Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 2017-07-17 13:15:21,589:DEBUG:certbot.main:certbot version: 0.16.0
- 2017-07-17 13:15:21,589:DEBUG:certbot.main:Arguments: []
- 2017-07-17 13:15:21,589:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
- 2017-07-17 13:15:21,606:DEBUG:certbot.log:Root logging level set at 20
- 2017-07-17 13:15:21,607:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
- 2017-07-17 13:15:21,634:DEBUG:certbot.plugins.selection:Requested authenticator <certbot.cli._Default object at 0x3edcdd0> and installer <certbot.cli._Default object at 0x3edcdd0>
- 2017-07-17 13:15:21,634:DEBUG:certbot.cli:Default Detector is Namespace(account=<certbot.cli._Default object at 0x3edac50>, agree_dev_preview=None, allow_subset_of_names=<certbot.cli._Default object at 0x3edaa10>, apache=<certbot.cli._Default object at 0x3ede110>, apache_challenge_location=<certbot.cli._Default object at 0x3ee0750>, apache_ctl=<certbot.cli._Default object at 0x3ee0b50>, apache_dismod=<certbot.cli._Default object at 0x3ee0190>, apache_enmod=<certbot.cli._Default object at 0x3ee0090>, apache_handle_modules=<certbot.cli._Default object at 0x3ee08d0>, apache_handle_sites=<certbot.cli._Default object at 0x3ee0a50>, apache_init_script=<certbot.cli._Default object at 0x3ee0c90>, apache_le_vhost_ext=<certbot.cli._Default object at 0x3ee02d0>, apache_logs_root=<certbot.cli._Default object at 0x3ee0610>, apache_server_root=<certbot.cli._Default object at 0x3ee0410>, apache_vhost_root=<certbot.cli._Default object at 0x3ee0510>, authenticator=<certbot.cli._Default object at 0x3edcdd0>, break_my_certs=<certbot.cli._Default object at 0x3edae10>, cert_path=<certbot.cli._Default object at 0x3edc5d0>, certname=<certbot.cli._Default object at 0x3ebce10>, chain_path=<certbot.cli._Default object at 0x3edc8d0>, checkpoints=<certbot.cli._Default object at 0x3edc0d0>, config_dir=<certbot.cli._Default object at 0x3edc9d0>, config_file=None, configurator=<certbot.cli._Default object at 0x3edcdd0>, csr=<certbot.cli._Default object at 0x3edbe50>, debug=<certbot.cli._Default object at 0x3edb390>, debug_challenges=<certbot.cli._Default object at 0x3edb490>, dialog=None, dns_cloudflare=<certbot.cli._Default object at 0x3ede610>, dns_cloudxns=<certbot.cli._Default object at 0x3ede710>, dns_digitalocean=<certbot.cli._Default object at 0x3ede810>, dns_dnsimple=<certbot.cli._Default object at 0x3ede910>, dns_dnsmadeeasy=<certbot.cli._Default object at 0x3edea10>, dns_google=<certbot.cli._Default object at 0x3edeb10>, dns_luadns=<certbot.cli._Default object at 0x3edec10>, dns_nsone=<certbot.cli._Default object at 0x3eded10>, dns_rfc2136=<certbot.cli._Default object at 0x3edee10>, dns_route53=<certbot.cli._Default object at 0x3edef10>, domains=<certbot.cli._Default object at 0x3ebcd10>, dry_run=<certbot.cli._Default object at 0x3ebcf10>, duplicate=<certbot.cli._Default object at 0x3edad50>, eff_email=<certbot.cli._Default object at 0x3eda350>, email=<certbot.cli._Default object at 0x3eda250>, expand=<certbot.cli._Default object at 0x3eda650>, force_interactive=<certbot.cli._Default object at 0x3ebcc10>, fullchain_path=<certbot.cli._Default object at 0x3edc7d0>, func=<function renew at 0x3a7f500>, hsts=<certbot.cli._Default object at 0x3eda410>, http01_address=<certbot.cli._Default object at 0x3edafd0>, http01_port=<certbot.cli._Default object at 0x3edb890>, ifaces=<certbot.cli._Default object at 0x3edc3d0>, init=<certbot.cli._Default object at 0x3edc1d0>, installer=<certbot.cli._Default object at 0x3edcdd0>, key_path=<certbot.cli._Default object at 0x3edc6d0>, logs_dir=<certbot.cli._Default object at 0x3edcbd0>, manual=<certbot.cli._Default object at 0x3ede410>, manual_auth_hook=<certbot.cli._Default object at 0x3ee0050>, manual_cleanup_hook=<certbot.cli._Default object at 0x3ee0ed0>, manual_public_ip_logging_ok=<certbot.cli._Default object at 0x3ee0fd0>, must_staple=<certbot.cli._Default object at 0x3eda9d0>, nginx=<certbot.cli._Default object at 0x3ede210>, nginx_ctl=<certbot.cli._Default object at 0x3ee1250>, nginx_server_root=<certbot.cli._Default object at 0x3ee0d90>, no_bootstrap=<certbot.cli._Default object at 0x3edb090>, no_self_upgrade=<certbot.cli._Default object at 0x3edaf50>, no_verify_ssl=<certbot.cli._Default object at 0x3edb590>, noninteractive_mode=<certbot.cli._Default object at 0x3ebc050>, num=<certbot.cli._Default object at 0x3edbc90>, os_packages_only=<certbot.cli._Default object at 0x3edae50>, post_hook=<certbot.cli._Default object at 0x3edb350>, pre_hook=<certbot.cli._Default object at 0x3edb550>, pref_challs=<certbot.cli._Default object at 0x3edb750>, prepare=<certbot.cli._Default object at 0x3edc2d0>, quiet=<certbot.cli._Default object at 0x3edb190>, reason=<certbot.cli._Default object at 0x3edbf90>, redirect=<certbot.cli._Default object at 0x3eda7d0>, register_unsafely_without_email=<certbot.cli._Default object at 0x3eda050>, reinstall=<certbot.cli._Default object at 0x3eda550>, renew_by_default=<certbot.cli._Default object at 0x3eda810>, renew_hook=<certbot.cli._Default object at 0x3edb150>, renew_with_new_domains=<certbot.cli._Default object at 0x3eda910>, rsa_key_size=<certbot.cli._Default object at 0x3edac10>, server=<certbot.cli._Default object at 0x3edccd0>, staging=<certbot.cli._Default object at 0x3edb290>, standalone=<certbot.cli._Default object at 0x3ede310>, standalone_supported_challenges=<certbot.cli._Default object at 0x3ee1350>, staple=<certbot.cli._Default object at 0x3ebcbd0>, strict_permissions=<certbot.cli._Default object at 0x3ebc590>, text_mode=<certbot.cli._Default object at 0x3ebc190>, tls_sni_01_address=<certbot.cli._Default object at 0x3edb790>, tls_sni_01_port=<certbot.cli._Default object at 0x3edb690>, tos=<certbot.cli._Default object at 0x3edab50>, uir=<certbot.cli._Default object at 0x3ebcfd0>, update_registration=<certbot.cli._Default object at 0x3eda150>, user_agent=<certbot.cli._Default object at 0x3edbd90>, validate_hooks=<certbot.cli._Default object at 0x3edba10>, verb='renew', verbose_count=<certbot.cli._Default object at 0x3ebc310>, webroot=<certbot.cli._Default object at 0x3ede510>, webroot_map=<certbot.cli._Default object at 0x3ee1550>, webroot_path=<certbot.cli._Default object at 0x3ee1150>, work_dir=<certbot.cli._Default object at 0x3edcad0>)
- 2017-07-17 13:15:21,642:INFO:certbot.renewal:Cert not yet due for renewal
- 2017-07-17 13:15:21,648:INFO:certbot.renewal:Cert not yet due for renewal
- 2017-07-17 13:15:21,652:DEBUG:certbot.storage:Should renew, less than 30 days before certificate expiry 2017-07-25 22:01:00 UTC.
- 2017-07-17 13:15:21,652:INFO:certbot.renewal:Cert is due for renewal, auto-renewing...
- 2017-07-17 13:15:21,670:DEBUG:certbot.plugins.selection:Requested authenticator apache and installer apache
- 2017-07-17 13:15:21,741:DEBUG:certbot_apache.configurator:Apache version is 2.2.22
- 2017-07-17 13:15:22,213:DEBUG:certbot.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin - Beta
- Interfaces: IAuthenticator, IInstaller, IPlugin
- Entry point: apache = certbot_apache.configurator:ApacheConfigurator
- Initialized: <certbot_apache.configurator.ApacheConfigurator object at 0x3ee0f90>
- Prep: True
- 2017-07-17 13:15:22,213:DEBUG:certbot.plugins.selection:Single candidate plugin: * apache
- Description: Apache Web Server plugin - Beta
- Interfaces: IAuthenticator, IInstaller, IPlugin
- Entry point: apache = certbot_apache.configurator:ApacheConfigurator
- Initialized: <certbot_apache.configurator.ApacheConfigurator object at 0x3ee0f90>
- Prep: True
- 2017-07-17 13:15:22,213:DEBUG:certbot.plugins.selection:Selected authenticator <certbot_apache.configurator.ApacheConfigurator object at 0x3ee0f90> and installer <certbot_apache.configurator.ApacheConfigurator object at 0x3ee0f90>
- 2017-07-17 13:15:22,217:DEBUG:certbot.main:Picked account: <Account(RegistrationResource(body=Registration(status=None, contact=(u'mailto:[email protected]',), agreement=u'https://letsencrypt.org/documents/LE-SA-v1.0.1-July-27-2015.pdf', key=JWKRSA(key=<ComparableRSAKey(<cryptography.hazmat.backends.openssl.rsa._RSAPublicKey object at 0x3ee1710>)>)), uri=u'https://acme-v01.api.letsencrypt.org/acme/reg/654803', new_authzr_uri=u'https://acme-v01.api.letsencrypt.org/acme/new-authz', terms_of_service=u'https://letsencrypt.org/documents/LE-SA-v1.0.1-July-27-2015.pdf'), 5926bc7e1b724034c330629c3415cd8c, Meta(creation_host=u'server.chosting.dk', creation_dt=datetime.datetime(2016, 3, 1, 6, 36, 10, tzinfo=<UTC>)))>
- 2017-07-17 13:15:22,218:DEBUG:acme.client:Sending GET request to https://acme-v01.api.letsencrypt.org/directory.
- 2017-07-17 13:15:22,222:DEBUG:requests.packages.urllib3.connectionpool:Starting new HTTPS connection (1): acme-v01.api.letsencrypt.org
- 2017-07-17 13:15:22,378:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 352
- 2017-07-17 13:15:22,379:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Content-Type: application/json
- Content-Length: 352
- Boulder-Request-Id: QQXf7_wsVl2kYArFRDOevHYOgNXFk4JUKdUCa84O-38
- Replay-Nonce: 0aG0QICHLWYM3JzkxbgToO6fPcffR0zSW5d9c-VR8n0
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- Expires: Mon, 17 Jul 2017 13:15:22 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:22 GMT
- Connection: keep-alive
- {
- "key-change": "https://acme-v01.api.letsencrypt.org/acme/key-change",
- "new-authz": "https://acme-v01.api.letsencrypt.org/acme/new-authz",
- "new-cert": "https://acme-v01.api.letsencrypt.org/acme/new-cert",
- "new-reg": "https://acme-v01.api.letsencrypt.org/acme/new-reg",
- "revoke-cert": "https://acme-v01.api.letsencrypt.org/acme/revoke-cert"
- }
- 2017-07-17 13:15:22,379:INFO:certbot.main:Renewing an existing certificate
- 2017-07-17 13:15:22,380:DEBUG:acme.client:Requesting fresh nonce
- 2017-07-17 13:15:22,381:DEBUG:acme.client:Sending HEAD request to https://acme-v01.api.letsencrypt.org/acme/new-authz.
- 2017-07-17 13:15:22,503:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "HEAD /acme/new-authz HTTP/1.1" 405 0
- 2017-07-17 13:15:22,504:DEBUG:acme.client:Received response:
- HTTP 405
- Server: nginx
- Content-Type: application/problem+json
- Content-Length: 91
- Allow: POST
- Boulder-Request-Id: -xfBn_FXV0YPcSHLRD-wWV6C-wdRjsZqTqo7tSYcfLk
- Replay-Nonce: dwd6oy_wfsPabjlVvUS_BTx8AhZiuGqkuU5xLsCj6I4
- Expires: Mon, 17 Jul 2017 13:15:22 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:22 GMT
- Connection: keep-alive
- 2017-07-17 13:15:22,505:DEBUG:acme.client:Storing nonce: dwd6oy_wfsPabjlVvUS_BTx8AhZiuGqkuU5xLsCj6I4
- 2017-07-17 13:15:22,505:DEBUG:acme.client:JWS payload:
- {
- "identifier": {
- "type": "dns",
- "value": "chosting.dk"
- },
- "resource": "new-authz"
- }
- 2017-07-17 13:15:22,509:DEBUG:acme.client:Sending POST request to https://acme-v01.api.letsencrypt.org/acme/new-authz:
- {
- "protected": "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",
- "payload": "ewogICJpZGVudGlmaWVyIjogewogICAgInR5cGUiOiAiZG5zIiwgCiAgICAidmFsdWUiOiAiY2hvc3RpbmcuZGsiCiAgfSwgCiAgInJlc291cmNlIjogIm5ldy1hdXRoeiIKfQ",
- "signature": "BADvy18mVXIpfGNsfQfAheTR5AExl_UGhivZeWXjxlIjlY7fzijvDIckUhfG53X5GLqz8d3i2iGE-QWZx9XBIyvs6j6csMrZ22Mxs9RleyWN6G7dkGbfDxYJNZKDOnd81i30bWgt7ICo25CdWy_oWTuiXfnvn8zGp99TYBNEklWtAh_vJtvkRfK-eQfb_wjZJE2znV3mAPdVLNtKX4RuT3TkVg1BFtE4ETbc3OxxlvzAr007ZKe62bSSaTQsUlpZtd-_OyJ8t2YyELUkRceR6M8rIWHWAin2oSP2OMX2rXjZuc7nlGbfzjIrpptoJg9D4wYajXceEz3DrOcvL-XAWA"
- }
- 2017-07-17 13:15:23,010:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "POST /acme/new-authz HTTP/1.1" 201 1370
- 2017-07-17 13:15:23,011:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Content-Type: application/json
- Content-Length: 1370
- Boulder-Request-Id: _j7Xt05wPCKP1D_U3jbHxmzO8EHJTbOm7PUD4kd0uXM
- Boulder-Requester: 654803
- Link: <https://acme-v01.api.letsencrypt.org/acme/new-cert>;rel="next"
- Location: https://acme-v01.api.letsencrypt.org/acme/authz/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo
- Replay-Nonce: _pGvvq1BdOV0xo_oamNk5u1hPlfcnBKIiqh61jEWtwA
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- Expires: Mon, 17 Jul 2017 13:15:23 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:23 GMT
- Connection: keep-alive
- {
- "identifier": {
- "type": "dns",
- "value": "chosting.dk"
- },
- "status": "valid",
- "expires": "2017-07-25T23:00:14Z",
- "challenges": [
- {
- "type": "tls-sni-01",
- "status": "valid",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109",
- "token": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg",
- "keyAuthorization": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "validationRecord": [
- {
- "hostname": "chosting.dk",
- "port": "443",
- "addressesResolved": [
- "109.237.26.164"
- ],
- "addressUsed": "109.237.26.164",
- "addressesTried": []
- }
- ]
- },
- {
- "type": "http-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664131",
- "token": "dpPAek6FgtJYMREXuvtFp0mdjERxDOxSYj3p594S2jc"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664188",
- "token": "37EZ_37q3_lIdM7FKKVxNyrQavJMwLe6bvhYCDqEI3U"
- }
- ],
- "combinations": [
- [
- 2
- ],
- [
- 0
- ],
- [
- 1
- ]
- ]
- }
- 2017-07-17 13:15:23,011:DEBUG:acme.client:Storing nonce: _pGvvq1BdOV0xo_oamNk5u1hPlfcnBKIiqh61jEWtwA
- 2017-07-17 13:15:23,012:DEBUG:acme.client:JWS payload:
- {
- "identifier": {
- "type": "dns",
- "value": "www.chosting.dk"
- },
- "resource": "new-authz"
- }
- 2017-07-17 13:15:23,017:DEBUG:acme.client:Sending POST request to https://acme-v01.api.letsencrypt.org/acme/new-authz:
- {
- "protected": "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",
- "payload": "ewogICJpZGVudGlmaWVyIjogewogICAgInR5cGUiOiAiZG5zIiwgCiAgICAidmFsdWUiOiAid3d3LmNob3N0aW5nLmRrIgogIH0sIAogICJyZXNvdXJjZSI6ICJuZXctYXV0aHoiCn0",
- "signature": "UTlEN-6frbdxtpHYLYH1bN4NZr8wi6GhXRH1fOUWCyYMjKZiG9BbO6VeikFgXP7TPa0_d7KILNO0W3x5-0wXrEi9duoOBvrPzMF3fsryIUIEbdTIcrVouh67xkI7I35GFCk8NAureuze4D8iTpR87gnUm7za5KQARK6rAk21NfhkUxrq0iDEqCnfhF1_HPLP_O1oUsj-5PX7A9onmnREwl-5A-uGCPaDHoC6SuA2cBKXAw3JTTeWHVaqCmYCV0paS4FXWe0dV34ee88UqAi4gy24q8QIOrLz2TNZfeDB3a1lgefRnncvklUYNgsuCk4wj30ncrmP0NczKSo9s80tQA"
- }
- 2017-07-17 13:15:23,642:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "POST /acme/new-authz HTTP/1.1" 201 1003
- 2017-07-17 13:15:23,643:DEBUG:acme.client:Received response:
- HTTP 201
- Server: nginx
- Content-Type: application/json
- Content-Length: 1003
- Boulder-Request-Id: hjK1GEOLan8QHDpq6Z1CXZPLFLdhqzwAlLFnSD1aU5o
- Boulder-Requester: 654803
- Link: <https://acme-v01.api.letsencrypt.org/acme/new-cert>;rel="next"
- Location: https://acme-v01.api.letsencrypt.org/acme/authz/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8
- Replay-Nonce: jCvZdgMl5Y_YsGni0Gf17u7Gbizr9ptMHT1vPBC_KnY
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- Expires: Mon, 17 Jul 2017 13:15:23 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:23 GMT
- Connection: keep-alive
- {
- "identifier": {
- "type": "dns",
- "value": "www.chosting.dk"
- },
- "status": "pending",
- "expires": "2017-07-24T13:15:23.259411252Z",
- "challenges": [
- {
- "type": "dns-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025336",
- "token": "t3ZVT9GUxotmZXOcW9wx0RpvODgM0Md18EG8JDuppHs"
- },
- {
- "type": "http-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025337",
- "token": "-tl27PK4D_K8Q6UMJhfUpHD7FS-XInmcfrD3kPIKjzk"
- },
- {
- "type": "tls-sni-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338",
- "token": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do"
- }
- ],
- "combinations": [
- [
- 0
- ],
- [
- 2
- ],
- [
- 1
- ]
- ]
- }
- 2017-07-17 13:15:23,643:DEBUG:acme.client:Storing nonce: jCvZdgMl5Y_YsGni0Gf17u7Gbizr9ptMHT1vPBC_KnY
- 2017-07-17 13:15:23,643:INFO:certbot.auth_handler:Performing the following challenges:
- 2017-07-17 13:15:23,644:INFO:certbot.auth_handler:tls-sni-01 challenge for chosting.dk
- 2017-07-17 13:15:23,644:INFO:certbot.auth_handler:tls-sni-01 challenge for www.chosting.dk
- 2017-07-17 13:15:24,176:DEBUG:certbot_apache.tls_sni_01:Adding Include /etc/apache2/le_tls_sni_01_cert_challenge.conf to /files/etc/apache2/apache2.conf
- 2017-07-17 13:15:24,176:DEBUG:certbot_apache.tls_sni_01:writing a config file with text:
- <IfModule mod_ssl.c>
- <VirtualHost *:443>
- ServerName ce6ade21eefb33a69d4f3fb25f057245.1783d845ae12c993453a4c2eed0b6c7f.acme.invalid
- UseCanonicalName on
- SSLStrictSNIVHostCheck on
- LimitRequestBody 1048576
- Include /etc/letsencrypt/options-ssl-apache.conf
- SSLCertificateFile /var/lib/letsencrypt/Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.crt
- SSLCertificateKeyFile /var/lib/letsencrypt/Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.pem
- DocumentRoot /var/lib/letsencrypt/tls_sni_01_page/
- </VirtualHost>
- <VirtualHost 127.0.0.1:443>
- ServerName e042136ee4070c133cb2d251d6a33a7d.1bb6e1ac807cf182c846a7a41f1bd657.acme.invalid
- UseCanonicalName on
- SSLStrictSNIVHostCheck on
- LimitRequestBody 1048576
- Include /etc/letsencrypt/options-ssl-apache.conf
- SSLCertificateFile /var/lib/letsencrypt/WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do.crt
- SSLCertificateKeyFile /var/lib/letsencrypt/WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do.pem
- DocumentRoot /var/lib/letsencrypt/tls_sni_01_page/
- </VirtualHost>
- </IfModule>
- 2017-07-17 13:15:24,194:DEBUG:certbot.reverter:Creating backup of /etc/apache2/apache2.conf
- 2017-07-17 13:15:24,301:DEBUG:certbot_apache.configurator:Setting VirtualHost at 127.0.0.1:443 to be a name based virtual host
- 2017-07-17 13:15:24,301:DEBUG:certbot_apache.configurator:Setting 127.0.0.1:443 to be NameBasedVirtualHost
- Directive added to None
- 2017-07-17 13:15:24,389:DEBUG:certbot.reverter:Creating backup of /etc/apache2/ports.conf
- 2017-07-17 13:15:27,576:INFO:certbot.auth_handler:Waiting for verification...
- 2017-07-17 13:15:27,577:DEBUG:acme.client:JWS payload:
- {
- "keyAuthorization": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "type": "tls-sni-01",
- "resource": "challenge"
- }
- 2017-07-17 13:15:27,581:DEBUG:acme.client:Sending POST request to https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109:
- {
- "protected": "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",
- "payload": "ewogICJrZXlBdXRob3JpemF0aW9uIjogIlphX1MyaFhSUHNLN0dac1FpZ2Z3ZmMzektlNGx1WmMyZ2FTTlNkaTM5d2cuN212aC04UDhBTzAySEhJbGdMVHdSN2pDcUpEbGVUckh5amFyVjJTUGdQdyIsIAogICJ0eXBlIjogInRscy1zbmktMDEiLCAKICAicmVzb3VyY2UiOiAiY2hhbGxlbmdlIgp9",
- "signature": "BLTD1VTPsqyAnlh4t5cLm8p8gqeWlrOORcGxZKEt8B9ja2L7rjiXuzHop1AJUQOeA6DP9ue_1xEcQYk6SB-d_y7DZPgX2FI2csRdQnji8Mezb3sJqSLC2TweG4rAe1VPzkAHfHAn5LqSPXDzjg9GydS9brMcf0WQo9bUKRpDkj706fF7dKi0BfXBYlWlwHUxpVO39dPP6RZrBS2PXRsEXDCYVukds1osswu6aRtLWkkUebIsJsICAL_juPkVF0izR93V0Io8iH2RlqidvoRgsnWNmkukBtXH2F3kNzcIG9VCqDd7Tuu-wGh01rX39BKL2R0EppcwJAn_OaPJKETQSw"
- }
- 2017-07-17 13:15:28,023:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "POST /acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109 HTTP/1.1" 202 561
- 2017-07-17 13:15:28,024:DEBUG:acme.client:Received response:
- HTTP 202
- Server: nginx
- Content-Type: application/json
- Content-Length: 561
- Boulder-Request-Id: JfSGjb6Vge5ylKiRNxtVCDK5E-kAwMO6vA9hfntwhEc
- Boulder-Requester: 654803
- Link: <https://acme-v01.api.letsencrypt.org/acme/authz/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo>;rel="up"
- Location: https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109
- Replay-Nonce: zEPM1EJk9E-U_8Q7kAtnFESh41cP5aseMmfr6e95sVo
- Expires: Mon, 17 Jul 2017 13:15:28 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:28 GMT
- Connection: keep-alive
- {
- "type": "tls-sni-01",
- "status": "valid",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109",
- "token": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg",
- "keyAuthorization": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "validationRecord": [
- {
- "hostname": "chosting.dk",
- "port": "443",
- "addressesResolved": [
- "109.237.26.164"
- ],
- "addressUsed": "109.237.26.164",
- "addressesTried": []
- }
- ]
- }
- 2017-07-17 13:15:28,024:DEBUG:acme.client:Storing nonce: zEPM1EJk9E-U_8Q7kAtnFESh41cP5aseMmfr6e95sVo
- 2017-07-17 13:15:28,025:DEBUG:acme.client:JWS payload:
- {
- "keyAuthorization": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "type": "tls-sni-01",
- "resource": "challenge"
- }
- 2017-07-17 13:15:28,029:DEBUG:acme.client:Sending POST request to https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338:
- {
- "protected": "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",
- "payload": "ewogICJrZXlBdXRob3JpemF0aW9uIjogIldJaEpRT1l3cWh4aF93OFhleUFCNXVMQThZbGZXZkdnNlN0RGs0S08tRG8uN212aC04UDhBTzAySEhJbGdMVHdSN2pDcUpEbGVUckh5amFyVjJTUGdQdyIsIAogICJ0eXBlIjogInRscy1zbmktMDEiLCAKICAicmVzb3VyY2UiOiAiY2hhbGxlbmdlIgp9",
- "signature": "d8zEI2GLdhiKePeN2N5w3kYt6A8JkxcRU0spEErtrQtWQ77j4Jtvjc30S_OH3SWb4w6PeIeCWZ_4l6VixuCUhz7fxmSP89tcyEdpQR9r0t4gdxpWzZ2H8Amn0Hj23oLx52N0sW6nPttr_MMJsJHxlXGgyzxNwZyk429f4wfeFt2mjfztKuRoFfjayb--SrPsPzjGLBmXrP_zjVoxb3qThMFMxkz03oLhNdsWBSQoPVIOllwvv8wBTdDFfVDe19BPrgt4twYyp8hH2JwML011yUPCgUqxe0NPIcn_OlDwhnIHgKXV6NWdhuqOZII8J7FnovlcJh99y0NZvPzquc7tzA"
- }
- 2017-07-17 13:15:28,682:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "POST /acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338 HTTP/1.1" 202 339
- 2017-07-17 13:15:28,683:DEBUG:acme.client:Received response:
- HTTP 202
- Server: nginx
- Content-Type: application/json
- Content-Length: 339
- Boulder-Request-Id: 4Nc8i5Rk6zKNvn86v17uCwr8Z9mMuXnND28vfxcV5pA
- Boulder-Requester: 654803
- Link: <https://acme-v01.api.letsencrypt.org/acme/authz/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8>;rel="up"
- Location: https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338
- Replay-Nonce: nRGX7xPJAXPrAqju1TSbGi1vC6cdoR_bSYSmq4SqHLs
- Expires: Mon, 17 Jul 2017 13:15:28 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:28 GMT
- Connection: keep-alive
- {
- "type": "tls-sni-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338",
- "token": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do",
- "keyAuthorization": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw"
- }
- 2017-07-17 13:15:28,683:DEBUG:acme.client:Storing nonce: nRGX7xPJAXPrAqju1TSbGi1vC6cdoR_bSYSmq4SqHLs
- 2017-07-17 13:15:31,687:DEBUG:acme.client:Sending GET request to https://acme-v01.api.letsencrypt.org/acme/authz/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8.
- 2017-07-17 13:15:32,038:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "GET /acme/authz/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8 HTTP/1.1" 200 1759
- 2017-07-17 13:15:32,039:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Content-Type: application/json
- Content-Length: 1759
- Boulder-Request-Id: fxurEJkFsEuGG_s0bwQdwcADErHUZlsjZelNr_IGlP0
- Link: <https://acme-v01.api.letsencrypt.org/acme/new-cert>;rel="next"
- Replay-Nonce: bxxuozgJ-Ib69iDMddnLgMlkXSA-shbuDFwMUWy0pZQ
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- Expires: Mon, 17 Jul 2017 13:15:32 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:32 GMT
- Connection: keep-alive
- {
- "identifier": {
- "type": "dns",
- "value": "www.chosting.dk"
- },
- "status": "invalid",
- "expires": "2017-07-24T13:15:23Z",
- "challenges": [
- {
- "type": "dns-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025336",
- "token": "t3ZVT9GUxotmZXOcW9wx0RpvODgM0Md18EG8JDuppHs"
- },
- {
- "type": "http-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025337",
- "token": "-tl27PK4D_K8Q6UMJhfUpHD7FS-XInmcfrD3kPIKjzk"
- },
- {
- "type": "tls-sni-01",
- "status": "invalid",
- "error": {
- "type": "urn:acme:error:unauthorized",
- "detail": "Incorrect validation certificate for tls-sni-01 challenge. Requested e042136ee4070c133cb2d251d6a33a7d.1bb6e1ac807cf182c846a7a41f1bd657.acme.invalid from 109.237.26.164:443. Received 2 certificate(s), first certificate had names \"chosting.dk, www.chosting.dk\"",
- "status": 403
- },
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/WAjDmD96Bdmo1ZdOzHNg-lNfAzom6QzkNYEuO89J0Z8/1563025338",
- "token": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do",
- "keyAuthorization": "WIhJQOYwqhxh_w8XeyAB5uLA8YlfWfGg6StDk4KO-Do.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "validationRecord": [
- {
- "hostname": "www.chosting.dk",
- "port": "443",
- "addressesResolved": [
- "109.237.26.164"
- ],
- "addressUsed": "109.237.26.164",
- "addressesTried": []
- }
- ]
- }
- ],
- "combinations": [
- [
- 0
- ],
- [
- 2
- ],
- [
- 1
- ]
- ]
- }
- 2017-07-17 13:15:32,040:DEBUG:acme.client:Sending GET request to https://acme-v01.api.letsencrypt.org/acme/authz/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo.
- 2017-07-17 13:15:32,329:DEBUG:requests.packages.urllib3.connectionpool:https://acme-v01.api.letsencrypt.org:443 "GET /acme/authz/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo HTTP/1.1" 200 1370
- 2017-07-17 13:15:32,330:DEBUG:acme.client:Received response:
- HTTP 200
- Server: nginx
- Content-Type: application/json
- Content-Length: 1370
- Boulder-Request-Id: MXCL2ciORkZ0lw13Pdd3H-CSiU2qJi-yma6ct-XkzUo
- Link: <https://acme-v01.api.letsencrypt.org/acme/new-cert>;rel="next"
- Replay-Nonce: kRnnRvDmA1MGYFIpXavClkJfiZzRmnHGWYURBwJxl64
- X-Frame-Options: DENY
- Strict-Transport-Security: max-age=604800
- Expires: Mon, 17 Jul 2017 13:15:32 GMT
- Cache-Control: max-age=0, no-cache, no-store
- Pragma: no-cache
- Date: Mon, 17 Jul 2017 13:15:32 GMT
- Connection: keep-alive
- {
- "identifier": {
- "type": "dns",
- "value": "chosting.dk"
- },
- "status": "valid",
- "expires": "2017-07-25T23:00:14Z",
- "challenges": [
- {
- "type": "tls-sni-01",
- "status": "valid",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664109",
- "token": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg",
- "keyAuthorization": "Za_S2hXRPsK7GZsQigfwfc3zKe4luZc2gaSNSdi39wg.7mvh-8P8AO02HHIlgLTwR7jCqJDleTrHyjarV2SPgPw",
- "validationRecord": [
- {
- "hostname": "chosting.dk",
- "port": "443",
- "addressesResolved": [
- "109.237.26.164"
- ],
- "addressUsed": "109.237.26.164",
- "addressesTried": []
- }
- ]
- },
- {
- "type": "http-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664131",
- "token": "dpPAek6FgtJYMREXuvtFp0mdjERxDOxSYj3p594S2jc"
- },
- {
- "type": "dns-01",
- "status": "pending",
- "uri": "https://acme-v01.api.letsencrypt.org/acme/challenge/O-KhSuFg2R70oG7QaKIQ8qlo4xzQOyx8MHEiLGlRElo/1420664188",
- "token": "37EZ_37q3_lIdM7FKKVxNyrQavJMwLe6bvhYCDqEI3U"
- }
- ],
- "combinations": [
- [
- 2
- ],
- [
- 0
- ],
- [
- 1
- ]
- ]
- }
- 2017-07-17 13:15:32,332:DEBUG:certbot.reporter:Reporting to user: The following errors were reported by the server:
- Domain: www.chosting.dk
- Type: unauthorized
- Detail: Incorrect validation certificate for tls-sni-01 challenge. Requested e042136ee4070c133cb2d251d6a33a7d.1bb6e1ac807cf182c846a7a41f1bd657.acme.invalid from 109.237.26.164:443. Received 2 certificate(s), first certificate had names "chosting.dk, www.chosting.dk"
- To fix these errors, please make sure that your domain name was entered correctly and the DNS A/AAAA record(s) for that domain contain(s) the right IP address.
- 2017-07-17 13:15:32,332:INFO:certbot.auth_handler:Cleaning up challenges
- 2017-07-17 13:15:32,678:WARNING:certbot.renewal:Attempting to renew cert from /etc/letsencrypt/renewal/chosting.dk.conf produced an unexpected error: Failed authorization procedure. www.chosting.dk (tls-sni-01): urn:acme:error:unauthorized :: The client lacks sufficient authorization :: Incorrect validation certificate for tls-sni-01 challenge. Requested e042136ee4070c133cb2d251d6a33a7d.1bb6e1ac807cf182c846a7a41f1bd657.acme.invalid from 109.237.26.164:443. Received 2 certificate(s), first certificate had names "chosting.dk, www.chosting.dk". Skipping.
- 2017-07-17 13:15:32,681:DEBUG:certbot.renewal:Traceback was:
- Traceback (most recent call last):
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/renewal.py", line 419, in handle_renewal_request
- main.renew_cert(lineage_config, plugins, renewal_candidate)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/main.py", line 641, in renew_cert
- _get_and_save_cert(le_client, config, lineage=lineage)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/main.py", line 77, in _get_and_save_cert
- renewal.renew_cert(config, domains, le_client, lineage)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/renewal.py", line 297, in renew_cert
- new_certr, new_chain, new_key, _ = le_client.obtain_certificate(domains)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/client.py", line 317, in obtain_certificate
- self.config.allow_subset_of_names)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/auth_handler.py", line 81, in get_authorizations
- self._respond(resp, best_effort)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/auth_handler.py", line 138, in _respond
- self._poll_challenges(chall_update, best_effort)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/auth_handler.py", line 202, in _poll_challenges
- raise errors.FailedChallenges(all_failed_achalls)
- FailedChallenges: Failed authorization procedure. www.chosting.dk (tls-sni-01): urn:acme:error:unauthorized :: The client lacks sufficient authorization :: Incorrect validation certificate for tls-sni-01 challenge. Requested e042136ee4070c133cb2d251d6a33a7d.1bb6e1ac807cf182c846a7a41f1bd657.acme.invalid from 109.237.26.164:443. Received 2 certificate(s), first certificate had names "chosting.dk, www.chosting.dk"
- 2017-07-17 13:15:32,685:INFO:certbot.renewal:Cert not yet due for renewal
- 2017-07-17 13:15:32,686:DEBUG:certbot.log:Exiting abnormally:
- Traceback (most recent call last):
- File "/root/.local/share/letsencrypt/bin/letsencrypt", line 11, in <module>
- sys.exit(main())
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/main.py", line 743, in main
- return config.func(config, plugins)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/main.py", line 693, in renew
- renewal.handle_renewal_request(config)
- File "/root/.local/share/letsencrypt/local/lib/python2.7/site-packages/certbot/renewal.py", line 436, in handle_renewal_request
- len(renew_failures), len(parse_failures)))
- Error: 1 renew failure(s), 0 parse failure(s)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement