56. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  57. "website": "https://letsencrypt.org"
  58. },
  59. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  60. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  61. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  62. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  63. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  64. }
  65. 2023-11-29 18:41:32,856:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fe870b673a0> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fe870b673a0>
  66. 2023-11-29 18:41:33,004:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  67. 2023-11-29 18:41:33,004:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  68. 2023-11-29 18:41:33,004:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  69. 2023-11-29 18:41:33,252:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0365_key-certbot.pem
  70. 2023-11-29 18:41:33,261:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0365_csr-certbot.pem
  71. 2023-11-29 18:41:33,263:DEBUG:acme.client:Requesting fresh nonce
  72. 2023-11-29 18:41:33,263:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  73. 2023-11-29 18:41:33,416:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  74. 2023-11-29 18:41:33,417:DEBUG:acme.client:Received response:
  75. HTTP 200
  76. Server: nginx
  77. Date: Wed, 29 Nov 2023 18:41:33 GMT
  78. Connection: keep-alive
  79. Cache-Control: public, max-age=0, no-cache
  80. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  81. Replay-Nonce: SFMYLIQjQNlvmJ2FmZg6fC_enIt3nUu6z-cp2it--JnSTNR-m2k
  82. X-Frame-Options: DENY
  83. Strict-Transport-Security: max-age=604800
  84.  
  85.  
  86. 2023-11-29 18:41:33,417:DEBUG:acme.client:Storing nonce: SFMYLIQjQNlvmJ2FmZg6fC_enIt3nUu6z-cp2it--JnSTNR-m2k
  87. 2023-11-29 18:41:33,417:DEBUG:acme.client:JWS payload:
  88. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  89. 2023-11-29 18:41:33,423:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  90. {
  91. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUU5sdm1KMkZtWmc2ZkNfZW5JdDNuVXU2ei1jcDJpdC0tSm5TVE5SLW0yayIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  92. "signature": "VMiigfpdJlMRqn6o7B929MfmDS2gY3ETZABMxsO3Q0-y_2u2Sdtg-B5C_h84plXKbFVGTOIy2X6TB7aOb93QSY2GaU7IT_9qm3qjx78yVmsNOPBTLSKIGSHNO-P44tYaEYO9Q1D3kjpfTdCPv8DOInmp34yhFrgPKYdFenzGM7tc8Pd1FiIXuIV6fBtxVdCA-2tw9Tjlw_25bwLey1lv2Nw5vE-ICoD6iz0odqJ1FuetlCxpDTG5tWCbXFT-OglQCnamAbZAtXx68oxf4eyzvk-9UM8TtbHsJl8d9ptdxze-rvLNc0XewUA75MTXvMtfdhF2Csn5O6h4AG14iFdOPQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  93. }
  94. 2023-11-29 18:41:33,606:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
  95. 2023-11-29 18:41:33,607:DEBUG:acme.client:Received response:
  96. HTTP 201
  97. Server: nginx
  98. Date: Wed, 29 Nov 2023 18:41:33 GMT
  99. Content-Type: application/json
  100. Content-Length: 339
  101. Connection: keep-alive
  102. Boulder-Requester: 974447006
  103. Cache-Control: public, max-age=0, no-cache
  104. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  105. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/224244431446
  106. Replay-Nonce: SFMYLIQj8RHInX0uQfX9tWOIIto2P48904Jd9NszAan2zYjqcOo
  107. X-Frame-Options: DENY
  108. Strict-Transport-Security: max-age=604800
  109.  
  110. {
  111. "status": "pending",
  112. "expires": "2023-11-30T11:50:55Z",
  113. "identifiers": [
  114. {
  115. "type": "dns",
  116. "value": "lexyy.ddns.net"
  117. }
  118. ],
  119. "authorizations": [
  120. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626"
  121. ],
  122. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/224244431446"
  123. }
  124. 2023-11-29 18:41:33,607:DEBUG:acme.client:Storing nonce: SFMYLIQj8RHInX0uQfX9tWOIIto2P48904Jd9NszAan2zYjqcOo
  125. 2023-11-29 18:41:33,608:DEBUG:acme.client:JWS payload:
  126. b''
  127. 2023-11-29 18:41:33,613:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626:
  128. {
  129. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqOFJISW5YMHVRZlg5dFdPSUl0bzJQNDg5MDRKZDlOc3pBYW4yellqcWNPbyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg2NzA3MDMyNjI2In0",
  130. "signature": "XhIxWK08QZ2Gk19zsM-pXO-yGrtGmy5fLes-awSWkBtfAjMDH8KqE-8uLObRKo0tXEUY2OuPLsgNaXDd95i1Z7rnDRPWGNn8nDWkaUdqFIZ6jqC6qz8R7Do8Re2Wadp0wzFLXHjWVQVKbWCWmYOnZoOBPqiz-jBpnn0dzB7QwKf8yBc65AGp-l1Tnnq9FRy5krjFwfvatlHWtuNhMn9-PpzGPUWleMLRQ0ICh6y6Hqzi1c3Cwpz-gxEvGX5h3jAUZcVO1Ztd8024rii21Xvi-dMJ6EA87gz6Br0cRXHjE2Cf95Xc7zbrvFif6eO1EhHKeQRNS-L6qh4uMZcM4o9euQ", "payload": ""
  131. }
  132. 2023-11-29 18:41:33,771:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/286707032626 HTTP/1.1" 200 798
  133. 2023-11-29 18:41:33,772:DEBUG:acme.client:Received response:
  134. HTTP 200
  135. Server: nginx
  136. Date: Wed, 29 Nov 2023 18:41:33 GMT
  137. Content-Type: application/json
  138. Content-Length: 798
  139. Connection: keep-alive
  140. Boulder-Requester: 974447006
  141. Cache-Control: public, max-age=0, no-cache
  142. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  143. Replay-Nonce: SFMYLIQjQcc-_R416PoIsuM6G6pgPa9nAQqgzlLjDxW9IT44zmU
  144. X-Frame-Options: DENY
  145. Strict-Transport-Security: max-age=604800
  146.  
  147. {
  148. "identifier": {
  149. "type": "dns",
  150. "value": "lexyy.ddns.net"
  151. },
  152. "status": "pending",
  153. "expires": "2023-11-30T11:50:55Z",
  154. "challenges": [
  155. {
  156. "type": "http-01",
  157. "status": "pending",
  158. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
  159. "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
  160. },
  161. {
  162. "type": "dns-01",
  163. "status": "pending",
  164. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/vDxyNA",
  165. "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
  166. },
  167. {
  168. "type": "tls-alpn-01",
  169. "status": "pending",
  170. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/jgUyAQ",
  171. "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
  172. }
  173. ]
  174. }
  175. 2023-11-29 18:41:33,773:DEBUG:acme.client:Storing nonce: SFMYLIQjQcc-_R416PoIsuM6G6pgPa9nAQqgzlLjDxW9IT44zmU
  176. 2023-11-29 18:41:33,774:INFO:certbot._internal.auth_handler:Performing the following challenges:
  177. 2023-11-29 18:41:33,774:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  178. 2023-11-29 18:41:33,789:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: lexyy.ddns.net in: /etc/apache2/sites-enabled/000-default-le-ssl.conf
  179. 2023-11-29 18:41:33,789:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  180. 2023-11-29 18:41:33,790:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  181. RewriteEngine on
  182. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  183.  
  184. 2023-11-29 18:41:33,791:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  185. <Directory /var/lib/letsencrypt/http_challenges>
  186. Require all granted
  187. </Directory>
  188. <Location /.well-known/acme-challenge>
  189. Require all granted
  190. </Location>
  191.  
  192. 2023-11-29 18:41:33,878:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default-le-ssl.conf
  193. 2023-11-29 18:41:33,878:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  194. 2023-11-29 18:41:33,879:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  195. 2023-11-29 18:41:37,032:DEBUG:acme.client:JWS payload:
  196. b'{}'
  197. 2023-11-29 18:41:37,038:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ:
  198. {
  199. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUWNjLV9SNDE2UG9Jc3VNNkc2cGdQYTluQVFxZ3psTGpEeFc5SVQ0NHptVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg2NzA3MDMyNjI2L0w4WUxlUSJ9",
  200. "signature": "dX1OvZnr8vrKDbTsxJBqHufQKEGmmol7xa0YsEOT1hcFu22ayS599q8znlYwPMVsyWIlZVVDQ_HGKB4Un6N-gO4hWr0pA3U0Q08_SS_Nny9PjTwtyawEATcwI1N7V0lnpYKCJV9spUniWzgLSXyrCxWapqJn_wM-TNfo7XKab0MGYZ-8urczsz-_07zc_O4jwZChzJ5j2cLyFI_dnf8rmr_TdrXvEbUKA_l7zco1MA3XrS-oW9wr864PdCZ15RNsWN5DTuqisXYZahYiXcNFqFKcgKA831GQ21YuiEirZsVodMM8jiPSbMawE2jsd3LAOm5jd4lbAlOsXB0oABi-_A", "payload": "e30"
  201. }
  202. 2023-11-29 18:41:37,272:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/286707032626/L8YLeQ HTTP/1.1" 200 187
  203. 2023-11-29 18:41:37,273:DEBUG:acme.client:Received response:
  204. HTTP 200
  205. Server: nginx
  206. Date: Wed, 29 Nov 2023 18:41:37 GMT
  207. Content-Type: application/json
  208. Content-Length: 187
  209. Connection: keep-alive
  210. Boulder-Requester: 974447006
  211. Cache-Control: public, max-age=0, no-cache
  212. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626>;rel="up"
  213. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ
  214. Replay-Nonce: jXyutbsnbdzc43RRzw9z4AyLKsVMAzDOUhQ-PxShnU4UePaNcI8
  215. X-Frame-Options: DENY
  216. Strict-Transport-Security: max-age=604800
  217.  
  218. {
  219. "type": "http-01",
  220. "status": "pending",
  221. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
  222. "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0"
  223. }
  224. 2023-11-29 18:41:37,273:DEBUG:acme.client:Storing nonce: jXyutbsnbdzc43RRzw9z4AyLKsVMAzDOUhQ-PxShnU4UePaNcI8
  225. 2023-11-29 18:41:37,274:INFO:certbot._internal.auth_handler:Waiting for verification...
  226. 2023-11-29 18:41:38,275:DEBUG:acme.client:JWS payload:
  227. b''
  228. 2023-11-29 18:41:38,281:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/286707032626:
  229. {
  230. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuYmR6YzQzUlJ6dzl6NEF5TEtzVk1BekRPVWhRLVB4U2huVTRVZVBhTmNJOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg2NzA3MDMyNjI2In0",
  231. "signature": "WV-0lDRS0uvCtu8MYXsKY-343LRIlFHOjZHuF_4c_S9bP4Nqteq9KyPxWDodVkPfujVQknP58CmgZleG9OpFp-OrwlTRWXNE-n6PuKZONCoqvPl7VoSXUZWHvVOz-mxXX77E_LdlZUFyJDrgD3D8hRDg4OkK6Fe-1grAISRoWHSq6hGgD6PL-Wy-mqxabxFUNANV48euSl4kM2MRkGbPSH_oMq7wLjRo1bw27gCw2T4uLLKIrne3xqQIdYZTxNt8Jd96tecp6jXcpy1BiAxPrUd6DD_ggiGvZjcEbw-lcNxKVLbmSuUyJbGHJoxj5kuDfc1TcOhxmTD4S2rGmMPkPQ", "payload": ""
  232. }
  233. 2023-11-29 18:41:38,447:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/286707032626 HTTP/1.1" 200 1024
  234. 2023-11-29 18:41:38,448:DEBUG:acme.client:Received response:
  235. HTTP 200
  236. Server: nginx
  237. Date: Wed, 29 Nov 2023 18:41:38 GMT
  238. Content-Type: application/json
  239. Content-Length: 1024
  240. Connection: keep-alive
  241. Boulder-Requester: 974447006
  242. Cache-Control: public, max-age=0, no-cache
  243. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  244. Replay-Nonce: SFMYLIQjoaO7WavJJ7Zib_VDRThwFPmotuRixXmF4-KFer6pbe8
  245. X-Frame-Options: DENY
  246. Strict-Transport-Security: max-age=604800
  247.  
  248. {
  249. "identifier": {
  250. "type": "dns",
  251. "value": "lexyy.ddns.net"
  252. },
  253. "status": "invalid",
  254. "expires": "2023-11-30T11:50:55Z",
  255. "challenges": [
  256. {
  257. "type": "http-01",
  258. "status": "invalid",
  259. "error": {
  260. "type": "urn:ietf:params:acme:error:unauthorized",
  261. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0: 404",
  262. "status": 403
  263. },
  264. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/286707032626/L8YLeQ",
  265. "token": "yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0",
  266. "validationRecord": [
  267. {
  268. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0",
  269. "hostname": "lexyy.ddns.net",
  270. "port": "80",
  271. "addressesResolved": [
  272. "77.22.225.214"
  273. ],
  274. "addressUsed": "77.22.225.214"
  275. }
  276. ],
  277. "validated": "2023-11-29T18:41:37Z"
  278. }
  279. ]
  280. }
  281. 2023-11-29 18:41:38,449:DEBUG:acme.client:Storing nonce: SFMYLIQjoaO7WavJJ7Zib_VDRThwFPmotuRixXmF4-KFer6pbe8
  282. 2023-11-29 18:41:38,449:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  283. 2023-11-29 18:41:38,450:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  284. 2023-11-29 18:41:38,450:DEBUG:certbot._internal.display.obj:Notifying user:
  285. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  286. Domain: lexyy.ddns.net
  287. Type: unauthorized
  288. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/yqpk1roGpx8cGNhqewuZ5ulYxIsrO0or-v-imdbrsB0: 404
  289.  
  290. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  291.  
  292. 2023-11-29 18:41:38,451:DEBUG:certbot._internal.error_handler:Encountered exception:
  293. Traceback (most recent call last):
  294. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  295. self._poll_authorizations(authzrs, max_retries, best_effort)
  296. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  297. raise errors.AuthorizationError('Some challenges have failed.')
  298. certbot.errors.AuthorizationError: Some challenges have failed.
  299.  
  300. 2023-11-29 18:41:38,451:DEBUG:certbot._internal.error_handler:Calling registered functions
  301. 2023-11-29 18:41:38,451:INFO:certbot._internal.auth_handler:Cleaning up challenges
  302. 2023-11-29 18:41:38,643:DEBUG:certbot._internal.log:Exiting abnormally:
  303. Traceback (most recent call last):
  304. File "/usr/bin/certbot", line 33, in <module>
  305. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  306. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  307. return internal_main.main(cli_args)
  308. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  309. return config.func(config, plugins)
  310. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  311. new_lineage = _get_and_save_cert(le_client, config, domains,
  312. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  313. renewal.renew_cert(config, domains, le_client, lineage)
  314. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  315. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  316. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  317. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  318. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  319. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  320. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  321. self._poll_authorizations(authzrs, max_retries, best_effort)
  322. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  323. raise errors.AuthorizationError('Some challenges have failed.')
  324. certbot.errors.AuthorizationError: Some challenges have failed.
  325. 2023-11-29 18:41:38,644:ERROR:certbot._internal.log:Some challenges have failed.
  326. 2023-11-29 18:43:50,806:DEBUG:certbot._internal.main:certbot version: 1.21.0
  327. 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  328. 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Arguments: ['--dry-run']
  329. 2023-11-29 18:43:50,807:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  330. 2023-11-29 18:43:50,827:DEBUG:certbot._internal.log:Root logging level set at 30
  331. 2023-11-29 18:43:50,829:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
  332. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fa8b2a8dd80> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fa8b2a8dd80>
  333. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var dry_run=True (set by user).
  334. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var server={'dry_run', 'staging'} (set by user).
  335. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var dry_run=True (set by user).
  336. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var server={'dry_run', 'staging'} (set by user).
  337. 2023-11-29 18:43:50,846:DEBUG:certbot._internal.cli:Var account={'server'} (set by user).
  338. 2023-11-29 18:43:50,871:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  339. 2023-11-29 18:43:50,872:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  340. 2023-11-29 18:43:50,872:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  341. 2023-11-29 18:43:50,925:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  342. 2023-11-29 18:43:51,184:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  343. Description: Apache Web Server plugin
  344. Interfaces: Installer, Authenticator, Plugin
  345. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  346. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
  347. Prep: True
  348. 2023-11-29 18:43:51,185:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  349. Description: Apache Web Server plugin
  350. Interfaces: Installer, Authenticator, Plugin
  351. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  352. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
  353. Prep: True
  354. 2023-11-29 18:43:51,185:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fa8b2fbfd00>
  355. 2023-11-29 18:43:51,186:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  356. 2023-11-29 18:43:51,308:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-staging-v02.api.letsencrypt.org/acme/acct/89271354', new_authzr_uri=None, terms_of_service=None), df83302bac3ba3f24f584c1c5884413d, Meta(creation_dt=datetime.datetime(2023, 2, 20, 19, 44, 14, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  357. 2023-11-29 18:43:51,309:DEBUG:acme.client:Sending GET request to https://acme-staging-v02.api.letsencrypt.org/directory.2023-11-29 18:43:51,310:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-staging-v02.api.letsencrypt.org:443
  358. 2023-11-29 18:43:51,822:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 826
  359. 2023-11-29 18:43:51,823:DEBUG:acme.client:Received response:
  360. HTTP 200
  361. Server: nginx
  362. Date: Wed, 29 Nov 2023 18:43:51 GMT
  363. Content-Type: application/json
  364. Content-Length: 826
  365. Connection: keep-alive
  366. Cache-Control: public, max-age=0, no-cache
  367. X-Frame-Options: DENY
  368. Strict-Transport-Security: max-age=604800
  369.  
  370. {
  371. "NZDQSPNp7ZA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  372. "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change",
  373. "meta": {
  374. "caaIdentities": [
  375. "letsencrypt.org"
  376. ],
  377. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  378. "website": "https://letsencrypt.org/docs/staging-environment/"
  379. },
  380. "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct",
  381. "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce",
  382. "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order",
  383. "renewalInfo": "https://acme-staging-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  384. "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert"
  385. }
  386. 2023-11-29 18:43:51,829:DEBUG:certbot._internal.display.obj:Notifying user: Simulating renewal of an existing certificate for lexyy.ddns.net
  387. 2023-11-29 18:43:52,154:DEBUG:acme.client:Requesting fresh nonce
  388. 2023-11-29 18:43:52,154:DEBUG:acme.client:Sending HEAD request to https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce.
  389. 2023-11-29 18:43:52,310:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  390. 2023-11-29 18:43:52,311:DEBUG:acme.client:Received response:
  391. HTTP 200
  392. Server: nginx
  393. Date: Wed, 29 Nov 2023 18:43:52 GMT
  394. Connection: keep-alive
  395. Cache-Control: public, max-age=0, no-cache
  396. Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
  397. Replay-Nonce: eEfWeHZdkpWYp5vqSiLWUgKhGE14JnGsJ7s_OffZx2BVZLsAQjI
  398. X-Frame-Options: DENY
  399. Strict-Transport-Security: max-age=604800
  400.  
  401.  
  402. 2023-11-29 18:43:52,311:DEBUG:acme.client:Storing nonce: eEfWeHZdkpWYp5vqSiLWUgKhGE14JnGsJ7s_OffZx2BVZLsAQjI
  403. 2023-11-29 18:43:52,311:DEBUG:acme.client:JWS payload:
  404. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  405. 2023-11-29 18:43:52,317:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/new-order:
  406. {
  407. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJlRWZXZUhaZGtwV1lwNXZxU2lMV1VnS2hHRTE0Sm5Hc0o3c19PZmZaeDJCVlpMc0FRakkiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  408. "signature": "IYW_wHbdyOmPSye9Ls4s5R7tPNHmuXyCtb-VGPIh65bLnlKPnzEOpN2RYCGUMBmEW97621j4a6sb0pt1k4tINlyNODXB4l4GQfSoIwKhg83UrXthL9CFeM398Pg2_jgXgHUqjVAdRI4vD0AonL9k79N1LzSGKEsGbimiIsxHNyCvbS0DA1DZbQ6hoYMUkJPiYkvhjkoEHGLq74BgELZuFEJwH4JnrY5Y3r2iBM-bIIvZiRSHIZLCudFM7HjjvYkeYAFjHodPcCHJH2K57rbH7CyRXA-nOBmKsco9dAM6kNf7QugvHTWEvYqneh_bxbw7RxRQ7DlS8kDzTzdZieWC1g", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  409. }
  410. 2023-11-29 18:43:52,529:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 351
  411. 2023-11-29 18:43:52,530:DEBUG:acme.client:Received response:
  412. HTTP 201
  413. Server: nginx
  414. Date: Wed, 29 Nov 2023 18:43:52 GMT
  415. Content-Type: application/json
  416. Content-Length: 351
  417. Connection: keep-alive
  418. Boulder-Requester: 89271354
  419. Cache-Control: public, max-age=0, no-cache
  420. Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
  421. Location: https://acme-staging-v02.api.letsencrypt.org/acme/order/89271354/12630257814
  422. Replay-Nonce: DjWxb77NcsZkayaKx_1u1MoJsN1YuBcWjNdSUw5NzokKIln0CPc
  423. X-Frame-Options: DENY
  424. Strict-Transport-Security: max-age=604800
  425.  
  426. {
  427. "status": "pending",
  428. "expires": "2023-12-06T18:43:52Z",
  429. "identifiers": [
  430. {
  431. "type": "dns",
  432. "value": "lexyy.ddns.net"
  433. }
  434. ],
  435. "authorizations": [
  436. "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434"
  437. ],
  438. "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/89271354/12630257814"
  439. }
  440. 2023-11-29 18:43:52,530:DEBUG:acme.client:Storing nonce: DjWxb77NcsZkayaKx_1u1MoJsN1YuBcWjNdSUw5NzokKIln0CPc
  441. 2023-11-29 18:43:52,531:DEBUG:acme.client:JWS payload:
  442. b''
  443. 2023-11-29 18:43:52,536:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434:
  444. {
  445. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJEald4Yjc3TmNzWmtheWFLeF8xdTFNb0pzTjFZdUJjV2pOZFNVdzVOem9rS0lsbjBDUGMiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvOTc2MzA4NTQzNCJ9",
  446. "signature": "PhP7a5CPI6o0Xt81VvUsDGjJhSXkHGuNCZ10yWTZo4QOojswdcPoHjO_j1gX-bQTuHMBsJRAVzwlBPVB3zezbDUAScJOFqcEe9z49iiYaDaaoKm2EcjUfYQGrisflpZRxjXBzZ4qWuRh6BDy60jj-l93OcwJiY_dtlzOgEj_2ya2vi5gM-8jasy8uSkqydv8gjTHehtIjaUVp2qxgTs-gMYw4Jq3q3kvo9lacz-E3V9z08kfP0rnXOrfAfFZ0c_27e8-MgbY7eZie2JpJNh8-agn-uK8ky_6Cweur4qVukTPSbBdOJhS3xz_AIzD6bK-yeJqjnoy9k2SQHHdltkyKQ", "payload": ""
  447. }
  448. 2023-11-29 18:43:52,706:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/9763085434 HTTP/1.1" 200 816
  449. 2023-11-29 18:43:52,707:DEBUG:acme.client:Received response:
  450. HTTP 200
  451. Server: nginx
  452. Date: Wed, 29 Nov 2023 18:43:52 GMT
  453. Content-Type: application/json
  454. Content-Length: 816
  455. Connection: keep-alive
  456. Boulder-Requester: 89271354
  457. Cache-Control: public, max-age=0, no-cache
  458. Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
  459. Replay-Nonce: DjWxb77NDJ31ibozPvp0P9Zx746K2j_WkeyFexHzTRqI27T5XZA
  460. X-Frame-Options: DENY
  461. Strict-Transport-Security: max-age=604800
  462.  
  463. {
  464. "identifier": {
  465. "type": "dns",
  466. "value": "lexyy.ddns.net"
  467. },
  468. "status": "pending",
  469. "expires": "2023-12-06T18:43:52Z",
  470. "challenges": [
  471. {
  472. "type": "http-01",
  473. "status": "pending",
  474. "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
  475. "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
  476. },
  477. {
  478. "type": "dns-01",
  479. "status": "pending",
  480. "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/fdfGxw",
  481. "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
  482. },
  483. {
  484. "type": "tls-alpn-01",
  485. "status": "pending",
  486. "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/HopTEQ",
  487. "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
  488. }
  489. ]
  490. }
  491. 2023-11-29 18:43:52,707:DEBUG:acme.client:Storing nonce: DjWxb77NDJ31ibozPvp0P9Zx746K2j_WkeyFexHzTRqI27T5XZA
  492. 2023-11-29 18:43:52,708:INFO:certbot._internal.auth_handler:Performing the following challenges:
  493. 2023-11-29 18:43:52,708:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  494. 2023-11-29 18:43:52,723:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: lexyy.ddns.net in: /etc/apache2/sites-enabled/000-default-le-ssl.conf
  495. 2023-11-29 18:43:52,723:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  496. 2023-11-29 18:43:52,724:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  497. RewriteEngine on
  498. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  499.  
  500. 2023-11-29 18:43:52,725:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  501. <Directory /var/lib/letsencrypt/http_challenges>
  502. Require all granted
  503. </Directory>
  504. <Location /.well-known/acme-challenge>
  505. Require all granted
  506. </Location>
  507.  
  508. 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  509. 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default-le-ssl.conf
  510. 2023-11-29 18:43:52,813:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  511. 2023-11-29 18:43:55,977:DEBUG:acme.client:JWS payload:
  512. b'{}'
  513. 2023-11-29 18:43:55,983:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg:
  514. {
  515. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJEald4Yjc3TkRKMzFpYm96UHZwMFA5Wng3NDZLMmpfV2tleUZleEh6VFJxSTI3VDVYWkEiLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvOTc2MzA4NTQzNC8yRklzT2cifQ",
  516. "signature": "B2ggB0GRiVEGbpPGmXti5S8ChFh3gQVEIZTMU-gHmV7qHXRHRm-pI6OR_9hVSjk3Dwj1X5qYzrcL7l9ybEfY3nHtXqi2rXpbxeW_NSpm2ZQf6xRH8eMhbixra-vPLOFf-kgTA9ZsorLZKGa8esUFpG3AAhFDt7gtqvZLEtn_bSmJREuHZm5xuN0QP9zOxr4zxWVFmKeXmogzMUWt4jKCbPXMklMgWWhak71Kfh0PyfdkcFVdoKLEXXwwtmeCcB565AbedLkYw83KxRFsLxrTWBEe8ISEn8v8s9K7sbRe_jOn8MpoM3wdisCqMXcJ6BBfBIWZbTOIBgF8RRtec_F9ww", "payload": "e30"
  517. }
  518. 2023-11-29 18:43:56,149:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/9763085434/2FIsOg HTTP/1.1" 200 193
  519. 2023-11-29 18:43:56,150:DEBUG:acme.client:Received response:
  520. HTTP 200
  521. Server: nginx
  522. Date: Wed, 29 Nov 2023 18:43:56 GMT
  523. Content-Type: application/json
  524. Content-Length: 193
  525. Connection: keep-alive
  526. Boulder-Requester: 89271354
  527. Cache-Control: public, max-age=0, no-cache
  528. Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434>;rel="up"
  529. Location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg
  530. Replay-Nonce: eEfWeHZdcgBPbZnXyj_SsAWAPfmKA5Y2eYWD7taXMS3BS7jflyw
  531. X-Frame-Options: DENY
  532. Strict-Transport-Security: max-age=604800
  533.  
  534. {
  535. "type": "http-01",
  536. "status": "pending",
  537. "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
  538. "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A"
  539. }
  540. 2023-11-29 18:43:56,150:DEBUG:acme.client:Storing nonce: eEfWeHZdcgBPbZnXyj_SsAWAPfmKA5Y2eYWD7taXMS3BS7jflyw
  541. 2023-11-29 18:43:56,151:INFO:certbot._internal.auth_handler:Waiting for verification...
  542. 2023-11-29 18:43:57,152:DEBUG:acme.client:JWS payload:
  543. b''
  544. 2023-11-29 18:43:57,158:DEBUG:acme.client:Sending POST request to https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/9763085434:
  545. {
  546. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC84OTI3MTM1NCIsICJub25jZSI6ICJlRWZXZUhaZGNnQlBiWm5YeWpfU3NBV0FQZm1LQTVZMmVZV0Q3dGFYTVMzQlM3amZseXciLCAidXJsIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvOTc2MzA4NTQzNCJ9",
  547. "signature": "WUB7wdr84sxa7BNUhiSIYpz0TwEktFggKkTxlxbjidHhBEdtusHbm1Zh5BwOr6033ZR85cuxDCo8RJ6dR-9Kw9FHeD85dv8qD7thwYr5U1NRccM-MaWsA08awltNZObq536BK9TxplcEga1O4T9TkLlBGyLiItrhXP4T5pRQCzkFOsVGmhWHrDUqf1XatTyS-ivaxNTlOxlzbi7PuEgQkdAEvUf8rieAecTF95U5qYPyCT5KCHigNYUW0VmlHsevkgybxeZguBaFgIhQhHDolRtLvVY43j-T69EWkHbljBk8Y9Eat_auIrFUuoe4XMajS2UMUmyEOvpmZe5PMlRo6A", "payload": ""
  548. }
  549. 2023-11-29 18:43:57,317:DEBUG:urllib3.connectionpool:https://acme-staging-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/9763085434 HTTP/1.1" 200 1030
  550. 2023-11-29 18:43:57,318:DEBUG:acme.client:Received response:
  551. HTTP 200
  552. Server: nginx
  553. Date: Wed, 29 Nov 2023 18:43:57 GMT
  554. Content-Type: application/json
  555. Content-Length: 1030
  556. Connection: keep-alive
  557. Boulder-Requester: 89271354
  558. Cache-Control: public, max-age=0, no-cache
  559. Link: <https://acme-staging-v02.api.letsencrypt.org/directory>;rel="index"
  560. Replay-Nonce: eEfWeHZdFES8WZKhRHKaRw4gFNNs_-n9o5aXNvSOQ3_LaxPDwFE
  561. X-Frame-Options: DENY
  562. Strict-Transport-Security: max-age=604800
  563.  
  564. {
  565. "identifier": {
  566. "type": "dns",
  567. "value": "lexyy.ddns.net"
  568. },
  569. "status": "invalid",
  570. "expires": "2023-12-06T18:43:52Z",
  571. "challenges": [
  572. {
  573. "type": "http-01",
  574. "status": "invalid",
  575. "error": {
  576. "type": "urn:ietf:params:acme:error:unauthorized",
  577. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A: 404",
  578. "status": 403
  579. },
  580. "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/9763085434/2FIsOg",
  581. "token": "fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A",
  582. "validationRecord": [
  583. {
  584. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A",
  585. "hostname": "lexyy.ddns.net",
  586. "port": "80",
  587. "addressesResolved": [
  588. "77.22.225.214"
  589. ],
  590. "addressUsed": "77.22.225.214"
  591. }
  592. ],
  593. "validated": "2023-11-29T18:43:56Z"
  594. }
  595. ]
  596. }
  597. 2023-11-29 18:43:57,318:DEBUG:acme.client:Storing nonce: eEfWeHZdFES8WZKhRHKaRw4gFNNs_-n9o5aXNvSOQ3_LaxPDwFE
  598. 2023-11-29 18:43:57,319:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  599. 2023-11-29 18:43:57,319:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  600. 2023-11-29 18:43:57,319:DEBUG:certbot._internal.display.obj:Notifying user:
  601. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  602. Domain: lexyy.ddns.net
  603. Type: unauthorized
  604. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/fHhL_jaPQujQd7cW541fFceJiwgzFiNJNFzRmklzx1A: 404
  605.  
  606. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  607.  
  608. 2023-11-29 18:43:57,320:DEBUG:certbot._internal.error_handler:Encountered exception:
  609. Traceback (most recent call last):
  610. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  611. self._poll_authorizations(authzrs, max_retries, best_effort)
  612. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  613. raise errors.AuthorizationError('Some challenges have failed.')
  614. certbot.errors.AuthorizationError: Some challenges have failed.
  615.  
  616. 2023-11-29 18:43:57,320:DEBUG:certbot._internal.error_handler:Calling registered functions
  617. 2023-11-29 18:43:57,321:INFO:certbot._internal.auth_handler:Cleaning up challenges
  618. 2023-11-29 18:43:57,531:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: Some challenges have failed.
  619. 2023-11-29 18:43:57,533:DEBUG:certbot._internal.renewal:Traceback was:
  620. Traceback (most recent call last):
  621. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
  622. main.renew_cert(lineage_config, plugins, renewal_candidate)
  623. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
  624. renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
  625. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  626. renewal.renew_cert(config, domains, le_client, lineage)
  627. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  628. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  629. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  630. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  631. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  632. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  633. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  634. self._poll_authorizations(authzrs, max_retries, best_effort)
  635. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  636. raise errors.AuthorizationError('Some challenges have failed.')
  637. certbot.errors.AuthorizationError: Some challenges have failed.
  638.  
  639. 2023-11-29 18:43:57,534:DEBUG:certbot._internal.display.obj:Notifying user:
  640. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  641. 2023-11-29 18:43:57,535:ERROR:certbot._internal.renewal:All simulated renewals failed. The following certificates could not be renewed:
  642. 2023-11-29 18:43:57,535:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
  643. 2023-11-29 18:43:57,535:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  644. 2023-11-29 18:43:57,536:DEBUG:certbot._internal.log:Exiting abnormally:
  645. Traceback (most recent call last):
  646. File "/usr/bin/certbot", line 33, in <module>
  647. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  648. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  649. return internal_main.main(cli_args)
  650. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  651. return config.func(config, plugins)
  652. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
  653. renewal.handle_renewal_request(config)
  654. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
  655. raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
  656. certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
  657. 2023-11-29 18:43:57,536:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
  658. 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:certbot version: 1.21.0
  659. 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  660. 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Arguments: []
  661. 2023-11-29 18:45:29,699:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  662. 2023-11-29 18:45:29,709:DEBUG:certbot._internal.log:Root logging level set at 30
  663. 2023-11-29 18:45:29,820:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
  664. Certificate Name: lexyy.ddns.net
  665. Serial Number: 4333940fba7738a69ce6607bb69f195d20a
  666. Key Type: RSA
  667. Domains: lexyy.ddns.net
  668. Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
  669. Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
  670. Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
  671. 2023-11-29 18:51:21,278:DEBUG:certbot._internal.main:certbot version: 1.21.0
  672. 2023-11-29 18:51:21,279:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  673. 2023-11-29 18:51:21,279:DEBUG:certbot._internal.main:Arguments: []
  674. 2023-11-29 18:51:21,280:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  675. 2023-11-29 18:51:21,307:DEBUG:certbot._internal.log:Root logging level set at 30
  676. 2023-11-29 18:51:21,451:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
  677. Certificate Name: lexyy.ddns.net
  678. Serial Number: 4333940fba7738a69ce6607bb69f195d20a
  679. Key Type: RSA
  680. Domains: lexyy.ddns.net
  681. Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
  682. Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
  683. Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
  684. 2023-11-29 18:53:19,147:DEBUG:certbot._internal.main:certbot version: 1.21.0
  685. 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  686. 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Arguments: ['--apache']
  687. 2023-11-29 18:53:19,148:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  688. 2023-11-29 18:53:19,158:DEBUG:certbot._internal.log:Root logging level set at 30
  689. 2023-11-29 18:53:19,159:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  690. 2023-11-29 18:53:19,202:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  691. 2023-11-29 18:53:19,438:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  692. Description: Apache Web Server plugin
  693. Interfaces: Installer, Authenticator, Plugin
  694. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  695. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0>
  696. Prep: True
  697. 2023-11-29 18:53:19,439:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4b3042f7f0>
  698. 2023-11-29 18:53:19,439:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  699. 2023-11-29 18:53:19,560:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  700. 2023-11-29 18:53:19,561:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  701. 2023-11-29 18:53:19,562:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:53:20,053:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  702. 2023-11-29 18:53:20,054:DEBUG:acme.client:Received response:
  703. HTTP 200
  704. Server: nginx
  705. Date: Wed, 29 Nov 2023 18:53:19 GMT
  706. Content-Type: application/json
  707. Content-Length: 752
  708. Connection: keep-alive
  709. Cache-Control: public, max-age=0, no-cache
  710. X-Frame-Options: DENY
  711. Strict-Transport-Security: max-age=604800
  712.  
  713. {
  714. "2_dy1fWdtb8": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  715. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  716. "meta": {
  717. "caaIdentities": [
  718. "letsencrypt.org"
  719. ],
  720. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  721. "website": "https://letsencrypt.org"
  722. },
  723. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  724. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  725. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  726. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  727. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  728. }
  729. 2023-11-29 18:53:57,204:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  730. 2023-11-29 18:54:08,466:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for www.lexyy.ddns.net and lexyy.ddns.net
  731. 2023-11-29 18:54:08,702:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0366_key-certbot.pem
  732. 2023-11-29 18:54:08,711:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0366_csr-certbot.pem
  733. 2023-11-29 18:54:08,713:DEBUG:acme.client:Requesting fresh nonce
  734. 2023-11-29 18:54:08,714:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  735. 2023-11-29 18:54:08,871:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  736. 2023-11-29 18:54:08,871:DEBUG:acme.client:Received response:
  737. HTTP 200
  738. Server: nginx
  739. Date: Wed, 29 Nov 2023 18:54:08 GMT
  740. Connection: keep-alive
  741. Cache-Control: public, max-age=0, no-cache
  742. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  743. Replay-Nonce: jXyutbsn0JIpcdb7TgcXSH9Aq0Ach1ytCEhKXwBZFVZOFjHKsH0
  744. X-Frame-Options: DENY
  745. Strict-Transport-Security: max-age=604800
  746.  
  747.  
  748. 2023-11-29 18:54:08,871:DEBUG:acme.client:Storing nonce: jXyutbsn0JIpcdb7TgcXSH9Aq0Ach1ytCEhKXwBZFVZOFjHKsH0
  749. 2023-11-29 18:54:08,872:DEBUG:acme.client:JWS payload:
  750. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "www.lexyy.ddns.net"\n },\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  751. 2023-11-29 18:54:08,874:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  752. {
  753. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuMEpJcGNkYjdUZ2NYU0g5QXEwQWNoMXl0Q0VoS1h3QlpGVlpPRmpIS3NIMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  754. "signature": "r3CaoQlYRXmOLnuDOeGDxuhxZ5wvAtCCyhlJnz4fTtBu-CNyQ6N0uajvxDJpPsh5sq_o7CYr3ojjwFh3pCabcN9BLcD0FmXTgiIZnrdilTC2hEfiu_yNhpjCt1IS96L8O1L1zjNgM60v6GJgBrSCjXXbGPtNPKdQQIAH717H4f3ZmlKMep780CGTxXeDyi-M9KGXEPWr_KFhokf45ulaYcP22ekilPkkL1z5YlnBnc4in1XXS1hL-VXLc5-DpEG04RWOEzj-KEsuImuLYugzn5iBaybb0nnWG1OFgJVP1kOVWrovSrBElV-bWTrE_fH0wAivCJ6tsjohaVMFZVtIqw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogInd3dy5sZXh5eS5kZG5zLm5ldCIKICAgIH0sCiAgICB7CiAgICAgICJ0eXBlIjogImRucyIsCiAgICAgICJ2YWx1ZSI6ICJsZXh5eS5kZG5zLm5ldCIKICAgIH0KICBdCn0"
  755. }
  756. 2023-11-29 18:54:09,083:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 480
  757. 2023-11-29 18:54:09,084:DEBUG:acme.client:Received response:
  758. HTTP 201
  759. Server: nginx
  760. Date: Wed, 29 Nov 2023 18:54:09 GMT
  761. Content-Type: application/json
  762. Content-Length: 480
  763. Connection: keep-alive
  764. Boulder-Requester: 974447006
  765. Cache-Control: public, max-age=0, no-cache
  766. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  767. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225710845906
  768. Replay-Nonce: jXyutbsnMu-Bi1qcaC9xLkqdvxpHKCA_Wa1qyvjAuntDz5RzvCQ
  769. X-Frame-Options: DENY
  770. Strict-Transport-Security: max-age=604800
  771.  
  772. {
  773. "status": "pending",
  774. "expires": "2023-12-06T18:54:09Z",
  775. "identifiers": [
  776. {
  777. "type": "dns",
  778. "value": "lexyy.ddns.net"
  779. },
  780. {
  781. "type": "dns",
  782. "value": "www.lexyy.ddns.net"
  783. }
  784. ],
  785. "authorizations": [
  786. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446",
  787. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456"
  788. ],
  789. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225710845906"
  790. }
  791. 2023-11-29 18:54:09,085:DEBUG:acme.client:Storing nonce: jXyutbsnMu-Bi1qcaC9xLkqdvxpHKCA_Wa1qyvjAuntDz5RzvCQ
  792. 2023-11-29 18:54:09,085:DEBUG:acme.client:JWS payload:
  793. b''
  794. 2023-11-29 18:54:09,091:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446:
  795. {
  796. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuTXUtQmkxcWNhQzl4TGtxZHZ4cEhLQ0FfV2ExcXl2akF1bnREejVSenZDUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDQ2In0",
  797. "signature": "F8on-l9UG379TO6cdFQnOcjXCZKLEcGWVFlwsitQGcZB5zdrJdBXxJf6UzJ79UpzuIb5lCtdurRRNdLl23S8F63TFAgf_diLSlqPEZrMv--8fptxsHjkJwVYlBl6oaYZKvRU6xKH4NMFBgnDFXfSHHZMN28PXvP3e-8U9FoK7KMBdhmrQtjUjOF-WtRpzhLINMMfNIFJXdwaU8tESXnQ8kyBIJt0c9zTpmfNKW0n2nSmONYiuwVsFGf-1dxld5SjSrYWzi-LQDngVVo5qlJDvwc54O-Byt6gHT5nsAJSFVRHEPyc9PsiZ7Cz5hAIO_CgOTmkeDPCJ75YX-WsNWoNiw", "payload": ""
  798. }
  799. 2023-11-29 18:54:09,252:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470446 HTTP/1.1" 200 798
  800. 2023-11-29 18:54:09,253:DEBUG:acme.client:Received response:
  801. HTTP 200
  802. Server: nginx
  803. Date: Wed, 29 Nov 2023 18:54:09 GMT
  804. Content-Type: application/json
  805. Content-Length: 798
  806. Connection: keep-alive
  807. Boulder-Requester: 974447006
  808. Cache-Control: public, max-age=0, no-cache
  809. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  810. Replay-Nonce: SFMYLIQjY40xF14TteAuzo4h6Etk2HURLJm-ZAs8hmZH6nHepOY
  811. X-Frame-Options: DENY
  812. Strict-Transport-Security: max-age=604800
  813.  
  814. {
  815. "identifier": {
  816. "type": "dns",
  817. "value": "lexyy.ddns.net"
  818. },
  819. "status": "pending",
  820. "expires": "2023-12-06T18:54:09Z",
  821. "challenges": [
  822. {
  823. "type": "http-01",
  824. "status": "pending",
  825. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
  826. "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
  827. },
  828. {
  829. "type": "dns-01",
  830. "status": "pending",
  831. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/42rutg",
  832. "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
  833. },
  834. {
  835. "type": "tls-alpn-01",
  836. "status": "pending",
  837. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/9ms10Q",
  838. "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
  839. }
  840. ]
  841. }
  842. 2023-11-29 18:54:09,254:DEBUG:acme.client:Storing nonce: SFMYLIQjY40xF14TteAuzo4h6Etk2HURLJm-ZAs8hmZH6nHepOY
  843. 2023-11-29 18:54:09,254:DEBUG:acme.client:JWS payload:
  844. b''
  845. 2023-11-29 18:54:09,260:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456:
  846. {
  847. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqWTQweEYxNFR0ZUF1em80aDZFdGsySFVSTEptLVpBczhobVpINm5IZXBPWSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDU2In0",
  848. "signature": "dOcqDnNq_TDueIPIiLKHaXEsYMdFpoWbYObkouabNFHW57vX-aQ3xXdJsBCKmbKn0NQJSn1Bs0wOanUPzADzDnGct0sp8IH-TorgzuvVzai7XTyN9Be2uHrLQdipHjgb0Nt5mXlPGOph-JVoKUdUsiq9tUqQYF5mqW5uL-5hQg8csyHmub1QgP7Z-VZjgf8lZy9H9PRlrlecOLxCJtXlFscEln8b6d8jpbm5i3SAbw99JKz2d60VC0pFOxvgx61NSTWU36LYYvRU1sXlyWcTn4VZm-hXlP_uCwA4FHWsPcgJD3QBrvRRnDsGk05umg09UWm3Fagdsk9OEgh-oR33Xw", "payload": ""
  849. }
  850. 2023-11-29 18:54:09,439:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470456 HTTP/1.1" 200 802
  851. 2023-11-29 18:54:09,440:DEBUG:acme.client:Received response:
  852. HTTP 200
  853. Server: nginx
  854. Date: Wed, 29 Nov 2023 18:54:09 GMT
  855. Content-Type: application/json
  856. Content-Length: 802
  857. Connection: keep-alive
  858. Boulder-Requester: 974447006
  859. Cache-Control: public, max-age=0, no-cache
  860. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  861. Replay-Nonce: jXyutbsnvYyb5hITrYH8_JVUJOjXrIUvqbnL18QEfbZ10BTlwCQ
  862. X-Frame-Options: DENY
  863. Strict-Transport-Security: max-age=604800
  864.  
  865. {
  866. "identifier": {
  867. "type": "dns",
  868. "value": "www.lexyy.ddns.net"
  869. },
  870. "status": "pending",
  871. "expires": "2023-12-06T18:54:09Z",
  872. "challenges": [
  873. {
  874. "type": "http-01",
  875. "status": "pending",
  876. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
  877. "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
  878. },
  879. {
  880. "type": "dns-01",
  881. "status": "pending",
  882. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/5BY4_g",
  883. "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
  884. },
  885. {
  886. "type": "tls-alpn-01",
  887. "status": "pending",
  888. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/QnU7Tg",
  889. "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
  890. }
  891. ]
  892. }
  893. 2023-11-29 18:54:09,441:DEBUG:acme.client:Storing nonce: jXyutbsnvYyb5hITrYH8_JVUJOjXrIUvqbnL18QEfbZ10BTlwCQ
  894. 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:Performing the following challenges:
  895. 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  896. 2023-11-29 18:54:09,442:INFO:certbot._internal.auth_handler:http-01 challenge for www.lexyy.ddns.net
  897. 2023-11-29 18:54:09,456:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  898. 2023-11-29 18:54:09,457:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  899. RewriteEngine on
  900. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  901.  
  902. 2023-11-29 18:54:09,458:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  903. <Directory /var/lib/letsencrypt/http_challenges>
  904. Require all granted
  905. </Directory>
  906. <Location /.well-known/acme-challenge>
  907. Require all granted
  908. </Location>
  909.  
  910. 2023-11-29 18:54:09,517:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  911. 2023-11-29 18:54:09,518:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  912. 2023-11-29 18:54:12,679:DEBUG:acme.client:JWS payload:
  913. b'{}'
  914. 2023-11-29 18:54:12,685:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w:
  915. {
  916. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNudll5YjVoSVRyWUg4X0pWVUpPalhySVV2cWJuTDE4UUVmYloxMEJUbHdDUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NDcwNDQ2L1lCX0RfdyJ9",
  917. "signature": "aub2DIQXcYPKihM8qi8JR_yWsGZ3m4Qmz5hGuwg0oMiwYYeQAzbEJp5h5EFarMMkUQ-vIA3-mPvvahOGfu1bm7SYzFw60uRhdLPjoiwXpzIRfeQPLoo_RlZ8SjC0ZGwp2Aj8Sy53Vxf1qDgH8OMb_DWymoDXM3YnhKVmvSF5RMJCKbLlL-xU4rpBSLfoSNpq8znEy4kbnmzPbkxSXvl2BsSbHNr7b0kiJ6W6M3fYk5ni_NEdtXN_Hf22K1oOAIwZVHk1e4r7a-3lHlCqRu2k-2qZGfZnkibBMDW_UF9kToLsdOcm9wXXxcDFn001_j_Snb_prhDhE30OgQ-btQyzqA", "payload": "e30"
  918. }
  919. 2023-11-29 18:54:12,849:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768470446/YB_D_w HTTP/1.1" 200 187
  920. 2023-11-29 18:54:12,850:DEBUG:acme.client:Received response:
  921. HTTP 200
  922. Server: nginx
  923. Date: Wed, 29 Nov 2023 18:54:12 GMT
  924. Content-Type: application/json
  925. Content-Length: 187
  926. Connection: keep-alive
  927. Boulder-Requester: 974447006
  928. Cache-Control: public, max-age=0, no-cache
  929. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446>;rel="up"
  930. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w
  931. Replay-Nonce: SFMYLIQjPtLoxVU7Yc6lLvA2NOonA1lsrRAf10bquBpUQlYoK2o
  932. X-Frame-Options: DENY
  933. Strict-Transport-Security: max-age=604800
  934.  
  935. {
  936. "type": "http-01",
  937. "status": "pending",
  938. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
  939. "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0"
  940. }
  941. 2023-11-29 18:54:12,850:DEBUG:acme.client:Storing nonce: SFMYLIQjPtLoxVU7Yc6lLvA2NOonA1lsrRAf10bquBpUQlYoK2o
  942. 2023-11-29 18:54:12,851:DEBUG:acme.client:JWS payload:
  943. b'{}'
  944. 2023-11-29 18:54:12,857:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw:
  945. {
  946. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqUHRMb3hWVTdZYzZsTHZBMk5Pb25BMWxzclJBZjEwYnF1QnBVUWxZb0sybyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NDcwNDU2L256NW9DdyJ9",
  947. "signature": "l_mTYyt6LeOB_RdbcVK9BtvtFdHSj6GMNmJkP0VxNbsBg045jeWAbEikGTWrUNtspEKHHmTq0T-V87p-rNmpcx6skvIJCyUox4elpt11rSJFJf91TWAYL5PwlBzOGEBQlyiUw6zcNXwbU4lt9wb4Q2_HgKR6MHyCXu1tGba8VjuS3vYz2B_w9utg4U45c63GoMEyUnaOR86gHAOpxgfDnz7rLrCZS_BJUjcpDj6BHA2GUIo_oDkUX3YqlGg80D2B_D9kbhHwo5nzfGP-fkxRftRNs7xe--F2j_bfZoULSsX92LgpTQevIGsvi2nveuf8N9HUkgJFApOooBHkmZpDuw", "payload": "e30"
  948. }
  949. 2023-11-29 18:54:13,021:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768470456/nz5oCw HTTP/1.1" 200 187
  950. 2023-11-29 18:54:13,022:DEBUG:acme.client:Received response:
  951. HTTP 200
  952. Server: nginx
  953. Date: Wed, 29 Nov 2023 18:54:12 GMT
  954. Content-Type: application/json
  955. Content-Length: 187
  956. Connection: keep-alive
  957. Boulder-Requester: 974447006
  958. Cache-Control: public, max-age=0, no-cache
  959. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456>;rel="up"
  960. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw
  961. Replay-Nonce: jXyutbsn70UL13qEfaTtLauUAUBUDOccUiVGlrw_YPEx4wLQbIQ
  962. X-Frame-Options: DENY
  963. Strict-Transport-Security: max-age=604800
  964.  
  965. {
  966. "type": "http-01",
  967. "status": "pending",
  968. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
  969. "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM"
  970. }
  971. 2023-11-29 18:54:13,022:DEBUG:acme.client:Storing nonce: jXyutbsn70UL13qEfaTtLauUAUBUDOccUiVGlrw_YPEx4wLQbIQ
  972. 2023-11-29 18:54:13,023:INFO:certbot._internal.auth_handler:Waiting for verification...
  973. 2023-11-29 18:54:14,024:DEBUG:acme.client:JWS payload:
  974. b''
  975. 2023-11-29 18:54:14,030:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470446:
  976. {
  977. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuNzBVTDEzcUVmYVR0TGF1VUFVQlVET2NjVWlWR2xyd19ZUEV4NHdMUWJJUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDQ2In0",
  978. "signature": "G9-HjqbQZPaVAYhS28IFpW4jKjHlNQQKp1_NOs7qa0Dr51Xu34MzPZ49051LvmDNfbwzCZtfvDPn73gWaKkUMq0H0JUZat5JzZvPjzxEBpvNidA7D5uv1ORw77jPIu0TvKkUs2HgxQY0tMg0oZdmzqmzqLoHXUWfn93qs4gUOAJlywQWD11qT9Oeh5iq-fb9WR6uHOZXZ7Q3uY7UpmXX5gIIfqeFHecZuOc9mIgxeS0zM3CpCgcm7cLxsLgIop_FuTwzvpkOavFdTHPgdOzhproyr4QcAZRqn-n1aMIlIWiCKPn-ZGq7jkrsSzzC2iP58U_6ySPptNH0ATXfg4Ev_g", "payload": ""
  979. }
  980. 2023-11-29 18:54:14,194:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470446 HTTP/1.1" 200 1024
  981. 2023-11-29 18:54:14,195:DEBUG:acme.client:Received response:
  982. HTTP 200
  983. Server: nginx
  984. Date: Wed, 29 Nov 2023 18:54:14 GMT
  985. Content-Type: application/json
  986. Content-Length: 1024
  987. Connection: keep-alive
  988. Boulder-Requester: 974447006
  989. Cache-Control: public, max-age=0, no-cache
  990. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  991. Replay-Nonce: SFMYLIQjtEdX7DNXmaiCxa08oiXZehibBb98liu__LmtEEdQrRI
  992. X-Frame-Options: DENY
  993. Strict-Transport-Security: max-age=604800
  994.  
  995. {
  996. "identifier": {
  997. "type": "dns",
  998. "value": "lexyy.ddns.net"
  999. },
  1000. "status": "invalid",
  1001. "expires": "2023-12-06T18:54:09Z",
  1002. "challenges": [
  1003. {
  1004. "type": "http-01",
  1005. "status": "invalid",
  1006. "error": {
  1007. "type": "urn:ietf:params:acme:error:unauthorized",
  1008. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0: 404",
  1009. "status": 403
  1010. },
  1011. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470446/YB_D_w",
  1012. "token": "PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0",
  1013. "validationRecord": [
  1014. {
  1015. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0",
  1016. "hostname": "lexyy.ddns.net",
  1017. "port": "80",
  1018. "addressesResolved": [
  1019. "77.22.225.214"
  1020. ],
  1021. "addressUsed": "77.22.225.214"
  1022. }
  1023. ],
  1024. "validated": "2023-11-29T18:54:12Z"
  1025. }
  1026. ]
  1027. }
  1028. 2023-11-29 18:54:14,195:DEBUG:acme.client:Storing nonce: SFMYLIQjtEdX7DNXmaiCxa08oiXZehibBb98liu__LmtEEdQrRI
  1029. 2023-11-29 18:54:14,196:DEBUG:acme.client:JWS payload:
  1030. b''
  1031. 2023-11-29 18:54:14,202:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768470456:
  1032. {
  1033. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqdEVkWDdETlhtYWlDeGEwOG9pWFplaGliQmI5OGxpdV9fTG10RUVkUXJSSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NDcwNDU2In0",
  1034. "signature": "Dbw5OGma8JFGiZ85qHxDMYMb-duayZiTtMaYrOmROw4zQNAFe-_k__8R35nJwEDocZqPv1c38hPVH_cpHyg2miIJQ0Lmc3dLXNBQN0Bcq2NdQSWXDPhNtOABEHTyw3PxoEzBZ1HdL9Volvgc2Aq7l2pCxw1OvSnYss0pfbPogMT26OUBAa2nRDoj6HKZEhf0n-Z4owOoKxuGKE2TiH6-daaNbqRMmdc6GuASEES73FE2f-9TGjufZFqo3ZxXnpWCtboQWICpOrWu9_uO6cjbxOo0EVM7i84WarUCgkJDkTg58C93w5pyKps7dI4HHSXwoMFUM4RYQpYgPDnGRC9q_w", "payload": ""
  1035. }
  1036. 2023-11-29 18:54:14,363:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768470456 HTTP/1.1" 200 753
  1037. 2023-11-29 18:54:14,364:DEBUG:acme.client:Received response:
  1038. HTTP 200
  1039. Server: nginx
  1040. Date: Wed, 29 Nov 2023 18:54:14 GMT
  1041. Content-Type: application/json
  1042. Content-Length: 753
  1043. Connection: keep-alive
  1044. Boulder-Requester: 974447006
  1045. Cache-Control: public, max-age=0, no-cache
  1046. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1047. Replay-Nonce: SFMYLIQjAbd3jWX0Etd-hpw6nyM0Og2tzNyRxmneomYi5Frhsn0
  1048. X-Frame-Options: DENY
  1049. Strict-Transport-Security: max-age=604800
  1050.  
  1051. {
  1052. "identifier": {
  1053. "type": "dns",
  1054. "value": "www.lexyy.ddns.net"
  1055. },
  1056. "status": "invalid",
  1057. "expires": "2023-12-06T18:54:09Z",
  1058. "challenges": [
  1059. {
  1060. "type": "http-01",
  1061. "status": "invalid",
  1062. "error": {
  1063. "type": "urn:ietf:params:acme:error:dns",
  1064. "detail": "DNS problem: NXDOMAIN looking up A for www.lexyy.ddns.net - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for www.lexyy.ddns.net - check that a DNS record exists for this domain",
  1065. "status": 400
  1066. },
  1067. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768470456/nz5oCw",
  1068. "token": "PRWFCc5JJXbkY5rMtAP9hyGlwoiyB0_GoJXS74jX3DM",
  1069. "validated": "2023-11-29T18:54:12Z"
  1070. }
  1071. ]
  1072. }
  1073. 2023-11-29 18:54:14,364:DEBUG:acme.client:Storing nonce: SFMYLIQjAbd3jWX0Etd-hpw6nyM0Og2tzNyRxmneomYi5Frhsn0
  1074. 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  1075. 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:Challenge failed for domain www.lexyy.ddns.net
  1076. 2023-11-29 18:54:14,365:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1077. 2023-11-29 18:54:14,366:INFO:certbot._internal.auth_handler:http-01 challenge for www.lexyy.ddns.net
  1078. 2023-11-29 18:54:14,366:DEBUG:certbot._internal.display.obj:Notifying user:
  1079. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  1080. Domain: www.lexyy.ddns.net
  1081. Type: dns
  1082. Detail: DNS problem: NXDOMAIN looking up A for www.lexyy.ddns.net - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for www.lexyy.ddns.net - check that a DNS record exists for this domain
  1083.  
  1084. Domain: lexyy.ddns.net
  1085. Type: unauthorized
  1086. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/PMQzqhS1wgUaH1cU9HubyjKKKp2sEss0HVuJSmVK4W0: 404
  1087.  
  1088. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  1089.  
  1090. 2023-11-29 18:54:14,367:DEBUG:certbot._internal.error_handler:Encountered exception:
  1091. Traceback (most recent call last):
  1092. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1093. self._poll_authorizations(authzrs, max_retries, best_effort)
  1094. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1095. raise errors.AuthorizationError('Some challenges have failed.')
  1096. certbot.errors.AuthorizationError: Some challenges have failed.
  1097.  
  1098. 2023-11-29 18:54:14,367:DEBUG:certbot._internal.error_handler:Calling registered functions
  1099. 2023-11-29 18:54:14,367:INFO:certbot._internal.auth_handler:Cleaning up challenges
  1100. 2023-11-29 18:54:14,555:DEBUG:certbot._internal.log:Exiting abnormally:
  1101. Traceback (most recent call last):
  1102. File "/usr/bin/certbot", line 33, in <module>
  1103. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  1104. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  1105. return internal_main.main(cli_args)
  1106. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  1107. return config.func(config, plugins)
  1108. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  1109. new_lineage = _get_and_save_cert(le_client, config, domains,
  1110. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  1111. renewal.renew_cert(config, domains, le_client, lineage)
  1112. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  1113. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  1114. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  1115. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  1116. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  1117. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  1118. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1119. self._poll_authorizations(authzrs, max_retries, best_effort)
  1120. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1121. raise errors.AuthorizationError('Some challenges have failed.')
  1122. certbot.errors.AuthorizationError: Some challenges have failed.
  1123. 2023-11-29 18:54:14,557:ERROR:certbot._internal.log:Some challenges have failed.
  1124. 2023-11-29 18:55:24,899:DEBUG:certbot._internal.main:certbot version: 1.21.0
  1125. 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  1126. 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Arguments: ['--apache']
  1127. 2023-11-29 18:55:24,900:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  1128. 2023-11-29 18:55:24,910:DEBUG:certbot._internal.log:Root logging level set at 30
  1129. 2023-11-29 18:55:24,911:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1130. 2023-11-29 18:55:24,954:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  1131. 2023-11-29 18:55:25,114:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  1132. Description: Apache Web Server plugin
  1133. Interfaces: Installer, Authenticator, Plugin
  1134. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  1135. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0>
  1136. Prep: True
  1137. 2023-11-29 18:55:25,115:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f4061c577c0>
  1138. 2023-11-29 18:55:25,115:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  1139. 2023-11-29 18:55:25,212:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  1140. 2023-11-29 18:55:25,213:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  1141. 2023-11-29 18:55:25,214:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 18:55:25,676:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  1142. 2023-11-29 18:55:25,677:DEBUG:acme.client:Received response:
  1143. HTTP 200
  1144. Server: nginx
  1145. Date: Wed, 29 Nov 2023 18:55:25 GMT
  1146. Content-Type: application/json
  1147. Content-Length: 752
  1148. Connection: keep-alive
  1149. Cache-Control: public, max-age=0, no-cache
  1150. X-Frame-Options: DENY
  1151. Strict-Transport-Security: max-age=604800
  1152.  
  1153. {
  1154. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  1155. "meta": {
  1156. "caaIdentities": [
  1157. "letsencrypt.org"
  1158. ],
  1159. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  1160. "website": "https://letsencrypt.org"
  1161. },
  1162. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  1163. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  1164. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  1165. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  1166. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert",
  1167. "wocUNx0eals": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
  1168. }
  1169. 2023-11-29 18:55:29,168:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1170. 2023-11-29 18:55:29,318:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  1171. 2023-11-29 18:55:29,318:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  1172. 2023-11-29 18:55:29,318:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  1173. 2023-11-29 18:55:29,598:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0367_key-certbot.pem
  1174. 2023-11-29 18:55:29,607:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0367_csr-certbot.pem
  1175. 2023-11-29 18:55:29,610:DEBUG:acme.client:Requesting fresh nonce
  1176. 2023-11-29 18:55:29,610:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  1177. 2023-11-29 18:55:29,758:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  1178. 2023-11-29 18:55:29,759:DEBUG:acme.client:Received response:
  1179. HTTP 200
  1180. Server: nginx
  1181. Date: Wed, 29 Nov 2023 18:55:29 GMT
  1182. Connection: keep-alive
  1183. Cache-Control: public, max-age=0, no-cache
  1184. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1185. Replay-Nonce: v0bMowfi8cccGGPzdM8N8aVK_UX3yJEb5XtxmR6HdDyqpjYCsD8
  1186. X-Frame-Options: DENY
  1187. Strict-Transport-Security: max-age=604800
  1188.  
  1189.  
  1190. 2023-11-29 18:55:29,759:DEBUG:acme.client:Storing nonce: v0bMowfi8cccGGPzdM8N8aVK_UX3yJEb5XtxmR6HdDyqpjYCsD8
  1191. 2023-11-29 18:55:29,759:DEBUG:acme.client:JWS payload:
  1192. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  1193. 2023-11-29 18:55:29,762:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  1194. {
  1195. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpOGNjY0dHUHpkTThOOGFWS19VWDN5SkViNVh0eG1SNkhkRHlxcGpZQ3NEOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  1196. "signature": "EXK2FGDvoyMRhPVv0zoCzOYonHrgcCyqygstYOvU6fWUbCifamksNswhfRpWJyInRFelUW0DDQqZqiMmBCoB464Ooo4hEDRgDf0QCZIDviDWZYBnjS6pg8vwHo_tIhBPMDabVLIc-tn2MEqYpfUUz3ZyPvOzsrfwPktWv1oR_i7bRc_VVRGBXPcGGekGGUNYcIvdYKNC2TKDbri0zUAUig86i1SX08viNQiMYGwq_pUnKFtSDbXOXnUYBC-HSLup5yEBGgm2zq0_RD91nDaI2-wBkE9WWXuDB_53K1nOzNfpDaQ8GtuqknvfzwHtHdEhG7-JSnBl-QKMUNhMT6gxfg", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  1197. }
  1198. 2023-11-29 18:55:30,082:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
  1199. 2023-11-29 18:55:30,083:DEBUG:acme.client:Received response:
  1200. HTTP 201
  1201. Server: nginx
  1202. Date: Wed, 29 Nov 2023 18:55:30 GMT
  1203. Content-Type: application/json
  1204. Content-Length: 339
  1205. Connection: keep-alive
  1206. Boulder-Requester: 974447006
  1207. Cache-Control: public, max-age=0, no-cache
  1208. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1209. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711045986
  1210. Replay-Nonce: v0bMowficW_vRCGIW6WuhCXHMHQoxtiFYpI8a1P2pLmbP4_odhc
  1211. X-Frame-Options: DENY
  1212. Strict-Transport-Security: max-age=604800
  1213.  
  1214. {
  1215. "status": "pending",
  1216. "expires": "2023-12-06T18:55:29Z",
  1217. "identifiers": [
  1218. {
  1219. "type": "dns",
  1220. "value": "lexyy.ddns.net"
  1221. }
  1222. ],
  1223. "authorizations": [
  1224. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546"
  1225. ],
  1226. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711045986"
  1227. }
  1228. 2023-11-29 18:55:30,083:DEBUG:acme.client:Storing nonce: v0bMowficW_vRCGIW6WuhCXHMHQoxtiFYpI8a1P2pLmbP4_odhc
  1229. 2023-11-29 18:55:30,084:DEBUG:acme.client:JWS payload:
  1230. b''
  1231. 2023-11-29 18:55:30,088:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546:
  1232. {
  1233. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpY1dfdlJDR0lXNld1aENYSE1IUW94dGlGWXBJOGExUDJwTG1iUDRfb2RoYyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NzQ0NTQ2In0",
  1234. "signature": "KAzDo__n72cvmSExoNe0TcC6TG_VudT9Gtebwugefxr9v0HmMIhLRuP_QREilpekZBCLe1_jb9po_J2O7HMrT_2ck9qJC8ENKOhgRvBbhV0zvYcZoS8ohoFgyGE_B9JF1RKVTzlbyJsVqLN1A7RnMgqtn6bfCMOYAFpMfGLOnalD0INuFYZBy7pO_QRS8u2gBo-q0bxcRxL4E2qjS46Ngamo3RIJLFX_6YbTz6AcPQIxDR87Fk9CaHkkBmrUZkm0PPRXDo3QsSRvcswmTENXbaIHGPbiBC_aDsfUaK_fxIU-jiPcnFTl5TQOfYxAoMuNnJnlXCM36YCp6OgYvfchVQ", "payload": ""
  1235. }
  1236. 2023-11-29 18:55:30,238:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768744546 HTTP/1.1" 200 798
  1237. 2023-11-29 18:55:30,239:DEBUG:acme.client:Received response:
  1238. HTTP 200
  1239. Server: nginx
  1240. Date: Wed, 29 Nov 2023 18:55:30 GMT
  1241. Content-Type: application/json
  1242. Content-Length: 798
  1243. Connection: keep-alive
  1244. Boulder-Requester: 974447006
  1245. Cache-Control: public, max-age=0, no-cache
  1246. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1247. Replay-Nonce: nbWKegf8FokEgNvyhUNeKmjEy2AINw2S7HuhmqtPUA_uYREAN4s
  1248. X-Frame-Options: DENY
  1249. Strict-Transport-Security: max-age=604800
  1250.  
  1251. {
  1252. "identifier": {
  1253. "type": "dns",
  1254. "value": "lexyy.ddns.net"
  1255. },
  1256. "status": "pending",
  1257. "expires": "2023-12-06T18:55:29Z",
  1258. "challenges": [
  1259. {
  1260. "type": "http-01",
  1261. "status": "pending",
  1262. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
  1263. "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
  1264. },
  1265. {
  1266. "type": "dns-01",
  1267. "status": "pending",
  1268. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/a6fYcQ",
  1269. "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
  1270. },
  1271. {
  1272. "type": "tls-alpn-01",
  1273. "status": "pending",
  1274. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/OUULOA",
  1275. "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
  1276. }
  1277. ]
  1278. }
  1279. 2023-11-29 18:55:30,240:DEBUG:acme.client:Storing nonce: nbWKegf8FokEgNvyhUNeKmjEy2AINw2S7HuhmqtPUA_uYREAN4s
  1280. 2023-11-29 18:55:30,241:INFO:certbot._internal.auth_handler:Performing the following challenges:
  1281. 2023-11-29 18:55:30,241:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1282. 2023-11-29 18:55:30,254:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  1283. 2023-11-29 18:55:30,255:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  1284. RewriteEngine on
  1285. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  1286.  
  1287. 2023-11-29 18:55:30,255:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  1288. <Directory /var/lib/letsencrypt/http_challenges>
  1289. Require all granted
  1290. </Directory>
  1291. <Location /.well-known/acme-challenge>
  1292. Require all granted
  1293. </Location>
  1294.  
  1295. 2023-11-29 18:55:30,313:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  1296. 2023-11-29 18:55:30,314:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  1297. 2023-11-29 18:55:33,490:DEBUG:acme.client:JWS payload:
  1298. b'{}'
  1299. 2023-11-29 18:55:33,497:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg:
  1300. {
  1301. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4Rm9rRWdOdnloVU5lS21qRXkyQUlOdzJTN0h1aG1xdFBVQV91WVJFQU40cyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY4NzQ0NTQ2LzVCOEJBZyJ9",
  1302. "signature": "auK6cYYijgXuyR_Lpch838qGq5nmvsQBStuOoxDDX_QDqdAUIxx979ADpBtnjUj2ohFvbseHwzUX8Mxt2EWnJWXLW1xJYVip1Hjtv5I6--X1dDti12Tsv-io1IH1sC9-CkzGOkK5BeAAa0tGsTJaN03REVuYnqL6QmWdPoUQI1b0zxpH048fifXps3F1xLzbgqQflKKCkwoQ_i5d9CgAzLVRQ4Ty-eGTi4PPTWX5Yl8qv0hcWnjJQoWONT443nUj50obn34z0FI-k4bOaNzSoAVgBAaja-tVoxbG1gmSq_olsPAOt_EkMfHLaXGtWsrSkKh6RoLNmDI4u4tGd6EDOg", "payload": "e30"
  1303. }
  1304. 2023-11-29 18:55:33,649:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288768744546/5B8BAg HTTP/1.1" 200 187
  1305. 2023-11-29 18:55:33,650:DEBUG:acme.client:Received response:
  1306. HTTP 200
  1307. Server: nginx
  1308. Date: Wed, 29 Nov 2023 18:55:33 GMT
  1309. Content-Type: application/json
  1310. Content-Length: 187
  1311. Connection: keep-alive
  1312. Boulder-Requester: 974447006
  1313. Cache-Control: public, max-age=0, no-cache
  1314. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546>;rel="up"
  1315. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg
  1316. Replay-Nonce: v0bMowfir9fPKK93kSuIgi_Y-yAGvW6Aw6g_byR1ZisNtvGGG6U
  1317. X-Frame-Options: DENY
  1318. Strict-Transport-Security: max-age=604800
  1319.  
  1320. {
  1321. "type": "http-01",
  1322. "status": "pending",
  1323. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
  1324. "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY"
  1325. }
  1326. 2023-11-29 18:55:33,650:DEBUG:acme.client:Storing nonce: v0bMowfir9fPKK93kSuIgi_Y-yAGvW6Aw6g_byR1ZisNtvGGG6U
  1327. 2023-11-29 18:55:33,651:INFO:certbot._internal.auth_handler:Waiting for verification...
  1328. 2023-11-29 18:55:34,652:DEBUG:acme.client:JWS payload:
  1329. b''
  1330. 2023-11-29 18:55:34,658:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288768744546:
  1331. {
  1332. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpcjlmUEtLOTNrU3VJZ2lfWS15QUd2VzZBdzZnX2J5UjFaaXNOdHZHR0c2VSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY4NzQ0NTQ2In0",
  1333. "signature": "pdu6SND5DmFGyizy4xJRe8pDl98ncF7Q-HTUMHoiGynOx1dWA1J64R1HBZUGl6-6ow61tB6hEaPtsQveszOD7hjmUTBn0m1XrHYCygv1eURozo5Ymzp3QFoSUq0HG4RX0EQU3xlcbjFPYPtbg2XcAXH0bInXdPoB2yHvdK3wAXUoxApadtZ8R1r-HpLiFtYoJj_oUtn836v70PssXGHaTD0bA47-BnGSlNcVPiPztY3bz_85n2UaVEHZk8GNUkya-IK0UFNPSMc6YFY6zt4WzHv_921v-3-0TYjkVnwWC_12ua-0cTfxRbQ1edqAmWEgrSUKI_Na5Nz77bcHSqarqw", "payload": ""
  1334. }
  1335. 2023-11-29 18:55:34,808:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288768744546 HTTP/1.1" 200 1024
  1336. 2023-11-29 18:55:34,809:DEBUG:acme.client:Received response:
  1337. HTTP 200
  1338. Server: nginx
  1339. Date: Wed, 29 Nov 2023 18:55:34 GMT
  1340. Content-Type: application/json
  1341. Content-Length: 1024
  1342. Connection: keep-alive
  1343. Boulder-Requester: 974447006
  1344. Cache-Control: public, max-age=0, no-cache
  1345. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1346. Replay-Nonce: v0bMowfiqrI8pUl3haN47avxzgEvqH4c5LZ-fS7O-XPGyF4f3YI
  1347. X-Frame-Options: DENY
  1348. Strict-Transport-Security: max-age=604800
  1349.  
  1350. {
  1351. "identifier": {
  1352. "type": "dns",
  1353. "value": "lexyy.ddns.net"
  1354. },
  1355. "status": "invalid",
  1356. "expires": "2023-12-06T18:55:29Z",
  1357. "challenges": [
  1358. {
  1359. "type": "http-01",
  1360. "status": "invalid",
  1361. "error": {
  1362. "type": "urn:ietf:params:acme:error:unauthorized",
  1363. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY: 404",
  1364. "status": 403
  1365. },
  1366. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288768744546/5B8BAg",
  1367. "token": "_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY",
  1368. "validationRecord": [
  1369. {
  1370. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY",
  1371. "hostname": "lexyy.ddns.net",
  1372. "port": "80",
  1373. "addressesResolved": [
  1374. "77.22.225.214"
  1375. ],
  1376. "addressUsed": "77.22.225.214"
  1377. }
  1378. ],
  1379. "validated": "2023-11-29T18:55:33Z"
  1380. }
  1381. ]
  1382. }
  1383. 2023-11-29 18:55:34,809:DEBUG:acme.client:Storing nonce: v0bMowfiqrI8pUl3haN47avxzgEvqH4c5LZ-fS7O-XPGyF4f3YI
  1384. 2023-11-29 18:55:34,810:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  1385. 2023-11-29 18:55:34,810:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1386. 2023-11-29 18:55:34,811:DEBUG:certbot._internal.display.obj:Notifying user:
  1387. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  1388. Domain: lexyy.ddns.net
  1389. Type: unauthorized
  1390. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/_eFYsZv6CKNm6NpLeuJa66CRj9-ZqMWSwse9dlVVDQY: 404
  1391.  
  1392. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  1393.  
  1394. 2023-11-29 18:55:34,811:DEBUG:certbot._internal.error_handler:Encountered exception:
  1395. Traceback (most recent call last):
  1396. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1397. self._poll_authorizations(authzrs, max_retries, best_effort)
  1398. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1399. raise errors.AuthorizationError('Some challenges have failed.')
  1400. certbot.errors.AuthorizationError: Some challenges have failed.
  1401.  
  1402. 2023-11-29 18:55:34,812:DEBUG:certbot._internal.error_handler:Calling registered functions
  1403. 2023-11-29 18:55:34,812:INFO:certbot._internal.auth_handler:Cleaning up challenges
  1404. 2023-11-29 18:55:35,002:DEBUG:certbot._internal.log:Exiting abnormally:
  1405. Traceback (most recent call last):
  1406. File "/usr/bin/certbot", line 33, in <module>
  1407. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  1408. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  1409. return internal_main.main(cli_args)
  1410. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  1411. return config.func(config, plugins)
  1412. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  1413. new_lineage = _get_and_save_cert(le_client, config, domains,
  1414. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  1415. renewal.renew_cert(config, domains, le_client, lineage)
  1416. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  1417. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  1418. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  1419. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  1420. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  1421. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  1422. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1423. self._poll_authorizations(authzrs, max_retries, best_effort)
  1424. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1425. raise errors.AuthorizationError('Some challenges have failed.')
  1426. certbot.errors.AuthorizationError: Some challenges have failed.
  1427. 2023-11-29 18:55:35,004:ERROR:certbot._internal.log:Some challenges have failed.
  1428. 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:certbot version: 1.21.0
  1429. 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  1430. 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Arguments: ['--apache']
  1431. 2023-11-29 19:00:37,800:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  1432. 2023-11-29 19:00:37,810:DEBUG:certbot._internal.log:Root logging level set at 30
  1433. 2023-11-29 19:00:37,811:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1434. 2023-11-29 19:00:37,855:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  1435. 2023-11-29 19:00:38,096:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  1436. Description: Apache Web Server plugin
  1437. Interfaces: Installer, Authenticator, Plugin
  1438. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  1439. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0>
  1440. Prep: True
  1441. 2023-11-29 19:00:38,096:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fb8ba4177f0>
  1442. 2023-11-29 19:00:38,096:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  1443. 2023-11-29 19:00:38,195:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  1444. 2023-11-29 19:00:38,196:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  1445. 2023-11-29 19:00:38,197:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:00:38,742:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  1446. 2023-11-29 19:00:38,744:DEBUG:acme.client:Received response:
  1447. HTTP 200
  1448. Server: nginx
  1449. Date: Wed, 29 Nov 2023 19:00:38 GMT
  1450. Content-Type: application/json
  1451. Content-Length: 752
  1452. Connection: keep-alive
  1453. Cache-Control: public, max-age=0, no-cache
  1454. X-Frame-Options: DENY
  1455. Strict-Transport-Security: max-age=604800
  1456.  
  1457. {
  1458. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  1459. "meta": {
  1460. "caaIdentities": [
  1461. "letsencrypt.org"
  1462. ],
  1463. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  1464. "website": "https://letsencrypt.org"
  1465. },
  1466. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  1467. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  1468. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  1469. "pmTdXKNrDjE": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  1470. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  1471. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  1472. }
  1473. 2023-11-29 19:00:43,967:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1474. 2023-11-29 19:00:44,107:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  1475. 2023-11-29 19:00:44,107:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  1476. 2023-11-29 19:00:44,107:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  1477. 2023-11-29 19:00:44,487:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0368_key-certbot.pem
  1478. 2023-11-29 19:00:44,496:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0368_csr-certbot.pem
  1479. 2023-11-29 19:00:44,498:DEBUG:acme.client:Requesting fresh nonce
  1480. 2023-11-29 19:00:44,498:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  1481. 2023-11-29 19:00:44,658:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  1482. 2023-11-29 19:00:44,658:DEBUG:acme.client:Received response:
  1483. HTTP 200
  1484. Server: nginx
  1485. Date: Wed, 29 Nov 2023 19:00:44 GMT
  1486. Connection: keep-alive
  1487. Cache-Control: public, max-age=0, no-cache
  1488. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1489. Replay-Nonce: jXyutbsnI-OUzNmpFmJK7d78rj8pUrzJ17Vv3IFNDbsX9CR1NCQ
  1490. X-Frame-Options: DENY
  1491. Strict-Transport-Security: max-age=604800
  1492.  
  1493.  
  1494. 2023-11-29 19:00:44,658:DEBUG:acme.client:Storing nonce: jXyutbsnI-OUzNmpFmJK7d78rj8pUrzJ17Vv3IFNDbsX9CR1NCQ
  1495. 2023-11-29 19:00:44,658:DEBUG:acme.client:JWS payload:
  1496. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  1497. 2023-11-29 19:00:44,661:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  1498. {
  1499. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuSS1PVXpObXBGbUpLN2Q3OHJqOHBVcnpKMTdWdjNJRk5EYnNYOUNSMU5DUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  1500. "signature": "oiaQ2qU_pcA_xtaaX1KTiFyXAnfhA7WBUpZWzhhrxjwNU2bX0IYR9w_s7rxshQO25u-ed68Uv_ABt5Sm5UXW3HMDyoDIgCG5bUevAP0yvzfJXt7eKMHFL9uNz7gnyUErxUTKPA33oyt5u4V3bqghy9qYIOpJleYRNqiFRn54yuTJyQ0QmUxMiyySpGcf0QwPNw328CADec0RjIork6SUGEkYkftwo44-4ICPi0tkjba-7NAbGe5TgiRRWG9wz5yoREUsag8WcVQqYIrBdqDK49YJMLaKOK5B_-U6AwNRRpBltm7oXdJAwbGvUXwTw5fIQ04WEh39E1_SLv3f5b5PkQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  1501. }
  1502. 2023-11-29 19:00:45,035:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
  1503. 2023-11-29 19:00:45,036:DEBUG:acme.client:Received response:
  1504. HTTP 201
  1505. Server: nginx
  1506. Date: Wed, 29 Nov 2023 19:00:44 GMT
  1507. Content-Type: application/json
  1508. Content-Length: 339
  1509. Connection: keep-alive
  1510. Boulder-Requester: 974447006
  1511. Cache-Control: public, max-age=0, no-cache
  1512. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1513. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711817466
  1514. Replay-Nonce: SFMYLIQjfF92dTHKDutNQtiV7ZLF2ORN31vyWEJBlbBbScJV384
  1515. X-Frame-Options: DENY
  1516. Strict-Transport-Security: max-age=604800
  1517.  
  1518. {
  1519. "status": "pending",
  1520. "expires": "2023-12-06T19:00:44Z",
  1521. "identifiers": [
  1522. {
  1523. "type": "dns",
  1524. "value": "lexyy.ddns.net"
  1525. }
  1526. ],
  1527. "authorizations": [
  1528. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196"
  1529. ],
  1530. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711817466"
  1531. }
  1532. 2023-11-29 19:00:45,036:DEBUG:acme.client:Storing nonce: SFMYLIQjfF92dTHKDutNQtiV7ZLF2ORN31vyWEJBlbBbScJV384
  1533. 2023-11-29 19:00:45,037:DEBUG:acme.client:JWS payload:
  1534. b''
  1535. 2023-11-29 19:00:45,041:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196:
  1536. {
  1537. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqZkY5MmRUSEtEdXROUXRpVjdaTEYyT1JOMzF2eVdFSkJsYkJiU2NKVjM4NCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODIwMTk2In0",
  1538. "signature": "bMuevnt7KkMrTGrzyVbFOde1Uiwic5eACf9Jy2w_OmC74nlETIShrCMePjMkAgIXpfahW9foqTh-_4jYonv7r7NFWcVikGgrnnvR9l-wbHx9aaRXOI0_wT4B8Lba8u90Hztcon8MXDoIIDLI-k4Sv8Xj5zpfChCXjroj4KvG4dHBJFgCIzqMey647NJ0XhsdG_zxMhhbmfwgz3Z95PUvYYQQRQSpHnHKVpOSI5_2AGkbbbmsZwAhxLymyI70BwnO__8RyxvyUYoupilPLe7Lk1nth-w0o17BfvyocYYGwgMv4TBHglWmwVuolFe2wthlGctwZTnPUuSqtBZ24_VW9w", "payload": ""
  1539. }
  1540. 2023-11-29 19:00:45,203:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769820196 HTTP/1.1" 200 798
  1541. 2023-11-29 19:00:45,204:DEBUG:acme.client:Received response:
  1542. HTTP 200
  1543. Server: nginx
  1544. Date: Wed, 29 Nov 2023 19:00:45 GMT
  1545. Content-Type: application/json
  1546. Content-Length: 798
  1547. Connection: keep-alive
  1548. Boulder-Requester: 974447006
  1549. Cache-Control: public, max-age=0, no-cache
  1550. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1551. Replay-Nonce: SFMYLIQj0BqPn6cHV9PsPwPNE5sRHYjYCH-LOC8TVQGCAQeHtIE
  1552. X-Frame-Options: DENY
  1553. Strict-Transport-Security: max-age=604800
  1554.  
  1555. {
  1556. "identifier": {
  1557. "type": "dns",
  1558. "value": "lexyy.ddns.net"
  1559. },
  1560. "status": "pending",
  1561. "expires": "2023-12-06T19:00:44Z",
  1562. "challenges": [
  1563. {
  1564. "type": "http-01",
  1565. "status": "pending",
  1566. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
  1567. "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
  1568. },
  1569. {
  1570. "type": "dns-01",
  1571. "status": "pending",
  1572. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/dOY-8g",
  1573. "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
  1574. },
  1575. {
  1576. "type": "tls-alpn-01",
  1577. "status": "pending",
  1578. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/MJ7j1A",
  1579. "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
  1580. }
  1581. ]
  1582. }
  1583. 2023-11-29 19:00:45,204:DEBUG:acme.client:Storing nonce: SFMYLIQj0BqPn6cHV9PsPwPNE5sRHYjYCH-LOC8TVQGCAQeHtIE
  1584. 2023-11-29 19:00:45,205:INFO:certbot._internal.auth_handler:Performing the following challenges:
  1585. 2023-11-29 19:00:45,206:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1586. 2023-11-29 19:00:45,218:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  1587. 2023-11-29 19:00:45,219:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  1588. RewriteEngine on
  1589. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  1590.  
  1591. 2023-11-29 19:00:45,220:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  1592. <Directory /var/lib/letsencrypt/http_challenges>
  1593. Require all granted
  1594. </Directory>
  1595. <Location /.well-known/acme-challenge>
  1596. Require all granted
  1597. </Location>
  1598.  
  1599. 2023-11-29 19:00:45,280:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  1600. 2023-11-29 19:00:45,280:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  1601. 2023-11-29 19:00:48,453:DEBUG:acme.client:JWS payload:
  1602. b'{}'
  1603. 2023-11-29 19:00:48,459:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w:
  1604. {
  1605. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIlNGTVlMSVFqMEJxUG42Y0hWOVBzUHdQTkU1c1JIWWpZQ0gtTE9DOFRWUUdDQVFlSHRJRSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY5ODIwMTk2L1hYbjMydyJ9",
  1606. "signature": "hm3F64xbsAsfd7XOy1a5TEomnDpSrXxovgF7LZ-IFBwDDVEym30b8HOLhLbDLeqsyvF1ftyFYc0GVLXx3U9qC1B-Su-6sQevFLO7vD1k4jrJfI6w8lnHHzOZQgJ4QJdQufN9LMxIWgwk0oZ_Vj9bSkEqgBjjeWwUoRHVDZH27bIH7JKJWEGJkJZAKzZxFwESv6rMsIH35Gh9JT8vYWsq-HGD6ElXQrgSmdITrOvXEEqA8P2Ky6bUKR1FABZSxfjmVCyLQAsh7FR3BJxZILcYp-1t7axHEWWZT1WorW7DRye89w14X6Hf9Yc0m0zJBIMJdLWsyalDT-sbXqmNcI21ew", "payload": "e30"
  1607. }
  1608. 2023-11-29 19:00:48,665:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288769820196/XXn32w HTTP/1.1" 200 187
  1609. 2023-11-29 19:00:48,666:DEBUG:acme.client:Received response:
  1610. HTTP 200
  1611. Server: nginx
  1612. Date: Wed, 29 Nov 2023 19:00:48 GMT
  1613. Content-Type: application/json
  1614. Content-Length: 187
  1615. Connection: keep-alive
  1616. Boulder-Requester: 974447006
  1617. Cache-Control: public, max-age=0, no-cache
  1618. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196>;rel="up"
  1619. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w
  1620. Replay-Nonce: jXyutbsnP3-yiA5LOPnAyXD0JUM5ACHunZx7Fef9CXvWywUCQEA
  1621. X-Frame-Options: DENY
  1622. Strict-Transport-Security: max-age=604800
  1623.  
  1624. {
  1625. "type": "http-01",
  1626. "status": "pending",
  1627. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
  1628. "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI"
  1629. }
  1630. 2023-11-29 19:00:48,666:DEBUG:acme.client:Storing nonce: jXyutbsnP3-yiA5LOPnAyXD0JUM5ACHunZx7Fef9CXvWywUCQEA
  1631. 2023-11-29 19:00:48,667:INFO:certbot._internal.auth_handler:Waiting for verification...
  1632. 2023-11-29 19:00:49,668:DEBUG:acme.client:JWS payload:
  1633. b''
  1634. 2023-11-29 19:00:49,674:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769820196:
  1635. {
  1636. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNuUDMteWlBNUxPUG5BeVhEMEpVTTVBQ0h1blp4N0ZlZjlDWHZXeXdVQ1FFQSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODIwMTk2In0",
  1637. "signature": "KcR1ZKzfamezMyBw8gQ2r_puj5KfQ0ETJRIzCEcE6N2T-AKRaHZQsNGvI9ZKk8_mZIEos8nf5Vz1lDjBVy7yQr_8lV7rKTHHUYbl69ClydVEglaTuIrLn_FsiGZsaIbHhkMSivxNMmoGDB5iX54J2KQ8tojDxrQVvcv1CuPtuTmALCzY2lb0ecukF2V6bom1yYDtt5daDCJ2cedxQGNemsLklcS1cCVIohFhKLvTmo6u75gES-ixLgnqnDPaWicsrBsXidlmwrexZw1P1b_I_bQDXZl6jq48OwTcRsewayM4lJawdZQk6qkNVB81DNpNtIf7xJSy2aMc4VIasVtMOQ", "payload": ""
  1638. }
  1639. 2023-11-29 19:00:49,836:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769820196 HTTP/1.1" 200 1024
  1640. 2023-11-29 19:00:49,837:DEBUG:acme.client:Received response:
  1641. HTTP 200
  1642. Server: nginx
  1643. Date: Wed, 29 Nov 2023 19:00:49 GMT
  1644. Content-Type: application/json
  1645. Content-Length: 1024
  1646. Connection: keep-alive
  1647. Boulder-Requester: 974447006
  1648. Cache-Control: public, max-age=0, no-cache
  1649. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1650. Replay-Nonce: SFMYLIQjB-btGmS6pOpyE6mkCWPpLinLNsopA_o_tDIqRuiuAF8
  1651. X-Frame-Options: DENY
  1652. Strict-Transport-Security: max-age=604800
  1653.  
  1654. {
  1655. "identifier": {
  1656. "type": "dns",
  1657. "value": "lexyy.ddns.net"
  1658. },
  1659. "status": "invalid",
  1660. "expires": "2023-12-06T19:00:44Z",
  1661. "challenges": [
  1662. {
  1663. "type": "http-01",
  1664. "status": "invalid",
  1665. "error": {
  1666. "type": "urn:ietf:params:acme:error:unauthorized",
  1667. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI: 404",
  1668. "status": 403
  1669. },
  1670. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769820196/XXn32w",
  1671. "token": "4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI",
  1672. "validationRecord": [
  1673. {
  1674. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI",
  1675. "hostname": "lexyy.ddns.net",
  1676. "port": "80",
  1677. "addressesResolved": [
  1678. "77.22.225.214"
  1679. ],
  1680. "addressUsed": "77.22.225.214"
  1681. }
  1682. ],
  1683. "validated": "2023-11-29T19:00:48Z"
  1684. }
  1685. ]
  1686. }
  1687. 2023-11-29 19:00:49,837:DEBUG:acme.client:Storing nonce: SFMYLIQjB-btGmS6pOpyE6mkCWPpLinLNsopA_o_tDIqRuiuAF8
  1688. 2023-11-29 19:00:49,838:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  1689. 2023-11-29 19:00:49,838:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1690. 2023-11-29 19:00:49,838:DEBUG:certbot._internal.display.obj:Notifying user:
  1691. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  1692. Domain: lexyy.ddns.net
  1693. Type: unauthorized
  1694. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/4ntqDh3q2272IuGhDdHzo0b3TZKzmMfSO0Y-1w3B1fI: 404
  1695.  
  1696. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  1697.  
  1698. 2023-11-29 19:00:49,839:DEBUG:certbot._internal.error_handler:Encountered exception:
  1699. Traceback (most recent call last):
  1700. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1701. self._poll_authorizations(authzrs, max_retries, best_effort)
  1702. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1703. raise errors.AuthorizationError('Some challenges have failed.')
  1704. certbot.errors.AuthorizationError: Some challenges have failed.
  1705.  
  1706. 2023-11-29 19:00:49,840:DEBUG:certbot._internal.error_handler:Calling registered functions
  1707. 2023-11-29 19:00:49,840:INFO:certbot._internal.auth_handler:Cleaning up challenges
  1708. 2023-11-29 19:00:50,033:DEBUG:certbot._internal.log:Exiting abnormally:
  1709. Traceback (most recent call last):
  1710. File "/usr/bin/certbot", line 33, in <module>
  1711. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  1712. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  1713. return internal_main.main(cli_args)
  1714. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  1715. return config.func(config, plugins)
  1716. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  1717. new_lineage = _get_and_save_cert(le_client, config, domains,
  1718. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  1719. renewal.renew_cert(config, domains, le_client, lineage)
  1720. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  1721. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  1722. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  1723. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  1724. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  1725. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  1726. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  1727. self._poll_authorizations(authzrs, max_retries, best_effort)
  1728. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  1729. raise errors.AuthorizationError('Some challenges have failed.')
  1730. certbot.errors.AuthorizationError: Some challenges have failed.
  1731. 2023-11-29 19:00:50,035:ERROR:certbot._internal.log:Some challenges have failed.
  1732. 2023-11-29 19:00:53,221:DEBUG:certbot._internal.main:certbot version: 1.21.0
  1733. 2023-11-29 19:00:53,221:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  1734. 2023-11-29 19:00:53,222:DEBUG:certbot._internal.main:Arguments: ['--apache']
  1735. 2023-11-29 19:00:53,222:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  1736. 2023-11-29 19:00:53,232:DEBUG:certbot._internal.log:Root logging level set at 30
  1737. 2023-11-29 19:00:53,232:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1738. 2023-11-29 19:00:53,278:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  1739. 2023-11-29 19:00:53,530:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  1740. Description: Apache Web Server plugin
  1741. Interfaces: Installer, Authenticator, Plugin
  1742. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  1743. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0>
  1744. Prep: True
  1745. 2023-11-29 19:00:53,531:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7febb90cf7c0>
  1746. 2023-11-29 19:00:53,531:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  1747. 2023-11-29 19:00:53,650:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  1748. 2023-11-29 19:00:53,650:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  1749. 2023-11-29 19:00:53,651:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:00:54,099:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  1750. 2023-11-29 19:00:54,100:DEBUG:acme.client:Received response:
  1751. HTTP 200
  1752. Server: nginx
  1753. Date: Wed, 29 Nov 2023 19:00:54 GMT
  1754. Content-Type: application/json
  1755. Content-Length: 752
  1756. Connection: keep-alive
  1757. Cache-Control: public, max-age=0, no-cache
  1758. X-Frame-Options: DENY
  1759. Strict-Transport-Security: max-age=604800
  1760.  
  1761. {
  1762. "IugVZQZNsBA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  1763. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  1764. "meta": {
  1765. "caaIdentities": [
  1766. "letsencrypt.org"
  1767. ],
  1768. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  1769. "website": "https://letsencrypt.org"
  1770. },
  1771. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  1772. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  1773. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  1774. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  1775. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  1776. }
  1777. 2023-11-29 19:00:58,848:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  1778. 2023-11-29 19:00:58,993:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  1779. 2023-11-29 19:00:58,993:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  1780. 2023-11-29 19:00:58,993:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  1781. 2023-11-29 19:00:59,322:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0369_key-certbot.pem
  1782. 2023-11-29 19:00:59,331:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0369_csr-certbot.pem
  1783. 2023-11-29 19:00:59,334:DEBUG:acme.client:Requesting fresh nonce
  1784. 2023-11-29 19:00:59,334:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  1785. 2023-11-29 19:00:59,479:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  1786. 2023-11-29 19:00:59,480:DEBUG:acme.client:Received response:
  1787. HTTP 200
  1788. Server: nginx
  1789. Date: Wed, 29 Nov 2023 19:00:59 GMT
  1790. Connection: keep-alive
  1791. Cache-Control: public, max-age=0, no-cache
  1792. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1793. Replay-Nonce: v0bMowfi0UV4GsC3cfx9VEDHVe-DNGNxnbfcdnz4UFw9wwPDaEQ
  1794. X-Frame-Options: DENY
  1795. Strict-Transport-Security: max-age=604800
  1796.  
  1797.  
  1798. 2023-11-29 19:00:59,480:DEBUG:acme.client:Storing nonce: v0bMowfi0UV4GsC3cfx9VEDHVe-DNGNxnbfcdnz4UFw9wwPDaEQ
  1799. 2023-11-29 19:00:59,480:DEBUG:acme.client:JWS payload:
  1800. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  1801. 2023-11-29 19:00:59,484:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  1802. {
  1803. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpMFVWNEdzQzNjZng5VkVESFZlLUROR054bmJmY2RuejRVRnc5d3dQRGFFUSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  1804. "signature": "rMB0mjnNd-l0wff27XNk2oBvYC_KNOItiSytvGc0GRoZGCIvEern-ImGAsfBT3lCrnn1baeB0MnBVGs3T1NMzFLTpSjWIBfty_2fxOFrmpptorv11Ndk_GV-hHD1k18pLPWYSbiyzjfCwyXKPSFOw8HnsTKFIkrksBMTyc154FhcOzhhtSZ0g-_H9-hRUW4l2FJ1VKbWJA4YREjxTJAtM4PMixQDR4bNF7xbgkWWp2ZuAj21_OmkealJWSaJqP6JtTSuZnlT84xRCXksCrHuM9x-DMEplpz9tX8DtuuCyLjPnxOLYNhX2Lm0KqwmEPmRq_OSPvOCd1GzXDa8NjLsgQ", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  1805. }
  1806. 2023-11-29 19:00:59,870:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
  1807. 2023-11-29 19:00:59,871:DEBUG:acme.client:Received response:
  1808. HTTP 201
  1809. Server: nginx
  1810. Date: Wed, 29 Nov 2023 19:00:59 GMT
  1811. Content-Type: application/json
  1812. Content-Length: 339
  1813. Connection: keep-alive
  1814. Boulder-Requester: 974447006
  1815. Cache-Control: public, max-age=0, no-cache
  1816. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1817. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225711851526
  1818. Replay-Nonce: v0bMowfiHIZTumaC_7dvMxGEF2SdAzlwsfUrOahfbqRI5cQ2ZGw
  1819. X-Frame-Options: DENY
  1820. Strict-Transport-Security: max-age=604800
  1821.  
  1822. {
  1823. "status": "pending",
  1824. "expires": "2023-12-06T19:00:59Z",
  1825. "identifiers": [
  1826. {
  1827. "type": "dns",
  1828. "value": "lexyy.ddns.net"
  1829. }
  1830. ],
  1831. "authorizations": [
  1832. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496"
  1833. ],
  1834. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225711851526"
  1835. }
  1836. 2023-11-29 19:00:59,872:DEBUG:acme.client:Storing nonce: v0bMowfiHIZTumaC_7dvMxGEF2SdAzlwsfUrOahfbqRI5cQ2ZGw
  1837. 2023-11-29 19:00:59,872:DEBUG:acme.client:JWS payload:
  1838. b''
  1839. 2023-11-29 19:00:59,878:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496:
  1840. {
  1841. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpSElaVHVtYUNfN2R2TXhHRUYyU2RBemx3c2ZVck9haGZicVJJNWNRMlpHdyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODY5NDk2In0",
  1842. "signature": "Vfys0HMV68VABz0zS73yqUA5oz8RuiX3CVTSJo4w430eOWCLTad8fPxN3LqezOBlUbY0x9VyNEOmm6kCdDFOzfTK-syxxFo7dP19p_AMnrNLb3U7GF-8aF8j5ngizuU_MQ9QSOWAT122d2WHrLH-u5IXAfaTRCKqsjHJCo7M5qoPRjf_iRj3e-LRL04QN_Z4_B9fYE8gg4tBULIVNqNsIt50LLUtFTVbO0YsPe6112uuSL6wdTlrMOHujyVuhAwaKwqG7jdgyUb8eL-Xy2xNSpIVhUPwpbvco2Ib4E0en9KL5ToCMKHzV2foZR_xOLGmtNvXUaVZZRmRBVfxQyHepQ", "payload": ""
  1843. }
  1844. 2023-11-29 19:01:00,029:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769869496 HTTP/1.1" 200 798
  1845. 2023-11-29 19:01:00,030:DEBUG:acme.client:Received response:
  1846. HTTP 200
  1847. Server: nginx
  1848. Date: Wed, 29 Nov 2023 19:00:59 GMT
  1849. Content-Type: application/json
  1850. Content-Length: 798
  1851. Connection: keep-alive
  1852. Boulder-Requester: 974447006
  1853. Cache-Control: public, max-age=0, no-cache
  1854. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1855. Replay-Nonce: v0bMowfigBGeLrNAlJAMaI-bGSB3eWrLt_SLNd1zg2sXYI6gk3I
  1856. X-Frame-Options: DENY
  1857. Strict-Transport-Security: max-age=604800
  1858.  
  1859. {
  1860. "identifier": {
  1861. "type": "dns",
  1862. "value": "lexyy.ddns.net"
  1863. },
  1864. "status": "pending",
  1865. "expires": "2023-12-06T19:00:59Z",
  1866. "challenges": [
  1867. {
  1868. "type": "http-01",
  1869. "status": "pending",
  1870. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
  1871. "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
  1872. },
  1873. {
  1874. "type": "dns-01",
  1875. "status": "pending",
  1876. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/m6ZLuw",
  1877. "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
  1878. },
  1879. {
  1880. "type": "tls-alpn-01",
  1881. "status": "pending",
  1882. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/qwCx-Q",
  1883. "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
  1884. }
  1885. ]
  1886. }
  1887. 2023-11-29 19:01:00,031:DEBUG:acme.client:Storing nonce: v0bMowfigBGeLrNAlJAMaI-bGSB3eWrLt_SLNd1zg2sXYI6gk3I
  1888. 2023-11-29 19:01:00,032:INFO:certbot._internal.auth_handler:Performing the following challenges:
  1889. 2023-11-29 19:01:00,032:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1890. 2023-11-29 19:01:00,044:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  1891. 2023-11-29 19:01:00,045:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  1892. RewriteEngine on
  1893. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  1894.  
  1895. 2023-11-29 19:01:00,046:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  1896. <Directory /var/lib/letsencrypt/http_challenges>
  1897. Require all granted
  1898. </Directory>
  1899. <Location /.well-known/acme-challenge>
  1900. Require all granted
  1901. </Location>
  1902.  
  1903. 2023-11-29 19:01:00,106:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  1904. 2023-11-29 19:01:00,106:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  1905. 2023-11-29 19:01:03,273:DEBUG:acme.client:JWS payload:
  1906. b'{}'
  1907. 2023-11-29 19:01:03,279:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w:
  1908. {
  1909. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpZ0JHZUxyTkFsSkFNYUktYkdTQjNlV3JMdF9TTE5kMXpnMnNYWUk2Z2szSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzY5ODY5NDk2L1VCNTk2dyJ9",
  1910. "signature": "AK5KaT-IGYujjHChQ_hgSEKp-rGBouGwzShaFi4zXZY0SWkhjVNP8eQU-uL0sHUN_GWq7UL-AmaMf3yTqmNDPNjdCl4p5hFiYi6i17te9T0fBEiMM7YNMTO0Nk_atBdiGgNpPXzep1-rsKXJpKaIlaO8xlc-PuEHw_5fYKc90dNI7KsAZxalVM93a9XpfPtfA7wK4Pdp-_4SJwuaGoB3ImlT83nhAo7-yUPCRA0uuX180xAckQfOLNl2JLJ66f6mKuJ6fb7UxwijO6b8dqDi1KUev719jJG2N1TUPuM46e8lCpPP8CvgXtlvpIY691zaV8NNtFn_anu7J856fmtAcw", "payload": "e30"
  1911. }
  1912. 2023-11-29 19:01:03,444:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288769869496/UB596w HTTP/1.1" 200 187
  1913. 2023-11-29 19:01:03,445:DEBUG:acme.client:Received response:
  1914. HTTP 200
  1915. Server: nginx
  1916. Date: Wed, 29 Nov 2023 19:01:03 GMT
  1917. Content-Type: application/json
  1918. Content-Length: 187
  1919. Connection: keep-alive
  1920. Boulder-Requester: 974447006
  1921. Cache-Control: public, max-age=0, no-cache
  1922. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496>;rel="up"
  1923. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w
  1924. Replay-Nonce: v0bMowfiYverh4ktDEmkZ9eM3M3ul-9DAcmpq6RDZJq_NtrgjQc
  1925. X-Frame-Options: DENY
  1926. Strict-Transport-Security: max-age=604800
  1927.  
  1928. {
  1929. "type": "http-01",
  1930. "status": "pending",
  1931. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
  1932. "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM"
  1933. }
  1934. 2023-11-29 19:01:03,446:DEBUG:acme.client:Storing nonce: v0bMowfiYverh4ktDEmkZ9eM3M3ul-9DAcmpq6RDZJq_NtrgjQc
  1935. 2023-11-29 19:01:03,446:INFO:certbot._internal.auth_handler:Waiting for verification...
  1936. 2023-11-29 19:01:04,448:DEBUG:acme.client:JWS payload:
  1937. b''
  1938. 2023-11-29 19:01:04,454:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288769869496:
  1939. {
  1940. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2ZpWXZlcmg0a3RERW1rWjllTTNNM3VsLTlEQWNtcHE2UkRaSnFfTnRyZ2pRYyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzY5ODY5NDk2In0",
  1941. "signature": "HBiQc6mgbOOzyULLxtIQBi8dr3gMiASVbFQyXUiK9u1HFqVBzlwHkjkK6WtNcndf9Td-RIWYf8e0-DXQOBbji0japOIq38jpeyfAv7v0Vb-82JNIq_3pEDJdtbQ6ou-uKgc7N1YfHVxwqPS66FiwtiFXIVS7y3nuf153J_EnirNU3oqeGiqjZeHVoHE3w3_4CbNquSVj2nYi8FD8YZ_b9laU8U-I5a7Wkqvw8V1VhPc3twdLO6ICBvzMfQzXN96XM-bhSImdO_qcA6k9p76GfrPxGhVkKPvVyC1NVy7IJtx9W5P6znjhkweykHKsHf_k4gb8i-4IXGXs39ZYEVaD2Q", "payload": ""
  1942. }
  1943. 2023-11-29 19:01:04,607:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288769869496 HTTP/1.1" 200 1024
  1944. 2023-11-29 19:01:04,608:DEBUG:acme.client:Received response:
  1945. HTTP 200
  1946. Server: nginx
  1947. Date: Wed, 29 Nov 2023 19:01:04 GMT
  1948. Content-Type: application/json
  1949. Content-Length: 1024
  1950. Connection: keep-alive
  1951. Boulder-Requester: 974447006
  1952. Cache-Control: public, max-age=0, no-cache
  1953. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  1954. Replay-Nonce: nbWKegf8GaiZr52S6SwBYikUSTi2ciinf1NMlG_iPSVu5O_kiMY
  1955. X-Frame-Options: DENY
  1956. Strict-Transport-Security: max-age=604800
  1957.  
  1958. {
  1959. "identifier": {
  1960. "type": "dns",
  1961. "value": "lexyy.ddns.net"
  1962. },
  1963. "status": "invalid",
  1964. "expires": "2023-12-06T19:00:59Z",
  1965. "challenges": [
  1966. {
  1967. "type": "http-01",
  1968. "status": "invalid",
  1969. "error": {
  1970. "type": "urn:ietf:params:acme:error:unauthorized",
  1971. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM: 404",
  1972. "status": 403
  1973. },
  1974. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288769869496/UB596w",
  1975. "token": "FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM",
  1976. "validationRecord": [
  1977. {
  1978. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM",
  1979. "hostname": "lexyy.ddns.net",
  1980. "port": "80",
  1981. "addressesResolved": [
  1982. "77.22.225.214"
  1983. ],
  1984. "addressUsed": "77.22.225.214"
  1985. }
  1986. ],
  1987. "validated": "2023-11-29T19:01:03Z"
  1988. }
  1989. ]
  1990. }
  1991. 2023-11-29 19:01:04,608:DEBUG:acme.client:Storing nonce: nbWKegf8GaiZr52S6SwBYikUSTi2ciinf1NMlG_iPSVu5O_kiMY
  1992. 2023-11-29 19:01:04,609:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  1993. 2023-11-29 19:01:04,609:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  1994. 2023-11-29 19:01:04,609:DEBUG:certbot._internal.display.obj:Notifying user:
  1995. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  1996. Domain: lexyy.ddns.net
  1997. Type: unauthorized
  1998. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/FjjCLmhxuur3d3tFrSdJPa8VQGUrGEacCoPnT5ALuzM: 404
  1999.  
  2000. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  2001.  
  2002. 2023-11-29 19:01:04,610:DEBUG:certbot._internal.error_handler:Encountered exception:
  2003. Traceback (most recent call last):
  2004. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  2005. self._poll_authorizations(authzrs, max_retries, best_effort)
  2006. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  2007. raise errors.AuthorizationError('Some challenges have failed.')
  2008. certbot.errors.AuthorizationError: Some challenges have failed.
  2009.  
  2010. 2023-11-29 19:01:04,610:DEBUG:certbot._internal.error_handler:Calling registered functions
  2011. 2023-11-29 19:01:04,611:INFO:certbot._internal.auth_handler:Cleaning up challenges
  2012. 2023-11-29 19:01:04,801:DEBUG:certbot._internal.log:Exiting abnormally:
  2013. Traceback (most recent call last):
  2014. File "/usr/bin/certbot", line 33, in <module>
  2015. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2016. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2017. return internal_main.main(cli_args)
  2018. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2019. return config.func(config, plugins)
  2020. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  2021. new_lineage = _get_and_save_cert(le_client, config, domains,
  2022. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2023. renewal.renew_cert(config, domains, le_client, lineage)
  2024. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2025. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2026. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2027. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2028. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  2029. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  2030. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  2031. self._poll_authorizations(authzrs, max_retries, best_effort)
  2032. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  2033. raise errors.AuthorizationError('Some challenges have failed.')
  2034. certbot.errors.AuthorizationError: Some challenges have failed.
  2035. 2023-11-29 19:01:04,802:ERROR:certbot._internal.log:Some challenges have failed.
  2036. 2023-11-29 19:09:40,639:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2037. 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2038. 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Arguments: ['--apache']
  2039. 2023-11-29 19:09:40,640:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2040. 2023-11-29 19:09:40,660:DEBUG:certbot._internal.log:Root logging level set at 30
  2041. 2023-11-29 19:09:40,661:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2042. 2023-11-29 19:09:40,717:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  2043. 2023-11-29 19:09:40,963:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2044. Description: Apache Web Server plugin
  2045. Interfaces: Installer, Authenticator, Plugin
  2046. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2047. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0>
  2048. Prep: True
  2049. 2023-11-29 19:09:40,964:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f417e2af7c0>
  2050. 2023-11-29 19:09:40,964:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  2051. 2023-11-29 19:09:41,089:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  2052. 2023-11-29 19:09:41,090:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  2053. 2023-11-29 19:09:41,091:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:09:41,558:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  2054. 2023-11-29 19:09:41,559:DEBUG:acme.client:Received response:
  2055. HTTP 200
  2056. Server: nginx
  2057. Date: Wed, 29 Nov 2023 19:09:41 GMT
  2058. Content-Type: application/json
  2059. Content-Length: 752
  2060. Connection: keep-alive
  2061. Cache-Control: public, max-age=0, no-cache
  2062. X-Frame-Options: DENY
  2063. Strict-Transport-Security: max-age=604800
  2064.  
  2065. {
  2066. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  2067. "meta": {
  2068. "caaIdentities": [
  2069. "letsencrypt.org"
  2070. ],
  2071. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  2072. "website": "https://letsencrypt.org"
  2073. },
  2074. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  2075. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  2076. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  2077. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  2078. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert",
  2079. "vue7KzT97Kg": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
  2080. }
  2081. 2023-11-29 19:09:45,202:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2082. 2023-11-29 19:09:45,350:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  2083. 2023-11-29 19:09:45,350:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  2084. 2023-11-29 19:09:45,351:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  2085. 2023-11-29 19:09:46,217:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0370_key-certbot.pem
  2086. 2023-11-29 19:09:46,227:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0370_csr-certbot.pem
  2087. 2023-11-29 19:09:46,229:DEBUG:acme.client:Requesting fresh nonce
  2088. 2023-11-29 19:09:46,229:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  2089. 2023-11-29 19:09:46,373:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  2090. 2023-11-29 19:09:46,373:DEBUG:acme.client:Received response:
  2091. HTTP 200
  2092. Server: nginx
  2093. Date: Wed, 29 Nov 2023 19:09:46 GMT
  2094. Connection: keep-alive
  2095. Cache-Control: public, max-age=0, no-cache
  2096. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2097. Replay-Nonce: v0bMowfiwzYHg438UAocRrDCCdMxna0YRdyw26Ix9ztQae-M2p8
  2098. X-Frame-Options: DENY
  2099. Strict-Transport-Security: max-age=604800
  2100.  
  2101.  
  2102. 2023-11-29 19:09:46,373:DEBUG:acme.client:Storing nonce: v0bMowfiwzYHg438UAocRrDCCdMxna0YRdyw26Ix9ztQae-M2p8
  2103. 2023-11-29 19:09:46,374:DEBUG:acme.client:JWS payload:
  2104. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  2105. 2023-11-29 19:09:46,377:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  2106. {
  2107. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogInYwYk1vd2Zpd3pZSGc0MzhVQW9jUnJEQ0NkTXhuYTBZUmR5dzI2SXg5enRRYWUtTTJwOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  2108. "signature": "odYdZ1V4zMVNG7_ZNYAPSDb9ILCsZvmH0OpgS9_Y3W6MpnRvAS04A-__coumsriXh4chp6qRT1HTYPYdAKXY5zQp9FxdaP11OrIE4ef6zXYWgfV1jAiDUks0CQK9Dlfielj7comlcjx5R-DeyjOivhADamYIWXZv_vM1Z7QpJ0M3VduhFuNvbTUNeyy1tu_dsT14iJkrx8j0WbM-xG7UTEZaiEPbLKCyn3_Ihg92hR1WzsR7EH5bUi3fw8OhNaDfuJ1Bbzx1ealD_cUAxjeLxcZIYytZrUm17q9G-mFzBnmZSE9UhG3Cmpb78D3Ws-1TytmnION2A6rG-bFPjyBIZg", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  2109. }
  2110. 2023-11-29 19:09:46,679:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 339
  2111. 2023-11-29 19:09:46,680:DEBUG:acme.client:Received response:
  2112. HTTP 201
  2113. Server: nginx
  2114. Date: Wed, 29 Nov 2023 19:09:46 GMT
  2115. Content-Type: application/json
  2116. Content-Length: 339
  2117. Connection: keep-alive
  2118. Boulder-Requester: 974447006
  2119. Cache-Control: public, max-age=0, no-cache
  2120. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2121. Location: https://acme-v02.api.letsencrypt.org/acme/order/974447006/225713301266
  2122. Replay-Nonce: nbWKegf8Z54g3E5sAOdizyTPpYkVvkUxKb6Mgtx3txg4OZm4Nlg
  2123. X-Frame-Options: DENY
  2124. Strict-Transport-Security: max-age=604800
  2125.  
  2126. {
  2127. "status": "pending",
  2128. "expires": "2023-12-06T19:09:46Z",
  2129. "identifiers": [
  2130. {
  2131. "type": "dns",
  2132. "value": "lexyy.ddns.net"
  2133. }
  2134. ],
  2135. "authorizations": [
  2136. "https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726"
  2137. ],
  2138. "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/974447006/225713301266"
  2139. }
  2140. 2023-11-29 19:09:46,680:DEBUG:acme.client:Storing nonce: nbWKegf8Z54g3E5sAOdizyTPpYkVvkUxKb6Mgtx3txg4OZm4Nlg
  2141. 2023-11-29 19:09:46,680:DEBUG:acme.client:JWS payload:
  2142. b''
  2143. 2023-11-29 19:09:46,686:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726:
  2144. {
  2145. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4WjU0ZzNFNXNBT2RpenlUUHBZa1Z2a1V4S2I2TWd0eDN0eGc0T1ptNE5sZyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzcxOTI4NzI2In0",
  2146. "signature": "ML9aaWsT9dZXpV2ppO2stvjUdxy8kTm_eM1uJUIIQAuCNQu2oT7grR4qiQa6iC49XDSWauaXbdeDTS4hkWOo91viC-XyeYy8btmwy-AevH1fN5tOfT86uZWp-GI5dMvU6RpdxYYUmKNEVIFcv0uOh7H0GlfT9k9iTDsSJhg6ckkDT2QeqBrggc6gvMs5BUYeF9zud540uPzZoGKN_seWEe_1K3fH1iZzCqnYahQwCzWN_6N0K1B74IuS4Zw1wc-kgh4_2AvVUwzmn4Fsqlkh3lLiXdnueC-4uj0xToz0duQMCK7QjfY419IJlIrTFglEZvbOSKUGha1hJ5RtQER48w", "payload": ""
  2147. }
  2148. 2023-11-29 19:09:46,854:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288771928726 HTTP/1.1" 200 798
  2149. 2023-11-29 19:09:46,855:DEBUG:acme.client:Received response:
  2150. HTTP 200
  2151. Server: nginx
  2152. Date: Wed, 29 Nov 2023 19:09:46 GMT
  2153. Content-Type: application/json
  2154. Content-Length: 798
  2155. Connection: keep-alive
  2156. Boulder-Requester: 974447006
  2157. Cache-Control: public, max-age=0, no-cache
  2158. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2159. Replay-Nonce: nbWKegf8B9XV9OVcJa1-TpPBod5OwKYwio4tT4V_9xC8kgzxdVs
  2160. X-Frame-Options: DENY
  2161. Strict-Transport-Security: max-age=604800
  2162.  
  2163. {
  2164. "identifier": {
  2165. "type": "dns",
  2166. "value": "lexyy.ddns.net"
  2167. },
  2168. "status": "pending",
  2169. "expires": "2023-12-06T19:09:46Z",
  2170. "challenges": [
  2171. {
  2172. "type": "http-01",
  2173. "status": "pending",
  2174. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
  2175. "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
  2176. },
  2177. {
  2178. "type": "dns-01",
  2179. "status": "pending",
  2180. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/Wa2Nxw",
  2181. "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
  2182. },
  2183. {
  2184. "type": "tls-alpn-01",
  2185. "status": "pending",
  2186. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/-zVaTQ",
  2187. "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
  2188. }
  2189. ]
  2190. }
  2191. 2023-11-29 19:09:46,855:DEBUG:acme.client:Storing nonce: nbWKegf8B9XV9OVcJa1-TpPBod5OwKYwio4tT4V_9xC8kgzxdVs
  2192. 2023-11-29 19:09:46,856:INFO:certbot._internal.auth_handler:Performing the following challenges:
  2193. 2023-11-29 19:09:46,857:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  2194. 2023-11-29 19:09:46,869:DEBUG:certbot_apache._internal.http_01:Adding a temporary challenge validation Include for name: None in: /etc/apache2/sites-enabled/000-default.conf
  2195. 2023-11-29 19:09:46,870:DEBUG:certbot_apache._internal.http_01:writing a pre config file with text:
  2196. RewriteEngine on
  2197. RewriteRule ^/\.well-known/acme-challenge/([A-Za-z0-9-_=]+)$ /var/lib/letsencrypt/http_challenges/$1 [END]
  2198.  
  2199. 2023-11-29 19:09:46,871:DEBUG:certbot_apache._internal.http_01:writing a post config file with text:
  2200. <Directory /var/lib/letsencrypt/http_challenges>
  2201. Require all granted
  2202. </Directory>
  2203. <Location /.well-known/acme-challenge>
  2204. Require all granted
  2205. </Location>
  2206.  
  2207. 2023-11-29 19:09:46,934:DEBUG:certbot.reverter:Creating backup of /etc/apache2/sites-enabled/000-default.conf
  2208. 2023-11-29 19:09:46,935:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
  2209. 2023-11-29 19:09:50,093:DEBUG:acme.client:JWS payload:
  2210. b'{}'
  2211. 2023-11-29 19:09:50,099:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ:
  2212. {
  2213. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4QjlYVjlPVmNKYTEtVHBQQm9kNU93S1l3aW80dFQ0Vl85eEM4a2d6eGRWcyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvY2hhbGwtdjMvMjg4NzcxOTI4NzI2L3QxR1N0USJ9",
  2214. "signature": "FKhKLBdCXH4_by6GXp7T8Kklf6HU336aqTv51lOdfnkjPc3vOaZyr9thgFga7esS00wgapgVY7yFnYnRFYgVvLD0qw1CRHQvPtediCNBAX0vDNxvxW7ydVBYspfsx6mihS5FT7jHlBk40WW7edZncq0S4hUk5mLmYwOMdrn62P7XO-NoJp8U-k6hXIJRlRuuaKy3mEyQwyLGvNqnPxTZHesOjquSGDPDNvh_JFN0vkl_gRI4wrwOQgXXZMUfmVMLUIb0cKU60ngzHyZBs9F4MP5s3vYPLbN9PIcwmqVb-Cj8wylf9xUI7FJ1zHZ5eoxLYRkMl4_QvE6xXdzCFaYsag", "payload": "e30"
  2215. }
  2216. 2023-11-29 19:09:50,255:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall-v3/288771928726/t1GStQ HTTP/1.1" 200 187
  2217. 2023-11-29 19:09:50,256:DEBUG:acme.client:Received response:
  2218. HTTP 200
  2219. Server: nginx
  2220. Date: Wed, 29 Nov 2023 19:09:50 GMT
  2221. Content-Type: application/json
  2222. Content-Length: 187
  2223. Connection: keep-alive
  2224. Boulder-Requester: 974447006
  2225. Cache-Control: public, max-age=0, no-cache
  2226. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726>;rel="up"
  2227. Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ
  2228. Replay-Nonce: nbWKegf8RgTo1ewA0nDS1vj0JtgJCPaxIQI4I7H1DDjaNYgV6-0
  2229. X-Frame-Options: DENY
  2230. Strict-Transport-Security: max-age=604800
  2231.  
  2232. {
  2233. "type": "http-01",
  2234. "status": "pending",
  2235. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
  2236. "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w"
  2237. }
  2238. 2023-11-29 19:09:50,257:DEBUG:acme.client:Storing nonce: nbWKegf8RgTo1ewA0nDS1vj0JtgJCPaxIQI4I7H1DDjaNYgV6-0
  2239. 2023-11-29 19:09:50,257:INFO:certbot._internal.auth_handler:Waiting for verification...
  2240. 2023-11-29 19:09:51,259:DEBUG:acme.client:JWS payload:
  2241. b''
  2242. 2023-11-29 19:09:51,264:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz-v3/288771928726:
  2243. {
  2244. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4UmdUbzFld0EwbkRTMXZqMEp0Z0pDUGF4SVFJNEk3SDFERGphTllnVjYtMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYXV0aHotdjMvMjg4NzcxOTI4NzI2In0",
  2245. "signature": "KbOiLsrU6aj6kL0Sgqm7g9OM1KQr8k48FcHPXTuQE2KWYvHOEaVOe7l-8vEwJd3jPcAj3qMnpB82iHqshYWD2rwiIq68Jg5w_V_1-Loxd14h5xbCrLDxXc8H6r_HQ83T_mMRIqV54iw7DMYqYD2s16TZQ1jAViG3v3ePW4FboasVwwhpI_qC9z9xRgk_7LJ1sgy9Pi6PUj5_giF56bBLM57D1izlcVkZe43V_6laPPnPo3LtOrO1kfoQ1K4UoD5nZ7f5DJlA3kgUoqMgvF2fNZNfrrowsFT3wqDDCPneV5bQ0YlO_5Wz2pJaBZ2RnsEjqUzEQpEmF79jasmH1jHo2g", "payload": ""
  2246. }
  2247. 2023-11-29 19:09:51,429:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz-v3/288771928726 HTTP/1.1" 200 1024
  2248. 2023-11-29 19:09:51,430:DEBUG:acme.client:Received response:
  2249. HTTP 200
  2250. Server: nginx
  2251. Date: Wed, 29 Nov 2023 19:09:51 GMT
  2252. Content-Type: application/json
  2253. Content-Length: 1024
  2254. Connection: keep-alive
  2255. Boulder-Requester: 974447006
  2256. Cache-Control: public, max-age=0, no-cache
  2257. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2258. Replay-Nonce: nbWKegf88xspczOPLAkOksEnEUWoIt1Et-yud17SNwCH1ktyggQ
  2259. X-Frame-Options: DENY
  2260. Strict-Transport-Security: max-age=604800
  2261.  
  2262. {
  2263. "identifier": {
  2264. "type": "dns",
  2265. "value": "lexyy.ddns.net"
  2266. },
  2267. "status": "invalid",
  2268. "expires": "2023-12-06T19:09:46Z",
  2269. "challenges": [
  2270. {
  2271. "type": "http-01",
  2272. "status": "invalid",
  2273. "error": {
  2274. "type": "urn:ietf:params:acme:error:unauthorized",
  2275. "detail": "77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w: 404",
  2276. "status": 403
  2277. },
  2278. "url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/288771928726/t1GStQ",
  2279. "token": "Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w",
  2280. "validationRecord": [
  2281. {
  2282. "url": "http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w",
  2283. "hostname": "lexyy.ddns.net",
  2284. "port": "80",
  2285. "addressesResolved": [
  2286. "77.22.225.214"
  2287. ],
  2288. "addressUsed": "77.22.225.214"
  2289. }
  2290. ],
  2291. "validated": "2023-11-29T19:09:50Z"
  2292. }
  2293. ]
  2294. }
  2295. 2023-11-29 19:09:51,430:DEBUG:acme.client:Storing nonce: nbWKegf88xspczOPLAkOksEnEUWoIt1Et-yud17SNwCH1ktyggQ
  2296. 2023-11-29 19:09:51,431:INFO:certbot._internal.auth_handler:Challenge failed for domain lexyy.ddns.net
  2297. 2023-11-29 19:09:51,431:INFO:certbot._internal.auth_handler:http-01 challenge for lexyy.ddns.net
  2298. 2023-11-29 19:09:51,431:DEBUG:certbot._internal.display.obj:Notifying user:
  2299. Certbot failed to authenticate some domains (authenticator: apache). The Certificate Authority reported these problems:
  2300. Domain: lexyy.ddns.net
  2301. Type: unauthorized
  2302. Detail: 77.22.225.214: Invalid response from http://lexyy.ddns.net/.well-known/acme-challenge/Ko-iHxFyTDs4hR_-i0WbX4uKUn0g6taV1ra0g-FLy7w: 404
  2303.  
  2304. Hint: The Certificate Authority failed to verify the temporary Apache configuration changes made by Certbot. Ensure that the listed domains point to this Apache server and that it is accessible from the internet.
  2305.  
  2306. 2023-11-29 19:09:51,432:DEBUG:certbot._internal.error_handler:Encountered exception:
  2307. Traceback (most recent call last):
  2308. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  2309. self._poll_authorizations(authzrs, max_retries, best_effort)
  2310. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  2311. raise errors.AuthorizationError('Some challenges have failed.')
  2312. certbot.errors.AuthorizationError: Some challenges have failed.
  2313.  
  2314. 2023-11-29 19:09:51,432:DEBUG:certbot._internal.error_handler:Calling registered functions
  2315. 2023-11-29 19:09:51,433:INFO:certbot._internal.auth_handler:Cleaning up challenges
  2316. 2023-11-29 19:09:51,623:DEBUG:certbot._internal.log:Exiting abnormally:
  2317. Traceback (most recent call last):
  2318. File "/usr/bin/certbot", line 33, in <module>
  2319. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2320. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2321. return internal_main.main(cli_args)
  2322. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2323. return config.func(config, plugins)
  2324. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  2325. new_lineage = _get_and_save_cert(le_client, config, domains,
  2326. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2327. renewal.renew_cert(config, domains, le_client, lineage)
  2328. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2329. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2330. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2331. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2332. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 439, in _get_order_and_authorizations
  2333. authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  2334. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 90, in handle_authorizations
  2335. self._poll_authorizations(authzrs, max_retries, best_effort)
  2336. File "/usr/lib/python3/dist-packages/certbot/_internal/auth_handler.py", line 178, in _poll_authorizations
  2337. raise errors.AuthorizationError('Some challenges have failed.')
  2338. certbot.errors.AuthorizationError: Some challenges have failed.
  2339. 2023-11-29 19:09:51,624:ERROR:certbot._internal.log:Some challenges have failed.
  2340. 2023-11-29 19:14:38,322:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2341. 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2342. 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Arguments: ['--apache']
  2343. 2023-11-29 19:14:38,323:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2344. 2023-11-29 19:14:38,333:DEBUG:certbot._internal.log:Root logging level set at 30
  2345. 2023-11-29 19:14:38,334:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2346. 2023-11-29 19:14:38,385:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  2347. 2023-11-29 19:14:38,671:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2348. Description: Apache Web Server plugin
  2349. Interfaces: Installer, Authenticator, Plugin
  2350. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2351. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0>
  2352. Prep: True
  2353. 2023-11-29 19:14:38,671:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f68d0d977c0>
  2354. 2023-11-29 19:14:38,672:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  2355. 2023-11-29 19:14:38,797:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  2356. 2023-11-29 19:14:38,798:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  2357. 2023-11-29 19:14:38,799:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:14:39,261:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  2358. 2023-11-29 19:14:39,262:DEBUG:acme.client:Received response:
  2359. HTTP 200
  2360. Server: nginx
  2361. Date: Wed, 29 Nov 2023 19:14:39 GMT
  2362. Content-Type: application/json
  2363. Content-Length: 752
  2364. Connection: keep-alive
  2365. Cache-Control: public, max-age=0, no-cache
  2366. X-Frame-Options: DENY
  2367. Strict-Transport-Security: max-age=604800
  2368.  
  2369. {
  2370. "5jRh4Prk7nQ": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  2371. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  2372. "meta": {
  2373. "caaIdentities": [
  2374. "letsencrypt.org"
  2375. ],
  2376. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  2377. "website": "https://letsencrypt.org"
  2378. },
  2379. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  2380. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  2381. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  2382. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  2383. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  2384. }
  2385. 2023-11-29 19:14:43,673:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2386. 2023-11-29 19:14:43,820:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  2387. 2023-11-29 19:14:43,820:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  2388. 2023-11-29 19:14:43,820:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  2389. 2023-11-29 19:14:44,115:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0371_key-certbot.pem
  2390. 2023-11-29 19:14:44,124:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0371_csr-certbot.pem
  2391. 2023-11-29 19:14:44,126:DEBUG:acme.client:Requesting fresh nonce
  2392. 2023-11-29 19:14:44,126:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  2393. 2023-11-29 19:14:44,271:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  2394. 2023-11-29 19:14:44,271:DEBUG:acme.client:Received response:
  2395. HTTP 200
  2396. Server: nginx
  2397. Date: Wed, 29 Nov 2023 19:14:44 GMT
  2398. Connection: keep-alive
  2399. Cache-Control: public, max-age=0, no-cache
  2400. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2401. Replay-Nonce: nbWKegf8KiLtxakZx-lqvNJU2Y2VxTAEqu3sCMGK8J8GYFVTnR8
  2402. X-Frame-Options: DENY
  2403. Strict-Transport-Security: max-age=604800
  2404.  
  2405.  
  2406. 2023-11-29 19:14:44,272:DEBUG:acme.client:Storing nonce: nbWKegf8KiLtxakZx-lqvNJU2Y2VxTAEqu3sCMGK8J8GYFVTnR8
  2407. 2023-11-29 19:14:44,272:DEBUG:acme.client:JWS payload:
  2408. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  2409. 2023-11-29 19:14:44,277:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  2410. {
  2411. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4S2lMdHhha1p4LWxxdk5KVTJZMlZ4VEFFcXUzc0NNR0s4SjhHWUZWVG5SOCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  2412. "signature": "hBqK9j9uUbC-hwip91dPm7KUEiJ8BDpO8iMtXMM81ems5Pej63Aqwqh06yavzkfKoCQ9LKvut-lRw9-HT8EwWSqvbNKd71aGlqs4Z07AuMB7hS2vHlJ3GDeCGObFgZbqdwo91CH-n-6D94LOA4Kh7CAxEwbWwen_AkHSSA19A5NZ27SZfKsA4VWXjRnRwvO-Mlk68t04gI5akOWrMrJgmKzXAm8QBH3OA_Y2Mnlxwmgh6V4VfLmyTqOJawrHWQ5kMXCADSvaZ9MFPTP8cHwSGkZL-9pFowSJEYwQe2hwdYkBerb_5x0sWCO3cymmh2w4y85LkZbCPER9dBIta0_WYw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  2413. }
  2414. 2023-11-29 19:14:44,520:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
  2415. 2023-11-29 19:14:44,521:DEBUG:acme.client:Received response:
  2416. HTTP 429
  2417. Server: nginx
  2418. Date: Wed, 29 Nov 2023 19:14:44 GMT
  2419. Content-Type: application/problem+json
  2420. Content-Length: 213
  2421. Connection: keep-alive
  2422. Boulder-Requester: 974447006
  2423. Cache-Control: public, max-age=0, no-cache
  2424. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2425. Replay-Nonce: v0bMowfizjSz8Ng__OxKDByzHSvNBg9xtLuZ24m9HqJwDd-jbLs
  2426.  
  2427. {
  2428. "type": "urn:ietf:params:acme:error:rateLimited",
  2429. "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
  2430. "status": 429
  2431. }
  2432. 2023-11-29 19:14:44,521:DEBUG:certbot._internal.log:Exiting abnormally:
  2433. Traceback (most recent call last):
  2434. File "/usr/bin/certbot", line 33, in <module>
  2435. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2436. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2437. return internal_main.main(cli_args)
  2438. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2439. return config.func(config, plugins)
  2440. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  2441. new_lineage = _get_and_save_cert(le_client, config, domains,
  2442. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2443. renewal.renew_cert(config, domains, le_client, lineage)
  2444. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2445. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2446. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2447. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2448. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
  2449. orderr = self.acme.new_order(csr_pem)
  2450. File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
  2451. return cast(ClientV2, self.client).new_order(csr_pem)
  2452. File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
  2453. response = self._post(self.directory['newOrder'], order)
  2454. File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
  2455. return self.net.post(*args, **kwargs)
  2456. File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
  2457. return self._post_once(*args, **kwargs)
  2458. File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
  2459. response = self._check_response(response, content_type=content_type)
  2460. File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
  2461. raise messages.Error.from_json(jobj)
  2462. acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2463. 2023-11-29 19:14:44,527:ERROR:certbot._internal.log:An unexpected error occurred:
  2464. 2023-11-29 19:14:44,527:ERROR:certbot._internal.log:There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2465. 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2466. 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2467. 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Arguments: []
  2468. 2023-11-29 19:17:02,821:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2469. 2023-11-29 19:17:02,831:DEBUG:certbot._internal.log:Root logging level set at 30
  2470. 2023-11-29 19:17:02,940:DEBUG:certbot._internal.display.obj:Notifying user: Found the following certs:
  2471. Certificate Name: lexyy.ddns.net
  2472. Serial Number: 4333940fba7738a69ce6607bb69f195d20a
  2473. Key Type: RSA
  2474. Domains: lexyy.ddns.net
  2475. Expiry Date: 2023-05-21 18:19:17+00:00 (INVALID: EXPIRED)
  2476. Certificate Path: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem
  2477. Private Key Path: /etc/letsencrypt/live/lexyy.ddns.net/privkey.pem
  2478. 2023-11-29 19:23:11,127:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2479. 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2480. 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Arguments: ['--apache']
  2481. 2023-11-29 19:23:11,128:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2482. 2023-11-29 19:23:11,147:DEBUG:certbot._internal.log:Root logging level set at 30
  2483. 2023-11-29 19:23:11,149:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2484. 2023-11-29 19:23:11,206:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  2485. 2023-11-29 19:23:11,466:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2486. Description: Apache Web Server plugin
  2487. Interfaces: Installer, Authenticator, Plugin
  2488. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2489. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0>
  2490. Prep: True
  2491. 2023-11-29 19:23:11,467:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f2acc8077c0>
  2492. 2023-11-29 19:23:11,467:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  2493. 2023-11-29 19:23:11,579:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  2494. 2023-11-29 19:23:11,580:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  2495. 2023-11-29 19:23:11,581:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:23:12,042:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  2496. 2023-11-29 19:23:12,043:DEBUG:acme.client:Received response:
  2497. HTTP 200
  2498. Server: nginx
  2499. Date: Wed, 29 Nov 2023 19:23:11 GMT
  2500. Content-Type: application/json
  2501. Content-Length: 752
  2502. Connection: keep-alive
  2503. Cache-Control: public, max-age=0, no-cache
  2504. X-Frame-Options: DENY
  2505. Strict-Transport-Security: max-age=604800
  2506.  
  2507. {
  2508. "UvI_f3q4_OM": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  2509. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  2510. "meta": {
  2511. "caaIdentities": [
  2512. "letsencrypt.org"
  2513. ],
  2514. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  2515. "website": "https://letsencrypt.org"
  2516. },
  2517. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  2518. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  2519. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  2520. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  2521. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  2522. }
  2523. 2023-11-29 19:23:15,865:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2524. 2023-11-29 19:23:16,012:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  2525. 2023-11-29 19:23:16,012:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  2526. 2023-11-29 19:23:16,012:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  2527. 2023-11-29 19:23:16,273:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0372_key-certbot.pem
  2528. 2023-11-29 19:23:16,283:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0372_csr-certbot.pem
  2529. 2023-11-29 19:23:16,285:DEBUG:acme.client:Requesting fresh nonce
  2530. 2023-11-29 19:23:16,285:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  2531. 2023-11-29 19:23:16,429:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  2532. 2023-11-29 19:23:16,429:DEBUG:acme.client:Received response:
  2533. HTTP 200
  2534. Server: nginx
  2535. Date: Wed, 29 Nov 2023 19:23:16 GMT
  2536. Connection: keep-alive
  2537. Cache-Control: public, max-age=0, no-cache
  2538. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2539. Replay-Nonce: nbWKegf8Q9np6yN8Xka9Hvxb0lNGiQzlCM3oGDFQXlhWAI3ezKM
  2540. X-Frame-Options: DENY
  2541. Strict-Transport-Security: max-age=604800
  2542.  
  2543.  
  2544. 2023-11-29 19:23:16,429:DEBUG:acme.client:Storing nonce: nbWKegf8Q9np6yN8Xka9Hvxb0lNGiQzlCM3oGDFQXlhWAI3ezKM
  2545. 2023-11-29 19:23:16,430:DEBUG:acme.client:JWS payload:
  2546. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  2547. 2023-11-29 19:23:16,432:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  2548. {
  2549. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4UTlucDZ5TjhYa2E5SHZ4YjBsTkdpUXpsQ00zb0dERlFYbGhXQUkzZXpLTSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  2550. "signature": "CF-iIb7d8eaFrazOyw9v8W_ykMDDmVOhvjtV6P0OZLthkYcAq1jRG-ZqdNCERsjtCCWoOV8Udv_3P0EW8Tq6aZreKwR6zKeuQCkJlp50VMiDW7u3bbOpaxoL11hNz7a_5VEgAMS6AIvmOgMhiqtwfZbEWkIhZOov65yzM7vMAZX_8uNwT235kzeMOOGeg7e9kIXVQuVZl7o1bTr0l9oVWv-4l-5SsCOFRT7wqMqdSH-nZh4_i91Bd2lnVOluL7jPmmG6tGQRjyTSYyoFsQnVbaHXhWDEL9tHyhbh6FLqDQREzqIeqWh0Y5hblvc0EwcgiS_f90R_TJi7EgnxEaslgw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  2551. }
  2552. 2023-11-29 19:23:16,692:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
  2553. 2023-11-29 19:23:16,693:DEBUG:acme.client:Received response:
  2554. HTTP 429
  2555. Server: nginx
  2556. Date: Wed, 29 Nov 2023 19:23:16 GMT
  2557. Content-Type: application/problem+json
  2558. Content-Length: 213
  2559. Connection: keep-alive
  2560. Boulder-Requester: 974447006
  2561. Cache-Control: public, max-age=0, no-cache
  2562. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2563. Replay-Nonce: v0bMowfiqg7GRC6FtHmzFPGi7fZzxtojiF1dUbPl-Qx-oS2xhaM
  2564.  
  2565. {
  2566. "type": "urn:ietf:params:acme:error:rateLimited",
  2567. "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
  2568. "status": 429
  2569. }
  2570. 2023-11-29 19:23:16,693:DEBUG:certbot._internal.log:Exiting abnormally:
  2571. Traceback (most recent call last):
  2572. File "/usr/bin/certbot", line 33, in <module>
  2573. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2574. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2575. return internal_main.main(cli_args)
  2576. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2577. return config.func(config, plugins)
  2578. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1287, in run
  2579. new_lineage = _get_and_save_cert(le_client, config, domains,
  2580. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2581. renewal.renew_cert(config, domains, le_client, lineage)
  2582. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2583. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2584. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2585. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2586. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
  2587. orderr = self.acme.new_order(csr_pem)
  2588. File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
  2589. return cast(ClientV2, self.client).new_order(csr_pem)
  2590. File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
  2591. response = self._post(self.directory['newOrder'], order)
  2592. File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
  2593. return self.net.post(*args, **kwargs)
  2594. File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
  2595. return self._post_once(*args, **kwargs)
  2596. File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
  2597. response = self._check_response(response, content_type=content_type)
  2598. File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
  2599. raise messages.Error.from_json(jobj)
  2600. acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2601. 2023-11-29 19:23:16,697:ERROR:certbot._internal.log:An unexpected error occurred:
  2602. 2023-11-29 19:23:16,697:ERROR:certbot._internal.log:There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2603. 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2604. 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2605. 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Arguments: ['-q']
  2606. 2023-11-29 19:29:03,526:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2607. 2023-11-29 19:29:03,537:DEBUG:certbot._internal.log:Root logging level set at 40
  2608. 2023-11-29 19:29:03,538:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
  2609. 2023-11-29 19:29:03,547:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7fafd308db10> and installer <certbot._internal.cli.cli_utils._Default object at 0x7fafd308db10>
  2610. 2023-11-29 19:29:03,560:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  2611. 2023-11-29 19:29:03,560:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  2612. 2023-11-29 19:29:03,560:INFO:certbot._internal.renewal:Non-interactive renewal: random delay of 20.46360467921181 seconds
  2613. 2023-11-29 19:29:24,045:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2614. 2023-11-29 19:29:24,117:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  2615. 2023-11-29 19:29:24,404:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2616. Description: Apache Web Server plugin
  2617. Interfaces: Installer, Authenticator, Plugin
  2618. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2619. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
  2620. Prep: True
  2621. 2023-11-29 19:29:24,405:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2622. Description: Apache Web Server plugin
  2623. Interfaces: Installer, Authenticator, Plugin
  2624. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2625. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
  2626. Prep: True
  2627. 2023-11-29 19:29:24,405:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7fafd355f880>
  2628. 2023-11-29 19:29:24,405:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  2629. 2023-11-29 19:29:24,535:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  2630. 2023-11-29 19:29:24,537:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  2631. 2023-11-29 19:29:24,538:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:29:25,036:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  2632. 2023-11-29 19:29:25,037:DEBUG:acme.client:Received response:
  2633. HTTP 200
  2634. Server: nginx
  2635. Date: Wed, 29 Nov 2023 19:29:24 GMT
  2636. Content-Type: application/json
  2637. Content-Length: 752
  2638. Connection: keep-alive
  2639. Cache-Control: public, max-age=0, no-cache
  2640. X-Frame-Options: DENY
  2641. Strict-Transport-Security: max-age=604800
  2642.  
  2643. {
  2644. "4VMPz0rMiSA": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  2645. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  2646. "meta": {
  2647. "caaIdentities": [
  2648. "letsencrypt.org"
  2649. ],
  2650. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  2651. "website": "https://letsencrypt.org"
  2652. },
  2653. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  2654. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  2655. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  2656. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  2657. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  2658. }
  2659. 2023-11-29 19:29:25,043:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  2660. 2023-11-29 19:29:25,384:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0373_key-certbot.pem
  2661. 2023-11-29 19:29:25,393:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0373_csr-certbot.pem
  2662. 2023-11-29 19:29:25,395:DEBUG:acme.client:Requesting fresh nonce
  2663. 2023-11-29 19:29:25,395:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  2664. 2023-11-29 19:29:25,552:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  2665. 2023-11-29 19:29:25,553:DEBUG:acme.client:Received response:
  2666. HTTP 200
  2667. Server: nginx
  2668. Date: Wed, 29 Nov 2023 19:29:25 GMT
  2669. Connection: keep-alive
  2670. Cache-Control: public, max-age=0, no-cache
  2671. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2672. Replay-Nonce: jXyutbsnq670xulmvOuRCEnTDTpV26jaVuIxVYPLPKs4W-PzUvI
  2673. X-Frame-Options: DENY
  2674. Strict-Transport-Security: max-age=604800
  2675.  
  2676.  
  2677. 2023-11-29 19:29:25,553:DEBUG:acme.client:Storing nonce: jXyutbsnq670xulmvOuRCEnTDTpV26jaVuIxVYPLPKs4W-PzUvI
  2678. 2023-11-29 19:29:25,553:DEBUG:acme.client:JWS payload:
  2679. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  2680. 2023-11-29 19:29:25,559:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  2681. {
  2682. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogImpYeXV0YnNucTY3MHh1bG12T3VSQ0VuVERUcFYyNmphVnVJeFZZUExQS3M0Vy1QelV2SSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  2683. "signature": "WfMwTZ03YabW_9iq35mCXTW_zBDVUXWvygYIJTuZ_heHs31y_EOdvM6fgSHmXoFURrZ_gMM2s2mbeUieyd7RFJfmwASSzUDhqFVWTjysZsfUiKSyYVhVLwTiCEi_ehAvHGXe6na8fo_zy-e-dmprhy99oln0Ld6fjNgt7NGKRDDNOpLbQPmgt0SHvEEwYFf2iLoWGz_nJIrLMzJ0QhLlHOpA116z_Bwd7SbboOu5JgGu74SiNCiNNHxJdE42IteOffIvkfpuglVfaVFpFxV_rjC1QWBBMs3pWru2lWQv3p4WAYB70MD-Q1vZwKvjYh_eqFRwkjh80iqA7hbFr8-Qvw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  2684. }
  2685. 2023-11-29 19:29:25,736:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
  2686. 2023-11-29 19:29:25,737:DEBUG:acme.client:Received response:
  2687. HTTP 429
  2688. Server: nginx
  2689. Date: Wed, 29 Nov 2023 19:29:25 GMT
  2690. Content-Type: application/problem+json
  2691. Content-Length: 213
  2692. Connection: keep-alive
  2693. Boulder-Requester: 974447006
  2694. Cache-Control: public, max-age=0, no-cache
  2695. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2696. Replay-Nonce: jXyutbsnFnvGbnyX4hyPETPhm9hE2YiFiST5nQX-WaoDCV9uCK8
  2697.  
  2698. {
  2699. "type": "urn:ietf:params:acme:error:rateLimited",
  2700. "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
  2701. "status": 429
  2702. }
  2703. 2023-11-29 19:29:25,737:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2704. 2023-11-29 19:29:25,740:DEBUG:certbot._internal.renewal:Traceback was:
  2705. Traceback (most recent call last):
  2706. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
  2707. main.renew_cert(lineage_config, plugins, renewal_candidate)
  2708. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
  2709. renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
  2710. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2711. renewal.renew_cert(config, domains, le_client, lineage)
  2712. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2713. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2714. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2715. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2716. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
  2717. orderr = self.acme.new_order(csr_pem)
  2718. File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
  2719. return cast(ClientV2, self.client).new_order(csr_pem)
  2720. File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
  2721. response = self._post(self.directory['newOrder'], order)
  2722. File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
  2723. return self.net.post(*args, **kwargs)
  2724. File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
  2725. return self._post_once(*args, **kwargs)
  2726. File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
  2727. response = self._check_response(response, content_type=content_type)
  2728. File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
  2729. raise messages.Error.from_json(jobj)
  2730. acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2731.  
  2732. 2023-11-29 19:29:25,743:DEBUG:certbot._internal.display.obj:Notifying user:
  2733. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  2734. 2023-11-29 19:29:25,744:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
  2735. 2023-11-29 19:29:25,744:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
  2736. 2023-11-29 19:29:25,744:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  2737. 2023-11-29 19:29:25,745:DEBUG:certbot._internal.log:Exiting abnormally:
  2738. Traceback (most recent call last):
  2739. File "/usr/bin/certbot", line 33, in <module>
  2740. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2741. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2742. return internal_main.main(cli_args)
  2743. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2744. return config.func(config, plugins)
  2745. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
  2746. renewal.handle_renewal_request(config)
  2747. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
  2748. raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
  2749. certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
  2750. 2023-11-29 19:29:25,746:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
  2751. 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:certbot version: 1.21.0
  2752. 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
  2753. 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Arguments: []
  2754. 2023-11-29 19:35:40,864:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
  2755. 2023-11-29 19:35:40,874:DEBUG:certbot._internal.log:Root logging level set at 30
  2756. 2023-11-29 19:35:40,875:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/lexyy.ddns.net.conf
  2757. 2023-11-29 19:35:40,884:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7f5f580f9cc0> and installer <certbot._internal.cli.cli_utils._Default object at 0x7f5f580f9cc0>
  2758. 2023-11-29 19:35:40,897:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2023-05-21 18:19:17 UTC.
  2759. 2023-11-29 19:35:40,897:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
  2760. 2023-11-29 19:35:40,897:DEBUG:certbot._internal.plugins.selection:Requested authenticator apache and installer apache
  2761. 2023-11-29 19:35:40,968:DEBUG:certbot_apache._internal.configurator:Apache version is 2.4.52
  2762. 2023-11-29 19:35:41,229:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2763. Description: Apache Web Server plugin
  2764. Interfaces: Installer, Authenticator, Plugin
  2765. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2766. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
  2767. Prep: True
  2768. 2023-11-29 19:35:41,230:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * apache
  2769. Description: Apache Web Server plugin
  2770. Interfaces: Installer, Authenticator, Plugin
  2771. Entry point: apache = certbot_apache._internal.entrypoint:ENTRYPOINT
  2772. Initialized: <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
  2773. Prep: True
  2774. 2023-11-29 19:35:41,230:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240> and installer <certbot_apache._internal.override_debian.DebianConfigurator object at 0x7f5f5862d240>
  2775. 2023-11-29 19:35:41,230:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator apache, Installer apache
  2776. 2023-11-29 19:35:41,360:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/974447006', new_authzr_uri=None, terms_of_service=None), c8219dffedaeffa64007a97573ac39e7, Meta(creation_dt=datetime.datetime(2023, 2, 20, 18, 56, 10, tzinfo=<UTC>), creation_host='unlegit', register_to_eff=None))>
  2777. 2023-11-29 19:35:41,362:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
  2778. 2023-11-29 19:35:41,363:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:4432023-11-29 19:35:41,827:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 752
  2779. 2023-11-29 19:35:41,829:DEBUG:acme.client:Received response:
  2780. HTTP 200
  2781. Server: nginx
  2782. Date: Wed, 29 Nov 2023 19:35:41 GMT
  2783. Content-Type: application/json
  2784. Content-Length: 752
  2785. Connection: keep-alive
  2786. Cache-Control: public, max-age=0, no-cache
  2787. X-Frame-Options: DENY
  2788. Strict-Transport-Security: max-age=604800
  2789.  
  2790. {
  2791. "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  2792. "meta": {
  2793. "caaIdentities": [
  2794. "letsencrypt.org"
  2795. ],
  2796. "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.3-September-21-2022.pdf",
  2797. "website": "https://letsencrypt.org"
  2798. },
  2799. "nSDgzp4n0rU": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  2800. "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  2801. "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  2802. "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  2803. "renewalInfo": "https://acme-v02.api.letsencrypt.org/draft-ietf-acme-ari-01/renewalInfo/",
  2804. "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
  2805. }
  2806. 2023-11-29 19:35:41,835:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for lexyy.ddns.net
  2807. 2023-11-29 19:35:42,210:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0374_key-certbot.pem
  2808. 2023-11-29 19:35:42,220:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0374_csr-certbot.pem
  2809. 2023-11-29 19:35:42,222:DEBUG:acme.client:Requesting fresh nonce
  2810. 2023-11-29 19:35:42,222:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
  2811. 2023-11-29 19:35:42,368:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
  2812. 2023-11-29 19:35:42,368:DEBUG:acme.client:Received response:
  2813. HTTP 200
  2814. Server: nginx
  2815. Date: Wed, 29 Nov 2023 19:35:42 GMT
  2816. Connection: keep-alive
  2817. Cache-Control: public, max-age=0, no-cache
  2818. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2819. Replay-Nonce: nbWKegf8cOWJHaevemLjXKboBnmbIag_C8h_W07KUwCVDOhiPO4
  2820. X-Frame-Options: DENY
  2821. Strict-Transport-Security: max-age=604800
  2822.  
  2823.  
  2824. 2023-11-29 19:35:42,368:DEBUG:acme.client:Storing nonce: nbWKegf8cOWJHaevemLjXKboBnmbIag_C8h_W07KUwCVDOhiPO4
  2825. 2023-11-29 19:35:42,368:DEBUG:acme.client:JWS payload:
  2826. b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "lexyy.ddns.net"\n }\n ]\n}'
  2827. 2023-11-29 19:35:42,371:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
  2828. {
  2829. "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvOTc0NDQ3MDA2IiwgIm5vbmNlIjogIm5iV0tlZ2Y4Y09XSkhhZXZlbUxqWEtib0JubWJJYWdfQzhoX1cwN0tVd0NWRE9oaVBPNCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvbmV3LW9yZGVyIn0",
  2830. "signature": "XX5LF3JHvf7ugMFim_0kEFzfBmk3ctAAhyHKJyQSeBCUVDV05Bec87LS2BfEHHTRNpfvkPpzOeMuaBh0zVBVsP0N7X16xsuvAZWPgO6HiYNxb0sm31Pbb7BgOUAPKLlzZWTyJZGFPqZn7cfVZE45jw6OkeMFTkK5JFmX5d3EdGSfFkHDe304B6zmBl-uJtPUSdrtWA96iJZWMCh2H1KqkvNPE98It9HDoI56eNbjkui7UXk3pSZGUil_XtJJ1oOU3PXz_-F2uQdW2Z8yjR6LJ1Lu-wpDcKKmlkgCEexQF79GlABzarWSgegfu3EHlfZAxNI9lK4FWvjVI_C99spoPw", "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxleHl5LmRkbnMubmV0IgogICAgfQogIF0KfQ"
  2831. }
  2832. 2023-11-29 19:35:42,546:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 429 213
  2833. 2023-11-29 19:35:42,547:DEBUG:acme.client:Received response:
  2834. HTTP 429
  2835. Server: nginx
  2836. Date: Wed, 29 Nov 2023 19:35:42 GMT
  2837. Content-Type: application/problem+json
  2838. Content-Length: 213
  2839. Connection: keep-alive
  2840. Boulder-Requester: 974447006
  2841. Cache-Control: public, max-age=0, no-cache
  2842. Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
  2843. Replay-Nonce: v0bMowfivhwCdgX8NN_y1pZ1J9myejITFoBhe10Rr3eE43lundY
  2844.  
  2845. {
  2846. "type": "urn:ietf:params:acme:error:rateLimited",
  2847. "detail": "Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/",
  2848. "status": 429
  2849. }
  2850. 2023-11-29 19:35:42,548:ERROR:certbot._internal.renewal:Failed to renew certificate lexyy.ddns.net with error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2851. 2023-11-29 19:35:42,551:DEBUG:certbot._internal.renewal:Traceback was:
  2852. Traceback (most recent call last):
  2853. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 475, in handle_renewal_request
  2854. main.renew_cert(lineage_config, plugins, renewal_candidate)
  2855. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1386, in renew_cert
  2856. renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
  2857. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 122, in _get_and_save_cert
  2858. renewal.renew_cert(config, domains, le_client, lineage)
  2859. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 335, in renew_cert
  2860. new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  2861. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 389, in obtain_certificate
  2862. orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  2863. File "/usr/lib/python3/dist-packages/certbot/_internal/client.py", line 421, in _get_order_and_authorizations
  2864. orderr = self.acme.new_order(csr_pem)
  2865. File "/usr/lib/python3/dist-packages/acme/client.py", line 936, in new_order
  2866. return cast(ClientV2, self.client).new_order(csr_pem)
  2867. File "/usr/lib/python3/dist-packages/acme/client.py", line 702, in new_order
  2868. response = self._post(self.directory['newOrder'], order)
  2869. File "/usr/lib/python3/dist-packages/acme/client.py", line 101, in _post
  2870. return self.net.post(*args, **kwargs)
  2871. File "/usr/lib/python3/dist-packages/acme/client.py", line 1269, in post
  2872. return self._post_once(*args, **kwargs)
  2873. File "/usr/lib/python3/dist-packages/acme/client.py", line 1283, in _post_once
  2874. response = self._check_response(response, content_type=content_type)
  2875. File "/usr/lib/python3/dist-packages/acme/client.py", line 1128, in _check_response
  2876. raise messages.Error.from_json(jobj)
  2877. acme.messages.Error: urn:ietf:params:acme:error:rateLimited :: There were too many requests of a given type :: Error creating new order :: too many failed authorizations recently: see https://letsencrypt.org/docs/failed-validation-limit/
  2878.  
  2879. 2023-11-29 19:35:42,553:DEBUG:certbot._internal.display.obj:Notifying user:
  2880. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  2881. 2023-11-29 19:35:42,554:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
  2882. 2023-11-29 19:35:42,554:ERROR:certbot._internal.renewal: /etc/letsencrypt/live/lexyy.ddns.net/fullchain.pem (failure)
  2883. 2023-11-29 19:35:42,554:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
  2884. 2023-11-29 19:35:42,555:DEBUG:certbot._internal.log:Exiting abnormally:
  2885. Traceback (most recent call last):
  2886. File "/usr/bin/certbot", line 33, in <module>
  2887. sys.exit(load_entry_point('certbot==1.21.0', 'console_scripts', 'certbot')())
  2888. File "/usr/lib/python3/dist-packages/certbot/main.py", line 15, in main
  2889. return internal_main.main(cli_args)
  2890. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1574, in main
  2891. return config.func(config, plugins)
  2892. File "/usr/lib/python3/dist-packages/certbot/_internal/main.py", line 1460, in renew
  2893. renewal.handle_renewal_request(config)
  2894. File "/usr/lib/python3/dist-packages/certbot/_internal/renewal.py", line 500, in handle_renewal_request
  2895. raise errors.Error("{0} renew failure(s), {1} parse failure(s)".format(
  2896. certbot.errors.Error: 1 renew failure(s), 0 parse failure(s)
  2897. 2023-11-29 19:35:42,556:ERROR:certbot._internal.log:1 renew failure(s), 0 parse failure(s)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement