Guten Morgen,
ich habe dasselbe Problem auf einer Deb 10 Testinstanz. DNS funktioniert und löst korrekt auf. Was nicht funktioniert ist IPV6, was meine Vermutung ist, warum die Verifizierung fehlschlägt.
Code: Select all
Hallo keyadmin!
Bei der routinemäßigen Überprüfung der SSL/TLS-Zertifikate traten folgende Probleme auf:
------------
Certificate name: sub.domain.tld (Let's Encrypt)
Message: Verification ended with an error. Response: {"type":"http-01","status":"invalid","error":{"type":"urn:acme:error:connection","detail":"Fetching https:\/\/sub.domain.tld\/.well-known\/acme-challenge\/9sLCUCQ0lj-Oc-sWS3UmySNbxBcWKt7pdA4VuJaq0bI: Timeout during connect (likely firewall problem)","status":400},"uri":"https:\/\/acme-v01.api.letsencrypt.org\/acme\/challenge\/y6Komkx81Po-zpiUjC2-Pd8cQp36eng6PoIHhjBGFRg\/18735644545","token":"9sLCUCQ0lj-Oc-sWS3UmySNbxBcWKt7pdA4VuJaq0bI","validationRecord":[{"url":"http:\/\/sub.domain.tld\/.well-known\/acme-challenge\/9sLCUCQ0lj-Oc-sWS3UmySNbxBcWKt7pdA4VuJaq0bI","hostname":"sub.domain.tld","port":"80","addressesResolved":["123.123.123.4","aaaa:bbbb:cccc1526::1"],"addressUsed":"aaaa:bbbb:cccc1526::1"},{"url":"http:\/\/sub.domain.tld\/.well-known\/acme-challenge\/9sLCUCQ0lj-Oc-sWS3UmySNbxBcWKt7pdA4VuJaq0bI","hostname":"sub.domain.tld","port":"80","addressesResolved":["123.123.123.4","aaaa:bbbb:cccc1526::1"],"addressUsed":"123.123.123.4"},{"url":"https:\/\/sub.domain.tld\/.well-known\/acme-challenge\/9sLCUCQ0lj-Oc-sWS3UmySNbxBcWKt7pdA4VuJaq0bI","hostname":"sub.domain.tld","port":"443","addressesResolved":["123.123.123.4","aaaa:bbbb:cccc1526::1"],"addressUsed":"aaaa:bbbb:cccc1526::1"}]}