Debian9, ISPC 3.1.7p1, LetsEncrypt not working

Discussion in 'ISPConfig 3 Priority Support' started by radim_h, Oct 18, 2017.

  1. radim_h

    radim_h Member HowtoForge Supporter

    Hello,
    Debian 9, ISpcofnig 3.1.7p1, with certbot isntalled as "apt-get install certbot". cannot turn letsencrypt on for domains.
    it is my fist Debian 9 installation, i'm using couple Debian 8 installations. with compiled certbot without problem.

    I'm attaching letsencrypt log, me real domain is replaced as mydomain.tld
    Thank you for any help

    EDIT: letsencrypt.log is attached in next message
     
  2. radim_h

    radim_h Member HowtoForge Supporter

    log here:
     

    Attached Files:

  3. till

    till Super Moderator Staff Member ISPConfig Developer

    Are you sure that dev.mydomain.tld is reachable from the internet? LE says that it can't reach it's token in that domain.
     
  4. radim_h

    radim_h Member HowtoForge Supporter

    The domain is EDITED works , i do no tknow what else i can try ?
    i can give you acces to ispoconfig, server is empty
     
    Last edited: Oct 18, 2017
  5. till

    till Super Moderator Staff Member ISPConfig Developer

    Try this. Create a file 'test' on the shell as root in the LE auth directory like this:

    touch /usr/local/ispconfig/interface/acme/.well-known/acme-challenge/test

    you should be able to reach that file then in a web browser with:

    http://yourdomain.tld/.well-known/acme-challenge/test
     
  6. radim_h

    radim_h Member HowtoForge Supporter

    Weird thing
    i created LE certificate for another domain, see EDITED. It did go with no problem.

    Should that problem be caused, when on the server is only third level domain as something.domain.tld , but domain.tld (also www.domain.tld) is located on different IP address and server ?
     
    Last edited: Oct 18, 2017
  7. radim_h

    radim_h Member HowtoForge Supporter

    there is no problem to see the test file in the browser... i will try to point some more third level domain only to this server
     
  8. till

    till Super Moderator Staff Member ISPConfig Developer

    I'm not aware of such a problem, but who knows :)
     
  9. radim_h

    radim_h Member HowtoForge Supporter

    As usual, there was problem between the chair and keyboard :)
    i had DNS name configured also for IPv6, but IPv6 was not set for the site, so there was really DNS problem. Thank you for help and tips.
    I hate IPv6
     
    Last edited: Oct 18, 2017
  10. radim_h

    radim_h Member HowtoForge Supporter

Share This Page