Open ketonik opened 4 years ago
just do the steps in the readme file: https://github.com/acmesh-official/acme.sh
If you use webroot mode, it's not allowed to issue a wildcard cert by webroot mode. you can only use dns mode.
Clear Linux OS This just doesn't work for me: As per 2. Just issue a cert:
acme.sh --issue -d mysite.com -d www.mysite.com -d australia.mysite.com -d adelaide.mysite.com -d brisbane.mysite.com -d cairns.mysite.com -d canberra.mysite.com -d darwin.mysite.com -d gold-coast.mysite.com -d hobart.mysite.com -d launceston.mysite.com -d melbourne.mysite.com -d newcastle.mysite.com -d perth.mysite.com -d sydney.mysite.com -d toowoomba.mysite.com -d townsville.mysite.com -d wollongong.mysite.com -w /var/www/html/mysite
curl https://get.acme.sh | sh
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 775 0 775 0 0 2690 0 --:--:-- --:--:-- --:--:-- 2690
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 191k 100 191k 0 0 238k 0 --:--:-- --:--:-- --:--:-- 238k
[Mon Apr 6 11:30:04 AEST 2020] Installing from online archive.
[Mon Apr 6 11:30:04 AEST 2020] Downloading https://github.com/acmesh-official/acme.sh/archive/master.tar.gz
[Mon Apr 6 11:30:05 AEST 2020] Extracting master.tar.gz
[Mon Apr 6 11:30:05 AEST 2020] Installing to /home/development/.acme.sh
[Mon Apr 6 11:30:05 AEST 2020] Installed to /home/development/.acme.sh/acme.sh
[Mon Apr 6 11:30:05 AEST 2020] Installing alias to '/home/development/.bashrc'
[Mon Apr 6 11:30:05 AEST 2020] OK, Close and reopen your terminal to start using acme.sh
[Mon Apr 6 11:30:05 AEST 2020] Installing cron job
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
[Mon Apr 6 11:30:05 AEST 2020] Install cron job failed. You need to manually renew your certs.
[Mon Apr 6 11:30:05 AEST 2020] Or you can add cronjob by yourself:
[Mon Apr 6 11:30:05 AEST 2020] "/home/development/.acme.sh"/acme.sh --cron --home "/home/development/.acme.sh" > /dev/null
[Mon Apr 6 11:30:05 AEST 2020] Good, bash is found, so change the shebang to use bash as preferred.
[Mon Apr 6 11:30:05 AEST 2020] OK
[Mon Apr 6 11:30:05 AEST 2020] Install success!
acme.sh: command not found acme.sh --help acme.sh: command not found
-bash: alias: /home/development/.acme.sh/acme.sh.env: not found
/home/development/.bashrc
before installed acme:
# Use global profile when available
if [ -f /usr/share/defaults/etc/profile ]; then
. /usr/share/defaults/etc/profile
fi
# allow admin overrides
if [ -f /etc/profile ]; then
. /etc/profile
fi
alias ll='ls -alF'
this was /home/development/.bashrc
after installed acme:
# Use global profile when available
if [ -f /usr/share/defaults/etc/profile ]; then
. /usr/share/defaults/etc/profile
fi
# allow admin overrides
if [ -f /etc/profile ]; then
. /etc/profile
fi
alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"
difference line 9 before and after
alias ll='ls -alF'
alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"
/home/development/.acme.sh/acme.sh.env
export LE_WORKING_DIR="/home/development/.acme.sh"
alias acme.sh="/home/development/.acme.sh/acme.sh"
/home/development/.profile
# ~/.profile: executed by Bourne-compatible login shells.
if [ -f ~/.bashrc ]; then
. ~/.bashrc
fi
# path set by /etc/profile
# export PATH
# mesg n
My certs have expired but I still have
dir
/etc/letsencrypt
/etc/nginx-mainline/conf.d/mysite.conf
in file:
ssl_certificate /etc/letsencrypt/live/mysite.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/mysite.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;
Does all this stuff need to be deleted
Anaother question, what happens if I have two or three sites in one Web App (webroot) Do I need two individual commands for each site and their sub domains ? or
can I run one command with both site's domains and all their subdomains? This would have 2-3 site domains and 15 subdomains for each site domain totalling about 30-45, is there maximum domain limit in each command?
acme.sh --issue -d mysite1.com -d australia.mysite1.com -d sydney.mysite1.com -d mysite2.com -d australia.mysite2.com -d sydney.mysite2.com -w /var/www/html/mysite
after fixing all the issues with the bashrc
run command still fails
$ acme.sh --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com -d adelaide.mysite1.com -d brisbane.mysite1.com -d cairns.mysite1.com -d canberra.mysite1.com -d darwin.mysite1.com -d gold-coast.mysite1.com -d hobart.mysite1.com -d launceston.mysite1.com -d melbourne.mysite1.com -d newcastle.mysite1.com -d perth.mysite1.com -d sydney.mysite1.com -d toowoomba.mysite1.com -d townsville.mysite1.com -d wollongong.mysite1.com -w /var/www/html/mysite1
[Mon Apr 6 17:33:15 AEST 2020] Create account key ok.
[Mon Apr 6 17:33:15 AEST 2020] Registering account
[Mon Apr 6 17:33:16 AEST 2020] Registered
[Mon Apr 6 17:33:16 AEST 2020] ACCOUNT_THUMBPRINT='Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:33:16 AEST 2020] Creating domain key
[Mon Apr 6 17:33:16 AEST 2020] The domain key is here: /home/development/.acme.sh/mysite1.com/mysite1.com.key
[Mon Apr 6 17:33:16 AEST 2020] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com,DNS:australia.mysite1.com,DNS:adelaide.mysite1.com,DNS:brisbane.mysite1.com,DNS:cairns.mysite1.com,DNS:canberra.mysite1.com,DNS:darwin.mysite1.com,DNS:gold-coast.mysite1.com,DNS:hobart.mysite1.com,DNS:launceston.mysite1.com,DNS:melbourne.mysite1.com,DNS:newcastle.mysite1.com,DNS:perth.mysite1.com,DNS:sydney.mysite1.com,DNS:toowoomba.mysite1.com,DNS:townsville.mysite1.com,DNS:wollongong.mysite1.com'
[Mon Apr 6 17:33:16 AEST 2020] Getting domain auth token for each domain
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='www.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='australia.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='adelaide.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='brisbane.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='cairns.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='canberra.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='darwin.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='gold-coast.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='hobart.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='launceston.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='melbourne.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='newcastle.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='perth.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='sydney.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='toowoomba.mysite1.com'
[Mon Apr 6 17:33:33 AEST 2020] Getting webroot for domain='townsville.mysite1.com'
[Mon Apr 6 17:33:34 AEST 2020] Getting webroot for domain='wollongong.mysite1.com'
[Mon Apr 6 17:33:34 AEST 2020] Verifying: mysite1.com
[Mon Apr 6 17:33:37 AEST 2020] mysite1.com:Verify error:Invalid response from https://mysite1.com/.well-known/acme-challenge/hJt1rqezeiu7vb_wKiQRdD8Dv27tvZ9tKImrRCsLuVk [123.212.46.112]:
[Mon Apr 6 17:33:37 AEST 2020] Please add '--debug' or '--log' to check more details.
[Mon Apr 6 17:33:37 AEST 2020] See: https://github.com/acmesh-official/acme.sh/wiki/How-to-debug-acme.sh
[Mon Apr 6 17:34:42 AEST 2020] Running cmd:
[Mon Apr 6 17:34:42 AEST 2020] Using config home:/home/development/.acme.sh
[Mon Apr 6 17:34:42 AEST 2020] ACME_DIRECTORY='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr 6 17:37:23 AEST 2020] Running cmd: issue
[Mon Apr 6 17:37:23 AEST 2020] _main_domain='mysite1.com'
[Mon Apr 6 17:37:23 AEST 2020] _alt_domains='www.mysite1.com,australia.mysite1.com,adelaide.mysite1.com,brisbane.mysite1.com,cairns.mysite1.com,canberra.mysite1.com,darwin.mysite1.com,gold-coast.mysite1.com,hobart.mysite1.com,launceston.mysite1.com,melbourne.mysite1.com,newcastle.mysite1.com,perth.mysite1.com,sydney.mysite1.com,toowoomba.mysite1.com,townsville.mysite1.com,wollongong.mysite1.com'
[Mon Apr 6 17:37:23 AEST 2020] Using config home:/home/development/.acme.sh
[Mon Apr 6 17:37:23 AEST 2020] ACME_DIRECTORY='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr 6 17:37:23 AEST 2020] DOMAIN_PATH='/home/development/.acme.sh/mysite1.com'
[Mon Apr 6 17:37:23 AEST 2020] Using ACME_DIRECTORY: https://acme-v02.api.letsencrypt.org/directory
[Mon Apr 6 17:37:23 AEST 2020] _init api for server: https://acme-v02.api.letsencrypt.org/directory
[Mon Apr 6 17:37:23 AEST 2020] GET
[Mon Apr 6 17:37:23 AEST 2020] url='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr 6 17:37:23 AEST 2020] timeout=
[Mon Apr 6 17:37:23 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:24 AEST 2020] ret='0'
[Mon Apr 6 17:37:24 AEST 2020] ACME_KEY_CHANGE='https://acme-v02.api.letsencrypt.org/acme/key-change'
[Mon Apr 6 17:37:24 AEST 2020] ACME_NEW_AUTHZ
[Mon Apr 6 17:37:24 AEST 2020] ACME_NEW_ORDER='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr 6 17:37:24 AEST 2020] ACME_NEW_ACCOUNT='https://acme-v02.api.letsencrypt.org/acme/new-acct'
[Mon Apr 6 17:37:24 AEST 2020] ACME_REVOKE_CERT='https://acme-v02.api.letsencrypt.org/acme/revoke-cert'
[Mon Apr 6 17:37:24 AEST 2020] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf'
[Mon Apr 6 17:37:24 AEST 2020] ACME_NEW_NONCE='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Apr 6 17:37:24 AEST 2020] ACME_VERSION='2'
[Mon Apr 6 17:37:24 AEST 2020] Le_NextRenewTime
[Mon Apr 6 17:37:24 AEST 2020] _on_before_issue
[Mon Apr 6 17:37:24 AEST 2020] _chk_main_domain='mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _chk_alt_domains='www.mysite1.com,australia.mysite1.com,adelaide.mysite1.com,brisbane.mysite1.com,cairns.mysite1.com,canberra.mysite1.com,darwin.mysite1.com,gold-coast.mysite1.com,hobart.mysite1.com,launceston.mysite1.com,melbourne.mysite1.com,newcastle.mysite1.com,perth.mysite1.com,sydney.mysite1.com,toowoomba.mysite1.com,townsville.mysite1.com,wollongong.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Le_LocalAddress
[Mon Apr 6 17:37:24 AEST 2020] d='mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='www.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='www.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='australia.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='australia.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='adelaide.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='brisbane.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='cairns.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='cairns.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='canberra.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='canberra.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='darwin.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='darwin.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='gold-coast.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='hobart.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='hobart.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='launceston.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='launceston.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='melbourne.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='newcastle.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='perth.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='perth.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='sydney.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='sydney.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='toowoomba.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='townsville.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='townsville.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Check for domain='wollongong.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:24 AEST 2020] d
[Mon Apr 6 17:37:24 AEST 2020] _saved_account_key_hash is not changed, skip register account.
[Mon Apr 6 17:37:24 AEST 2020] Read key length:
[Mon Apr 6 17:37:24 AEST 2020] _createcsr
[Mon Apr 6 17:37:24 AEST 2020] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com,DNS:australia.mysite1.com,DNS:adelaide.mysite1.com,DNS:brisbane.mysite1.com,DNS:cairns.mysite1.com,DNS:canberra.mysite1.com,DNS:darwin.mysite1.com,DNS:gold-coast.mysite1.com,DNS:hobart.mysite1.com,DNS:launceston.mysite1.com,DNS:melbourne.mysite1.com,DNS:newcastle.mysite1.com,DNS:perth.mysite1.com,DNS:sydney.mysite1.com,DNS:toowoomba.mysite1.com,DNS:townsville.mysite1.com,DNS:wollongong.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] Getting domain auth token for each domain
[Mon Apr 6 17:37:24 AEST 2020] d='www.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='australia.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='cairns.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='canberra.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='darwin.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='hobart.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='launceston.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='perth.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='sydney.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='townsville.mysite1.com'
[Mon Apr 6 17:37:24 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr 6 17:37:25 AEST 2020] d
[Mon Apr 6 17:37:25 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr 6 17:37:25 AEST 2020] payload='{"identifiers": [{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"},{"type":"dns","value":"australia.mysite1.com"},{"type":"dns","value":"adelaide.mysite1.com"},{"type":"dns","value":"brisbane.mysite1.com"},{"type":"dns","value":"cairns.mysite1.com"},{"type":"dns","value":"canberra.mysite1.com"},{"type":"dns","value":"darwin.mysite1.com"},{"type":"dns","value":"gold-coast.mysite1.com"},{"type":"dns","value":"hobart.mysite1.com"},{"type":"dns","value":"launceston.mysite1.com"},{"type":"dns","value":"melbourne.mysite1.com"},{"type":"dns","value":"newcastle.mysite1.com"},{"type":"dns","value":"perth.mysite1.com"},{"type":"dns","value":"sydney.mysite1.com"},{"type":"dns","value":"toowoomba.mysite1.com"},{"type":"dns","value":"townsville.mysite1.com"},{"type":"dns","value":"wollongong.mysite1.com"}]}'
[Mon Apr 6 17:37:25 AEST 2020] RSA key
[Mon Apr 6 17:37:25 AEST 2020] HEAD
[Mon Apr 6 17:37:25 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Apr 6 17:37:25 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g -I '
[Mon Apr 6 17:37:25 AEST 2020] _ret='0'
[Mon Apr 6 17:37:25 AEST 2020] POST
[Mon Apr 6 17:37:25 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr 6 17:37:25 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:26 AEST 2020] _ret='0'
[Mon Apr 6 17:37:26 AEST 2020] code='201'
[Mon Apr 6 17:37:26 AEST 2020] Le_LinkOrder='https://acme-v02.api.letsencrypt.org/acme/order/82624169/2908143252'
[Mon Apr 6 17:37:26 AEST 2020] Le_OrderFinalize='https://acme-v02.api.letsencrypt.org/acme/finalize/82624169/2908143252'
[Mon Apr 6 17:37:26 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188427'
[Mon Apr 6 17:37:26 AEST 2020] payload
[Mon Apr 6 17:37:26 AEST 2020] POST
[Mon Apr 6 17:37:26 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188427'
[Mon Apr 6 17:37:26 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:27 AEST 2020] _ret='0'
[Mon Apr 6 17:37:27 AEST 2020] code='200'
[Mon Apr 6 17:37:27 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188428'
[Mon Apr 6 17:37:27 AEST 2020] payload
[Mon Apr 6 17:37:27 AEST 2020] POST
[Mon Apr 6 17:37:27 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188428'
[Mon Apr 6 17:37:27 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:28 AEST 2020] _ret='0'
[Mon Apr 6 17:37:28 AEST 2020] code='200'
[Mon Apr 6 17:37:28 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188429'
[Mon Apr 6 17:37:28 AEST 2020] payload
[Mon Apr 6 17:37:28 AEST 2020] POST
[Mon Apr 6 17:37:28 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188429'
[Mon Apr 6 17:37:28 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:29 AEST 2020] _ret='0'
[Mon Apr 6 17:37:29 AEST 2020] code='200'
[Mon Apr 6 17:37:29 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188430'
[Mon Apr 6 17:37:29 AEST 2020] payload
[Mon Apr 6 17:37:29 AEST 2020] POST
[Mon Apr 6 17:37:29 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188430'
[Mon Apr 6 17:37:29 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:30 AEST 2020] _ret='0'
[Mon Apr 6 17:37:30 AEST 2020] code='200'
[Mon Apr 6 17:37:30 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188431'
[Mon Apr 6 17:37:30 AEST 2020] payload
[Mon Apr 6 17:37:30 AEST 2020] POST
[Mon Apr 6 17:37:30 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188431'
[Mon Apr 6 17:37:30 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:31 AEST 2020] _ret='0'
[Mon Apr 6 17:37:31 AEST 2020] code='200'
[Mon Apr 6 17:37:31 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188432'
[Mon Apr 6 17:37:31 AEST 2020] payload
[Mon Apr 6 17:37:31 AEST 2020] POST
[Mon Apr 6 17:37:31 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188432'
[Mon Apr 6 17:37:31 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:31 AEST 2020] _ret='0'
[Mon Apr 6 17:37:31 AEST 2020] code='200'
[Mon Apr 6 17:37:31 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188433'
[Mon Apr 6 17:37:31 AEST 2020] payload
[Mon Apr 6 17:37:31 AEST 2020] POST
[Mon Apr 6 17:37:31 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188433'
[Mon Apr 6 17:37:31 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:32 AEST 2020] _ret='0'
[Mon Apr 6 17:37:32 AEST 2020] code='200'
[Mon Apr 6 17:37:32 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188434'
[Mon Apr 6 17:37:32 AEST 2020] payload
[Mon Apr 6 17:37:33 AEST 2020] POST
[Mon Apr 6 17:37:33 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188434'
[Mon Apr 6 17:37:33 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:33 AEST 2020] _ret='0'
[Mon Apr 6 17:37:33 AEST 2020] code='200'
[Mon Apr 6 17:37:33 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188435'
[Mon Apr 6 17:37:33 AEST 2020] payload
[Mon Apr 6 17:37:33 AEST 2020] POST
[Mon Apr 6 17:37:33 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188435'
[Mon Apr 6 17:37:33 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:34 AEST 2020] _ret='0'
[Mon Apr 6 17:37:34 AEST 2020] code='200'
[Mon Apr 6 17:37:34 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188436'
[Mon Apr 6 17:37:34 AEST 2020] payload
[Mon Apr 6 17:37:34 AEST 2020] POST
[Mon Apr 6 17:37:34 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188436'
[Mon Apr 6 17:37:34 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:35 AEST 2020] _ret='0'
[Mon Apr 6 17:37:35 AEST 2020] code='200'
[Mon Apr 6 17:37:35 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188438'
[Mon Apr 6 17:37:35 AEST 2020] payload
[Mon Apr 6 17:37:35 AEST 2020] POST
[Mon Apr 6 17:37:35 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188438'
[Mon Apr 6 17:37:35 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:36 AEST 2020] _ret='0'
[Mon Apr 6 17:37:36 AEST 2020] code='200'
[Mon Apr 6 17:37:36 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188441'
[Mon Apr 6 17:37:36 AEST 2020] payload
[Mon Apr 6 17:37:36 AEST 2020] POST
[Mon Apr 6 17:37:36 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188441'
[Mon Apr 6 17:37:36 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:37 AEST 2020] _ret='0'
[Mon Apr 6 17:37:37 AEST 2020] code='200'
[Mon Apr 6 17:37:37 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188443'
[Mon Apr 6 17:37:37 AEST 2020] payload
[Mon Apr 6 17:37:37 AEST 2020] POST
[Mon Apr 6 17:37:37 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188443'
[Mon Apr 6 17:37:37 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:38 AEST 2020] _ret='0'
[Mon Apr 6 17:37:38 AEST 2020] code='200'
[Mon Apr 6 17:37:38 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188444'
[Mon Apr 6 17:37:38 AEST 2020] payload
[Mon Apr 6 17:37:38 AEST 2020] POST
[Mon Apr 6 17:37:38 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188444'
[Mon Apr 6 17:37:38 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:38 AEST 2020] _ret='0'
[Mon Apr 6 17:37:39 AEST 2020] code='200'
[Mon Apr 6 17:37:39 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188445'
[Mon Apr 6 17:37:39 AEST 2020] payload
[Mon Apr 6 17:37:39 AEST 2020] POST
[Mon Apr 6 17:37:39 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188445'
[Mon Apr 6 17:37:39 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:39 AEST 2020] _ret='0'
[Mon Apr 6 17:37:39 AEST 2020] code='200'
[Mon Apr 6 17:37:39 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188446'
[Mon Apr 6 17:37:39 AEST 2020] payload
[Mon Apr 6 17:37:39 AEST 2020] POST
[Mon Apr 6 17:37:39 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188446'
[Mon Apr 6 17:37:39 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:40 AEST 2020] _ret='0'
[Mon Apr 6 17:37:40 AEST 2020] code='200'
[Mon Apr 6 17:37:40 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188449'
[Mon Apr 6 17:37:40 AEST 2020] payload
[Mon Apr 6 17:37:40 AEST 2020] POST
[Mon Apr 6 17:37:40 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188449'
[Mon Apr 6 17:37:40 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:41 AEST 2020] _ret='0'
[Mon Apr 6 17:37:41 AEST 2020] code='200'
[Mon Apr 6 17:37:41 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188450'
[Mon Apr 6 17:37:41 AEST 2020] payload
[Mon Apr 6 17:37:41 AEST 2020] POST
[Mon Apr 6 17:37:41 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188450'
[Mon Apr 6 17:37:41 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:42 AEST 2020] _ret='0'
[Mon Apr 6 17:37:42 AEST 2020] code='200'
[Mon Apr 6 17:37:42 AEST 2020] d='mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ","token":"AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs"'
[Mon Apr 6 17:37:42 AEST 2020] token='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='mysite1.com#AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='www.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='www.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg","token":"upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8"'
[Mon Apr 6 17:37:42 AEST 2020] token='upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='www.mysite1.com#upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='australia.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='australia.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g","token":"md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE"'
[Mon Apr 6 17:37:42 AEST 2020] token='md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='australia.mysite1.com#md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='adelaide.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g","token":"CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk"'
[Mon Apr 6 17:37:42 AEST 2020] token='CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='adelaide.mysite1.com#CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='brisbane.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA","token":"WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg"'
[Mon Apr 6 17:37:42 AEST 2020] token='WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='brisbane.mysite1.com#WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='cairns.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='cairns.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog","token":"3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8"'
[Mon Apr 6 17:37:42 AEST 2020] token='3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='cairns.mysite1.com#3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='canberra.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='canberra.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw","token":"4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A"'
[Mon Apr 6 17:37:42 AEST 2020] token='4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='canberra.mysite1.com#4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='darwin.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='darwin.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng","token":"qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ"'
[Mon Apr 6 17:37:42 AEST 2020] token='qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='darwin.mysite1.com#qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='gold-coast.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ","token":"IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g"'
[Mon Apr 6 17:37:42 AEST 2020] token='IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='gold-coast.mysite1.com#IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='hobart.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='hobart.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ","token":"B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY"'
[Mon Apr 6 17:37:42 AEST 2020] token='B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='hobart.mysite1.com#B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='launceston.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='launceston.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q","token":"HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q"'
[Mon Apr 6 17:37:42 AEST 2020] token='HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='launceston.mysite1.com#HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='melbourne.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg","token":"WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII"'
[Mon Apr 6 17:37:42 AEST 2020] token='WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='melbourne.mysite1.com#WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='newcastle.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw","token":"qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0"'
[Mon Apr 6 17:37:42 AEST 2020] token='qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0'
[Mon Apr 6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr 6 17:37:42 AEST 2020] keyauthorization='qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:42 AEST 2020] dvlist='newcastle.mysite1.com#qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] d='perth.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] Getting webroot for domain='perth.mysite1.com'
[Mon Apr 6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw","token":"-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg"'
[Mon Apr 6 17:37:42 AEST 2020] token='-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] dvlist='perth.mysite1.com#-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] d='sydney.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] Getting webroot for domain='sydney.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g","token":"2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g"'
[Mon Apr 6 17:37:43 AEST 2020] token='2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] dvlist='sydney.mysite1.com#2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] Getting webroot for domain='toowoomba.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg","token":"_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc"'
[Mon Apr 6 17:37:43 AEST 2020] token='_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] dvlist='toowoomba.mysite1.com#_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] d='townsville.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] Getting webroot for domain='townsville.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q","token":"aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4"'
[Mon Apr 6 17:37:43 AEST 2020] token='aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] dvlist='townsville.mysite1.com#aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] Getting webroot for domain='wollongong.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g","token":"sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg"'
[Mon Apr 6 17:37:43 AEST 2020] token='sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] dvlist='wollongong.mysite1.com#sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g#http-01#/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] d
[Mon Apr 6 17:37:43 AEST 2020] vlist='mysite1.com#AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ#http-01#/var/www/html/mysite1,www.mysite1.com#upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg#http-01#/var/www/html/mysite1,australia.mysite1.com#md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g#http-01#/var/www/html/mysite1,adelaide.mysite1.com#CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g#http-01#/var/www/html/mysite1,brisbane.mysite1.com#WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA#http-01#/var/www/html/mysite1,cairns.mysite1.com#3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog#http-01#/var/www/html/mysite1,canberra.mysite1.com#4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw#http-01#/var/www/html/mysite1,darwin.mysite1.com#qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng#http-01#/var/www/html/mysite1,gold-coast.mysite1.com#IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ#http-01#/var/www/html/mysite1,hobart.mysite1.com#B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ#http-01#/var/www/html/mysite1,launceston.mysite1.com#HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q#http-01#/var/www/html/mysite1,melbourne.mysite1.com#WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg#http-01#/var/www/html/mysite1,newcastle.mysite1.com#qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw#http-01#/var/www/html/mysite1,perth.mysite1.com#-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw#http-01#/var/www/html/mysite1,sydney.mysite1.com#2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g#http-01#/var/www/html/mysite1,toowoomba.mysite1.com#_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg#http-01#/var/www/html/mysite1,townsville.mysite1.com#aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q#http-01#/var/www/html/mysite1,wollongong.mysite1.com#sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g#http-01#/var/www/html/mysite1,'
[Mon Apr 6 17:37:43 AEST 2020] d='mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='www.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='australia.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='cairns.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='canberra.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='darwin.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='hobart.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='launceston.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='perth.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='sydney.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='townsville.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] ok, let's start to verify
[Mon Apr 6 17:37:43 AEST 2020] Verifying: mysite1.com
[Mon Apr 6 17:37:43 AEST 2020] d='mysite1.com'
[Mon Apr 6 17:37:43 AEST 2020] keyauthorization='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr 6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr 6 17:37:43 AEST 2020] wellknown_path='/var/www/html/mysite1/.well-known/acme-challenge'
[Mon Apr 6 17:37:43 AEST 2020] writing token:AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs to /var/www/html/mysite1/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs
[Mon Apr 6 17:37:43 AEST 2020] Changing owner/group of .well-known to development:httpDEV
[Mon Apr 6 17:37:43 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:43 AEST 2020] payload='{}'
[Mon Apr 6 17:37:43 AEST 2020] POST
[Mon Apr 6 17:37:43 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:43 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:44 AEST 2020] _ret='0'
[Mon Apr 6 17:37:44 AEST 2020] code='200'
[Mon Apr 6 17:37:44 AEST 2020] trigger validation code: 200
[Mon Apr 6 17:37:44 AEST 2020] sleep 2 secs to verify
[Mon Apr 6 17:37:46 AEST 2020] checking
[Mon Apr 6 17:37:46 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:46 AEST 2020] payload
[Mon Apr 6 17:37:46 AEST 2020] POST
[Mon Apr 6 17:37:46 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:46 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:47 AEST 2020] _ret='0'
[Mon Apr 6 17:37:47 AEST 2020] code='200'
[Mon Apr 6 17:37:47 AEST 2020] Pending
[Mon Apr 6 17:37:47 AEST 2020] sleep 2 secs to verify
[Mon Apr 6 17:37:49 AEST 2020] checking
[Mon Apr 6 17:37:49 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:49 AEST 2020] payload
[Mon Apr 6 17:37:49 AEST 2020] POST
[Mon Apr 6 17:37:49 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:49 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:49 AEST 2020] _ret='0'
[Mon Apr 6 17:37:49 AEST 2020] code='200'
[Mon Apr 6 17:37:49 AEST 2020] mysite1.com:Verify error:Invalid response from https://mysite1.com/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs [34.232.56.134]:
[Mon Apr 6 17:37:49 AEST 2020] Debug: get token url.
[Mon Apr 6 17:37:49 AEST 2020] GET
[Mon Apr 6 17:37:49 AEST 2020] url='http://mysite1.com/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs'
[Mon Apr 6 17:37:49 AEST 2020] timeout=1
[Mon Apr 6 17:37:49 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g --connect-timeout 1'
[Mon Apr 6 17:37:49 AEST 2020] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 60
[Mon Apr 6 17:37:49 AEST 2020] ret='60'
[Mon Apr 6 17:37:49 AEST 2020] Debugging, skip removing: /var/www/html/mysite1/.well-known
[Mon Apr 6 17:37:49 AEST 2020] pid
[Mon Apr 6 17:37:49 AEST 2020] No need to restore nginx, skip.
[Mon Apr 6 17:37:49 AEST 2020] _clearupdns
[Mon Apr 6 17:37:49 AEST 2020] dns_entries
[Mon Apr 6 17:37:49 AEST 2020] skip dns.
[Mon Apr 6 17:37:49 AEST 2020] _on_issue_err
[Mon Apr 6 17:37:49 AEST 2020] Please check log file for more details: /home/development/.acme.sh/acme.sh.log
[Mon Apr 6 17:37:50 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:50 AEST 2020] payload='{}'
[Mon Apr 6 17:37:50 AEST 2020] POST
[Mon Apr 6 17:37:50 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr 6 17:37:50 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:50 AEST 2020] _ret='0'
[Mon Apr 6 17:37:50 AEST 2020] code='400'
[Mon Apr 6 17:37:50 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr 6 17:37:50 AEST 2020] payload='{}'
[Mon Apr 6 17:37:50 AEST 2020] POST
[Mon Apr 6 17:37:50 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr 6 17:37:50 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:51 AEST 2020] _ret='0'
[Mon Apr 6 17:37:51 AEST 2020] code='200'
[Mon Apr 6 17:37:51 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr 6 17:37:51 AEST 2020] payload='{}'
[Mon Apr 6 17:37:51 AEST 2020] POST
[Mon Apr 6 17:37:51 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr 6 17:37:51 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:52 AEST 2020] _ret='0'
[Mon Apr 6 17:37:52 AEST 2020] code='200'
[Mon Apr 6 17:37:52 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr 6 17:37:52 AEST 2020] payload='{}'
[Mon Apr 6 17:37:52 AEST 2020] POST
[Mon Apr 6 17:37:52 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr 6 17:37:52 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:53 AEST 2020] _ret='0'
[Mon Apr 6 17:37:53 AEST 2020] code='200'
[Mon Apr 6 17:37:53 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr 6 17:37:53 AEST 2020] payload='{}'
[Mon Apr 6 17:37:53 AEST 2020] POST
[Mon Apr 6 17:37:53 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr 6 17:37:53 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:54 AEST 2020] _ret='0'
[Mon Apr 6 17:37:54 AEST 2020] code='200'
[Mon Apr 6 17:37:54 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr 6 17:37:54 AEST 2020] payload='{}'
[Mon Apr 6 17:37:54 AEST 2020] POST
[Mon Apr 6 17:37:54 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr 6 17:37:54 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:54 AEST 2020] _ret='0'
[Mon Apr 6 17:37:54 AEST 2020] code='200'
[Mon Apr 6 17:37:55 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr 6 17:37:55 AEST 2020] payload='{}'
[Mon Apr 6 17:37:55 AEST 2020] POST
[Mon Apr 6 17:37:55 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr 6 17:37:55 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:55 AEST 2020] _ret='0'
[Mon Apr 6 17:37:55 AEST 2020] code='200'
[Mon Apr 6 17:37:55 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr 6 17:37:55 AEST 2020] payload='{}'
[Mon Apr 6 17:37:55 AEST 2020] POST
[Mon Apr 6 17:37:55 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr 6 17:37:55 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:56 AEST 2020] _ret='0'
[Mon Apr 6 17:37:56 AEST 2020] code='200'
[Mon Apr 6 17:37:56 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr 6 17:37:56 AEST 2020] payload='{}'
[Mon Apr 6 17:37:56 AEST 2020] POST
[Mon Apr 6 17:37:56 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr 6 17:37:56 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:57 AEST 2020] _ret='0'
[Mon Apr 6 17:37:57 AEST 2020] code='200'
[Mon Apr 6 17:37:57 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr 6 17:37:57 AEST 2020] payload='{}'
[Mon Apr 6 17:37:57 AEST 2020] POST
[Mon Apr 6 17:37:57 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr 6 17:37:57 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:58 AEST 2020] _ret='0'
[Mon Apr 6 17:37:58 AEST 2020] code='200'
[Mon Apr 6 17:37:58 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr 6 17:37:58 AEST 2020] payload='{}'
[Mon Apr 6 17:37:58 AEST 2020] POST
[Mon Apr 6 17:37:58 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr 6 17:37:58 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:37:59 AEST 2020] _ret='0'
[Mon Apr 6 17:37:59 AEST 2020] code='200'
[Mon Apr 6 17:37:59 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr 6 17:37:59 AEST 2020] payload='{}'
[Mon Apr 6 17:37:59 AEST 2020] POST
[Mon Apr 6 17:37:59 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr 6 17:37:59 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:00 AEST 2020] _ret='0'
[Mon Apr 6 17:38:00 AEST 2020] code='200'
[Mon Apr 6 17:38:00 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr 6 17:38:00 AEST 2020] payload='{}'
[Mon Apr 6 17:38:00 AEST 2020] POST
[Mon Apr 6 17:38:00 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr 6 17:38:00 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:01 AEST 2020] _ret='0'
[Mon Apr 6 17:38:01 AEST 2020] code='200'
[Mon Apr 6 17:38:01 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr 6 17:38:01 AEST 2020] payload='{}'
[Mon Apr 6 17:38:01 AEST 2020] POST
[Mon Apr 6 17:38:01 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr 6 17:38:01 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:02 AEST 2020] _ret='0'
[Mon Apr 6 17:38:02 AEST 2020] code='200'
[Mon Apr 6 17:38:02 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr 6 17:38:02 AEST 2020] payload='{}'
[Mon Apr 6 17:38:02 AEST 2020] POST
[Mon Apr 6 17:38:02 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr 6 17:38:02 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:03 AEST 2020] _ret='0'
[Mon Apr 6 17:38:03 AEST 2020] code='200'
[Mon Apr 6 17:38:03 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr 6 17:38:03 AEST 2020] payload='{}'
[Mon Apr 6 17:38:03 AEST 2020] POST
[Mon Apr 6 17:38:03 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr 6 17:38:03 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:04 AEST 2020] _ret='0'
[Mon Apr 6 17:38:04 AEST 2020] code='200'
[Mon Apr 6 17:38:04 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr 6 17:38:04 AEST 2020] payload='{}'
[Mon Apr 6 17:38:04 AEST 2020] POST
[Mon Apr 6 17:38:04 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr 6 17:38:04 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:05 AEST 2020] _ret='0'
[Mon Apr 6 17:38:05 AEST 2020] code='200'
[Mon Apr 6 17:38:05 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr 6 17:38:05 AEST 2020] payload='{}'
[Mon Apr 6 17:38:05 AEST 2020] POST
[Mon Apr 6 17:38:05 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr 6 17:38:05 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header -g '
[Mon Apr 6 17:38:06 AEST 2020] _ret='0'
[Mon Apr 6 17:38:06 AEST 2020] code='200'
[Mon Apr 6 17:38:06 AEST 2020] Diagnosis versions:
openssl:openssl
OpenSSL 1.1.1d 10 Sep 2019
apache:
apache doesn't exists.
nginx:
nginx doesn't exists.
socat:
socat by Gerhard Rieger and contributors - see www.dest-unreach.org
socat version 1.7.3.4 on Jan 6 2020 16:58:19
running on Linux version #1 SMP Mon Feb 24 07:35:13 PST 2020, release 5.5.6-914.native, machine x86_64
features:
#define WITH_STDIO 1
#define WITH_FDNUM 1
#define WITH_FILE 1
#define WITH_CREAT 1
#define WITH_GOPEN 1
#define WITH_TERMIOS 1
#define WITH_PIPE 1
#define WITH_UNIX 1
#define WITH_ABSTRACT_UNIXSOCKET 1
#define WITH_IP4 1
#define WITH_IP6 1
#define WITH_RAWIP 1
#define WITH_GENERICSOCKET 1
#define WITH_INTERFACE 1
#define WITH_TCP 1
#define WITH_UDP 1
#define WITH_SCTP 1
#define WITH_LISTEN 1
#define WITH_SOCKS4 1
#define WITH_SOCKS4A 1
#define WITH_PROXY 1
#define WITH_SYSTEM 1
#define WITH_EXEC 1
#undef WITH_READLINE
#define WITH_TUN 1
#define WITH_PTY 1
#define WITH_OPENSSL 1
#undef WITH_FIPS
#undef WITH_LIBWRAP
#define WITH_SYCLS 1
#define WITH_FILAN 1
#define WITH_RETRY 1
#define WITH_MSGLEVEL 0 /*debug*/
nginx-mainline
is my web server not nginx
(which is the stable build).
Does the .acme.sh
file need to be modified to look for nginx-mainline
???
if so where, there are 110 nginx
entries in the .acme.sh
file.
curl -IkL -m20 http://mysite1.com
HTTP/1.1 301 Moved Permanently Server: nginx/1.17.8 Date: Mon, 06 Apr 2020 08:10:16 GMT Content-Type: text/html Content-Length: 169 Connection: keep-alive Location: https://mysite1.com/
HTTP/2 200 server: nginx/1.17.8 content-type: text/html; charset=UTF-8 x-powered-by: PHP/7.4.2 cache-control: max-age=0, must-revalidate, private date: Mon, 06 Apr 2020 08:10:16 GMT x-debug-token: 1b8ccc x-debug-token-link: https://mysite1.com/_profiler/1b8ccc x-robots-tag: noindex expires: Mon, 06 Apr 2020 08:10:16 GMT
So any idea what's all the problems here?
I can help with a couple points, and I share a couple questions. I am addressing each point in separate comments.
1) In your .bashrc, at the very bottom there should have been a new line added after the alias, but it was appended to the alias in a way that looks semantically correct:
alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"
Should be:
alias ll='ls -alF'
. "/home/development/.acme.sh/acme.sh.env"
The goal of that line wasn't to change the alias but to execute the .env script.
2) You asked about these lines in your nginx .conf file:
ssl_certificate /etc/letsencrypt/live/mysite.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/mysite.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;
Under /home/user/.acme.sh you will find one folder per site. For example: ./acme.sh/mysite.com. When we issue a cert that folder is updated with new certs and renewals. The output from the --issue tells us which file is the cert file, the key, and the fullchain file.
Here is a concept that blew my mind. When we --install-cert we tell the command where we want to save the --cert-file, --key-file, and --fullchain-file, and we provide a name. But we do not tell it which files to use as the source of those target files. I was searching everywhere for "how do we tell it which files to use!?!" The answer is that we do not. The files under .acme.sh/mysite.com are "found" by acme.sh. It knows where the source data is to build the .pem files It just needs to know where we want to create new .pem files. So if it wasn't clear, just execute the --install-cert and send files into a new folder, not /etc/letsencrypt/zzz.
Which folder?
This is where we get to the config stuff above. When using certbot we have /etc/letsencrypt/live. You can still use that folder, but I suggest using a completely different one. The wiki suggests we create a folder that can be accessed by the web server. So in my apache2 server I have /etc/apache2/ssl. That is the path used with --install-cert, and (advanced install) you change those lines in the config file so that it points to the folder+files that you specified in the --install-cert command.
The names for these files aren't all the same. You need to just look at the three files you have, the three files required in the config, and logically deduce which is which. Again, the --install-cert function has options for --cert-file, --key-file, and --fullchain-file. My guess is that this is what needs:
ssl_certificate --cert-file
ssl_certificate_key --key-file
ssl_trusted_certificate --fullchain-file
But look at your .conf file : for the ssl_certificate you have your fullchain file. And your ssl_trusted_certificate is chain.pem.
Try this: Re-execute the --install-cert with these values:
--cert-file /etc/ssl/mysite.com/cert.pm
--key-file /etc/ssl/mysite.com/key.pm
--fullchain-file /etc/ssl/mysite.com/fullchain.pm
Then change your .conf file:
ssl_certificate /etc/ssl/mysite.com/cert.pm;
ssl_certificate_key /etc/ssl/mysite.com/key.pm;
ssl_trusted_certificate /etc/ssl/mysite.com/fullchain.pm;
3) I am also converting from certbot to acme.sh, and I'm also confused.
Do we need anything in /etc/letsencrypt? : I don't think so. As I'm trying to do this I'm renaming that folder. If everything works later, I'll delete it.
What about old certbot stuff? : I'm now doing everything I can to remove certbot and anything related to it. I want to start from scratch with acme.sh. This also means manually modifying all of the site .conf files. For Apache I've been having a big problem where the .conf giles and the sites-enabled entries are incorrect, so starting Apache has been difficult. I have used a2dissite to disable all HTTPS sites except one so that I can just get one working and then replicate the process for other sites.
I thought acme.sh was going to do some of that for us but I was wrong. I mean, there's no lack of appreciation here for all of the great things that this code does do. I just thought it did more. Reading the documentation a few more times helps to understand it better.
When re-creating the conf files, I'm going to try renaming the SSL conf files from mysite.tld-le-ssl.conf to mysite.tld-ssl.conf. I don't see a good reason to "brand" my config files with the LE (Let's Encrypt) identifier. It doesn't matter how we're implementing SSL, it just needs to work.
So to summarize about what to do with the old certbot/le stuff - I'm completely blowing it all away. I wish I could find a blog or wiki on this topic.
4) Finally - I've been very confused about permissions, and this is related to certbot migration to acme.sh.
We need to --install-cert into a folder like /etc/apache/ssl/mysite, the way certbot installed to /etc/letsencrypt/live/mysite. That requires root permissions. @Neilpang has said acme.sh is designed so that it doesn't need root permissions. I'm very confused about that.
The wiki page also says we shouldn't use 'sudo'. Well, don't use sudo, and don't use root, so the cert folders need to be accessible by a different user: but what are the requirements for that user? I run sites under user+owner www-data. My ubuntu user is in group www-data. I think I installed certbot with root. Now I think I need to give folders like /etc/apache/ssl/mysite write access to ubuntu and read access to group www-data? I dunno, I'm making guesses, searching for info, experimenting, and spending a lot of time on this.
Summary on-topic request: Please note some of these concerns and document what we need to do. I'll be happy to collect notes here and elsewhere and write/PR a new wiki page. I just need the answers. Thanks!
@TonyGravagno
Thanks for your comments.
That requires root permissions. @Neilpang has said acme.sh is designed so that it doesn't need root permissions. I'm very confused about that.
Actually, acme.sh doesn't need root to generate certs. As for copying files, you just need to configure the "Write" permissions to the user who is running acme.sh.
If you want to use root. please install acme.sh as root user, and then use it to generate certs and install-cert. But don't use sudo
.
For example:
#unstall acme.sh for current user:
acme.sh --uninstall
# first switch to root user
sudo su
#install acme.sh for root user:
curl https://get.acme.sh | sh
#try issue and install-cert again
acme.sh --issue .....
acme.sh --install-cert .....
Thank you for the quick response, @Neilpang. I have spent my entire day with this fine software. Yes, I think I need to install, issue, install-cert, and renew with root.
To install a cert with --apache, the script needs to modify apache.conf. The 'ubuntu' user doesn't have permissions to update/swap that file. I used setfacl to fix that. Then I found this user couldn't restart the apache service (even with --reloadcmd "service apache2 force-reload"). So I decided to try the -w option.
All of my WordPress sites run with user/group www-data. My user 'ubuntu' is in group www-data. The script can create folders, but they cannot be accessed as user/group ubuntu. I created a script that creates the .well-known/acme-challenge path and inserts a simple .htaccess, then changes the ownership to www-data. But of course the script attempts to write the challenge file as user ubuntu, so the web server can't access it anyway. I decided to stop trying to get around the problems.
I will start from scratch again with all operations as root. But I would really like to understand if acme.sh is capable of defeating these obstacles, and I'm just not using it properly? Or is there a better pattern to follow? Or is root really the answer?
And - back on topic with this ticket (and not wanting to hijack it further: Certbot and acme.sh are both implementing the API for LE. Can we eliminate the /etc/letsencrypt folder when we use acme.sh? It's tough to know where the client ends and LE begins. Thanks!
Can we eliminate the /etc/letsencrypt folder when we use acme.sh?
Yes, there are no relations between certbot files and acme.sh files. you can remove them totally.
acme.sh only lives in its home folder("~/.acme.sh/
" by default). This is designed to keep your system safe. We don't modify any of your system files unless you specified on the commandline args.
As for the www-data
permissions problem, yes, you are correct.
For the -w
webroot mode, you need (and only need) to give write
access of the folder .well-known/acme-challenge
to your user ubuntu
. That should be enough for issuing a cert.
Thanks.
TonyG > Appreciate your insightful comments
Neilpang > My log output above show any clue why still fails? Thanks
@ketonik
I think @TonyGravagno has explained clearly.
Are all your domains *.mysite1.com
pointing to the save webroot folder /var/www/html/mysite
.
You must use one weboot folder for one website for one sub domain.
@Neilpang : With root I quickly and successfully have issued a couple certs. I will continue with this and will try with user ubuntu later.
@ketonik I hope I was able to help a little with this. I believe I made an error in a suggestion to you:
In my SSL conf file in Apache, I have:
SSLCertificateFile /etc/apache2/ssl/site.tld/fullchain.pem
SSLCertificateKeyFile /etc/apache2/ssl/site.tld/key.pem
Note that the cert file is the fullchain, which makes sense since that has all of the info needed. So just confirm if your files are assigned to the right nginx values:
ssl_certificate /etc/letsencrypt/live/mysite.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/mysite.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;
Also, I haven't done this with nginx yet, but with Apache whenever we change the .conf files we need to ensure we use a2ensite to enable them and then restart the server. You might need a similar operation to be performed before your site will register that the configs have changed.
I think you saw a significant item: The script said you don't have nginx loaded but you do have nginx-mainline. The script write the .well-known/acme-challenge file and then changed the ownership of that file. Then it attempted to get a verification and curl returned error CURLE_PEER_FAILED_VERIFICATION (60) "The remote server's SSL certificate or SSH md5 fingerprint was deemed not OK."
I'm a noob with this stuff too, but that tells me it saw a cert but that the cert is bad. This comes back to the above ... check to make sure you have the right .pem files in those folders.
And as noted, to avoid confusion, now that Neil confirmed that we can delete the LE stuff, I have moved the pem files to another folder and will delete the LE folders soon. You might want to do the same. HTH!
@ketonik
I think @TonyGravagno has explained clearly.
Are all your domains
*.mysite1.com
pointing to the save webroot folder/var/www/html/mysite
.You must use one weboot folder for one website for one sub domain.
Yes one webroot: /var/www/html/mysite1
with this command:
acme.sh --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com -d adelaide.mysite1.com -d brisbane.mysite1.com -d cairns.mysite1.com -d canberra.mysite1.com -d darwin.mysite1.com -d gold-coast.mysite1.com -d hobart.mysite1.com -d launceston.mysite1.com -d melbourne.mysite1.com -d newcastle.mysite1.com -d perth.mysite1.com -d sydney.mysite1.com -d toowoomba.mysite1.com -d townsville.mysite1.com -d wollongong.mysite1.com -w /var/www/html/mysite1
And as noted, to avoid confusion, now that Neil confirmed that we can delete the LE stuff, I have moved the pem files to another folder and will delete the LE folders soon. You might want to do the same. HTH!
This is a scary thought, as always tends to happen, try something unknown 'in case it may work' fall down a rabbit hole, after remove all and then find the acme.sh still doesn't work, costing hours and breaking everything along the way. mmm gosh i wish stuff just worked :-(
@ketonik
Can you please reduce the domain count and try with --test
option, and then provie log with --debug 2
.
For example:
acme.sh --test --issue -d mysite1.com -d www.mysite1.com /var/www/html/mysite1 --debug 2
acme.sh --test --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com
/var/www/html/mysite1 --debug 2
acme.sh --test --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com -d adelaide.mysite1.com
/var/www/html/mysite1 --debug 2
acme.sh --test --issue -d mysite1.com -d www.mysite1.com /var/www/html/mysite1
Unknown parameter : /var/www/html/mysite1
assuming you've missed the -w
option
acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1
Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk
acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1
[Sun 12 Apr 2020 15:11:34 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory
[Sun 12 Apr 2020 15:11:35 AEST] Create account key ok.
[Sun 12 Apr 2020 15:11:35 AEST] Registering account
[Sun 12 Apr 2020 15:11:37 AEST] Registered
[Sun 12 Apr 2020 15:11:37 AEST] ACCOUNT_THUMBPRINT='vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I'
[Sun 12 Apr 2020 15:11:37 AEST] Creating domain key
[Sun 12 Apr 2020 15:11:37 AEST] The domain key is here: /home/development/.acme.sh/mysite1.com/mysite1.com.key
[Sun 12 Apr 2020 15:11:37 AEST] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com'
[Sun 12 Apr 2020 15:11:37 AEST] Getting domain auth token for each domain
[Sun 12 Apr 2020 15:11:40 AEST] Getting webroot for domain='mysite1.com'
[Sun 12 Apr 2020 15:11:40 AEST] Getting webroot for domain='www.mysite1.com'
[Sun 12 Apr 2020 15:11:40 AEST] Verifying: mysite1.com
mkdir: cannot create directory ‘/var/www/html/mysite1/.well-known’: Permission denied
/home/development/.acme.sh/acme.sh: line 4384: /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk: No such file or directory
[Sun 12 Apr 2020 15:11:40 AEST] mysite1.com:Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk
[Sun 12 Apr 2020 15:11:40 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log
acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1 --debug 2
[Sun 12 Apr 2020 15:17:24 AEST] Lets find script dir. [Sun 12 Apr 2020 15:17:24 AEST] SCRIPT='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] _script='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] _script_home='/home/development/.acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:17:24 AEST] LE_WORKING_DIR='/home/development/.acme.sh' https://github.com/acmesh-official/acme.sh v2.8.6 [Sun 12 Apr 2020 15:17:24 AEST] Running cmd: issue [Sun 12 Apr 2020 15:17:24 AEST] _main_domain='mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] _alt_domains='www.mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:17:24 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] ACME_DIRECTORY='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:17:24 AEST] _ACME_SERVER_HOST='acme-staging-v02.api.letsencrypt.org' [Sun 12 Apr 2020 15:17:24 AEST] DOMAIN_PATH='/home/development/.acme.sh/mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] '/var/www/html/mysite1' does not contain 'dns' [Sun 12 Apr 2020 15:17:24 AEST] Using ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] _init api for server: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] GET [Sun 12 Apr 2020 15:17:24 AEST] url='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:17:24 AEST] timeout= [Sun 12 Apr 2020 15:17:24 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.81F07qPdPs -g ' [Sun 12 Apr 2020 15:17:24 AEST] ret='0' [Sun 12 Apr 2020 15:17:24 AEST] response='{ "SorBucOP1UM": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417", "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change", "meta": { "caaIdentities": [ "letsencrypt.org" ], "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf", "website": "https://letsencrypt.org/docs/staging-environment/" }, "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct", "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce", "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order", "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert" }' [Sun 12 Apr 2020 15:17:25 AEST] ACME_KEY_CHANGE='https://acme-staging-v02.api.letsencrypt.org/acme/key-change' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_AUTHZ [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_ORDER='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_ACCOUNT='https://acme-staging-v02.api.letsencrypt.org/acme/new-acct' [Sun 12 Apr 2020 15:17:25 AEST] ACME_REVOKE_CERT='https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert' [Sun 12 Apr 2020 15:17:25 AEST] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] ACME_VERSION='2' [Sun 12 Apr 2020 15:17:25 AEST] Le_NextRenewTime [Sun 12 Apr 2020 15:17:25 AEST] _on_before_issue [Sun 12 Apr 2020 15:17:25 AEST] _chk_main_domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _chk_alt_domains='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] '/var/www/html/mysite1' does not contain 'no' [Sun 12 Apr 2020 15:17:25 AEST] Le_LocalAddress [Sun 12 Apr 2020 15:17:25 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Check for domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:25 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Check for domain='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:25 AEST] d [Sun 12 Apr 2020 15:17:25 AEST] '/var/www/html/mysite1' does not contain 'apache' [Sun 12 Apr 2020 15:17:25 AEST] _saved_account_key_hash='AlbOCKmizF4mvi0vcjf2SJ6BZWMj8STPup+G8pm/3PQ=' [Sun 12 Apr 2020 15:17:25 AEST] _saved_account_key_hash is not changed, skip register account. [Sun 12 Apr 2020 15:17:25 AEST] Read key length: [Sun 12 Apr 2020 15:17:25 AEST] _createcsr [Sun 12 Apr 2020 15:17:25 AEST] domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] domainlist='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] csrkey='/home/development/.acme.sh/mysite1.com/mysite1.com.key' [Sun 12 Apr 2020 15:17:25 AEST] csr='/home/development/.acme.sh/mysite1.com/mysite1.com.csr' [Sun 12 Apr 2020 15:17:25 AEST] csrconf='/home/development/.acme.sh/mysite1.com/mysite1.com.csr.conf' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] domainlist='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] _csr_cn='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Getting domain auth token for each domain [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] d [Sun 12 Apr 2020 15:17:25 AEST] _identifiers='{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}' [Sun 12 Apr 2020 15:17:25 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:25 AEST] payload='{"identifiers": [{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}]}' [Sun 12 Apr 2020 15:17:25 AEST] RSA key [Sun 12 Apr 2020 15:17:25 AEST] Get nonce with HEAD. ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] HEAD [Sun 12 Apr 2020 15:17:25 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] body [Sun 12 Apr 2020 15:17:25 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:25 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g -I ' [Sun 12 Apr 2020 15:17:26 AEST] _ret='0' [Sun 12 Apr 2020 15:17:26 AEST] _headers='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:26 GMT cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:26 AEST] _CACHED_NONCE='0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0' [Sun 12 Apr 2020 15:17:26 AEST] nonce='0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0' [Sun 12 Apr 2020 15:17:26 AEST] POST [Sun 12 Apr 2020 15:17:26 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:26 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyTnV3WGhqbWhnejVGTXJHUmtOeEFmaEJwOGlKLVJTM3hreXBtMjlLWDZxMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9uZXctb3JkZXIiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "eyJpZGVudGlmaWVycyI6IFt7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6ImVzY29ydGFkZGljdGlvbi5sb3ZlIn0seyJ0eXBlIjoiZG5zIiwidmFsdWUiOiJ3d3cuZXNjb3J0YWRkaWN0aW9uLmxvdmUifV19", "signature": "og6FP2q4DLr9YX0btxa8Tt7UHoF1Lkrdg6duQqIPQQyQ4sIkthfTCesXk7or0wGTY1j5V3Dt5QlrPFkcq-7dQ6nsJvlF3R-xrseKfGQMK6glwCM6-FlGu_m4F7Sx1xj-WTn1h3_D5o6aiVywbYFzmP5RSGDlS8gJRFNc8Y4SHOPIZ0fHKgU6HhAzUjkdLy0b8209wHkAe2I_C7QOAxbeQ_lOukyRSYLEoxA0SCkUg_K3gKebcTmuVVlrOrxtT1iZykvH13PTPTrxRA3P06X-wOHCgjs6f7aLsS2arQNXUezPo1tTEP3bUu1bU8GXz2UHabxLwzVE9ywxaxXpW34fCA"}' [Sun 12 Apr 2020 15:17:26 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:26 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:26 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:27 AEST] _ret='0' [Sun 12 Apr 2020 15:17:27 AEST] responseHeaders='HTTP/2 201 server: nginx date: Sun, 12 Apr 2020 05:17:27 GMT content-type: application/json content-length: 513 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" location: https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84558747 replay-nonce: 0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:27 AEST] code='201' [Sun 12 Apr 2020 15:17:27 AEST] original='{ "status": "pending", "expires": "2020-04-19T05:17:27.007271354Z", "identifiers": [ { "type": "dns", "value": "mysite1.com" }, { "type": "dns", "value": "www.mysite1.com" } ], "authorizations": [ "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356", "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357" ], "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747" }' [Sun 12 Apr 2020 15:17:27 AEST] response='{"status":"pending","expires":"2020-04-19T05:17:27.007271354Z","identifiers":[{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}],"authorizations":["https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356","https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357"],"finalize":"https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747"}' [Sun 12 Apr 2020 15:17:27 AEST] Le_LinkOrder='https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84558747' [Sun 12 Apr 2020 15:17:27 AEST] Le_OrderFinalize='https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747' [Sun 12 Apr 2020 15:17:27 AEST] _authorizations_seg='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356,https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:27 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] payload [Sun 12 Apr 2020 15:17:27 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:27 AEST] Use _CACHED_NONCE='0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU' [Sun 12 Apr 2020 15:17:27 AEST] nonce='0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU' [Sun 12 Apr 2020 15:17:27 AEST] POST [Sun 12 Apr 2020 15:17:27 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxbU45WHNEWnhnRWVTbEc1WTNBTmsxUE9BS1RLTFFzQWVXb0ZMa3ZsSVNRVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNTM1NiIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "dZTfsh3ZPcmTYSOSEAUHWBVyYLH59b4AaHGBp4ZYeXLvSorIXQ7-1oMhHLoPofMOjOP88VZW-e3WhXY0XFQxwh41ps5ozyEPzRMP3y-5iPh7Dl8zVBQNJD6OKIchYhJUmurT2yaJoeSRQHgXskiHuPFKWUOc886itWrSaJtz3T_APByYlRX3jUldeCLRXW32CIZVQUFsW6igrWP0cnt_66fL3TlF_to5NaGc8zpOOoAuORMtguCVXwQXKqCE5rL0YMfrobNwQchjmSjtjshuxs1wiBoFaZO_bWRparuJMohy6z9blSfJKuhUmBzEkA7oSShGwG9oLObM_O8qeKyhgg"}' [Sun 12 Apr 2020 15:17:27 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:27 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:27 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:28 AEST] _ret='0' [Sun 12 Apr 2020 15:17:28 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:28 GMT content-type: application/json content-length: 816 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:28 AEST] code='200' [Sun 12 Apr 2020 15:17:28 AEST] original='{ "identifier": { "type": "dns", "value": "mysite1.com" }, "status": "pending", "expires": "2020-04-19T05:17:27Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" } ] }' [Sun 12 Apr 2020 15:17:28 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:28 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:28 AEST] _d='mysite1.com' [Sun 12 Apr 2020 15:17:28 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] payload [Sun 12 Apr 2020 15:17:28 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:28 AEST] Use _CACHED_NONCE='0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4' [Sun 12 Apr 2020 15:17:28 AEST] nonce='0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4' [Sun 12 Apr 2020 15:17:28 AEST] POST [Sun 12 Apr 2020 15:17:28 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyWFFCVUxMelVRd1diSHVFVktuMjJ5VmhLVm5ZTW9LQUpGckxaTktld1duNCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNTM1NyIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "PRQSf1F14LbD29ua0F1fCWfJssjvxTfzNzdxkGFMtYXKcbYejiPGAbZn5bcoCVvlm823kZlSib0hz8TlhhHOaQH__IKXuuMmYQkS4vNFUltgsZqv_oT_Vad0DwdOP_urEj5zd8MnaSGFSt_2HhLnPjWcJ81pZeTwILHE6PVSy_dvC9rrOTbk3C6skRWkzUdiUfApURzdCVTBjlg5BfXGtKsx_1j3xV2y7jXsSpRz3GlExvE54vjDLY3u7UN6QS9kxTMgbOsD7DI1Qwm3gHmmAMsVm4z49JB9R0Zihb9SwZDSdqKvw5f71qNpKi62_mfsyYmcxmfWYchUrmIQtBG91w"}' [Sun 12 Apr 2020 15:17:28 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:28 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:28 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:29 AEST] _ret='0' [Sun 12 Apr 2020 15:17:29 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:28 GMT content-type: application/json content-length: 820 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:29 AEST] code='200' [Sun 12 Apr 2020 15:17:29 AEST] original='{ "identifier": { "type": "dns", "value": "www.mysite1.com" }, "status": "pending", "expires": "2020-04-19T05:17:27Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" } ] }' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] _d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _authorizations_map='www.mysite1.com,{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]} mysite1.com,{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]} ' [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] Getting webroot for domain='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _w='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _idn_temp [Sun 12 Apr 2020 15:17:29 AEST] _candindates='mysite1.com,{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:29 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"' [Sun 12 Apr 2020 15:17:29 AEST] token='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] dvlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] Getting webroot for domain='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _w='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _idn_temp [Sun 12 Apr 2020 15:17:29 AEST] _candindates='www.mysite1.com,{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"' [Sun 12 Apr 2020 15:17:29 AEST] token='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] dvlist='www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] d [Sun 12 Apr 2020 15:17:29 AEST] vlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1,www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1,' [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] ok, let's start to verify [Sun 12 Apr 2020 15:17:29 AEST] Verifying: mysite1.com [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] wellknown_path='/var/www/html/mysite1/.well-known/acme-challenge' [Sun 12 Apr 2020 15:17:29 AEST] writing token:WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 to /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 mkdir: cannot create directory ‘/var/www/html/mysite1/.well-known’: Permission denied /home/development/.acme.sh/acme.sh: line 4384: /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50: No such file or directory [Sun 12 Apr 2020 15:17:29 AEST] mysite1.com:Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 [Sun 12 Apr 2020 15:17:29 AEST] Debugging, skip removing: /var/www/html/mysite1/.well-known [Sun 12 Apr 2020 15:17:29 AEST] pid [Sun 12 Apr 2020 15:17:29 AEST] No need to restore nginx, skip. [Sun 12 Apr 2020 15:17:29 AEST] _clearupdns [Sun 12 Apr 2020 15:17:29 AEST] dns_entries [Sun 12 Apr 2020 15:17:29 AEST] skip dns. [Sun 12 Apr 2020 15:17:29 AEST] _on_issue_err [Sun 12 Apr 2020 15:17:29 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log [Sun 12 Apr 2020 15:17:29 AEST] _chk_vlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1,www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1,' [Sun 12 Apr 2020 15:17:29 AEST] start to deactivate authz [Sun 12 Apr 2020 15:17:29 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:17:29 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] _t_key_authz='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] _t_vtype [Sun 12 Apr 2020 15:17:29 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] payload='{}' [Sun 12 Apr 2020 15:17:29 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:29 AEST] Use _CACHED_NONCE='0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU' [Sun 12 Apr 2020 15:17:29 AEST] nonce='0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU' [Sun 12 Apr 2020 15:17:29 AEST] POST [Sun 12 Apr 2020 15:17:29 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxcHBnWmNDTE15T1doQ2FHSF9IMzVmdHRWUkhWUjdONVItQ0JwNktseXNiVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNTM1Ni9fUHprelEiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "Y2N-LSrWt63sqXGi4iZSuj3pSZXlcwppF6mH8sWCenjsOgXr6yPcyeWrEjmw-Wh9RvNSvNoptC6qZVrISfts5eecQM-r3y7TkHZsZFYwuWjX0ksE0IXDO77ZHZZrE39FuvWA_4yGRjX0-en8-5-LL48izRqVnbpYu40JtOJrt5fYkCsrynIXU2BqrlEge4PVgqWL-ZrxO0NkkpXOdWDwJenIQXYvFfOHOEYj4AHf8ldD35_tRbcsMcA-eTcKY2ruP1zmlh8v8RMP59YP5IuPWGIwWxDmIY-TrwshkisMSgqee8dHyARXm9pa7Hwrmame3z7F-Hz0dkfbV5NVyfOFSQ"}' [Sun 12 Apr 2020 15:17:29 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:29 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:29 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:30 AEST] _ret='0' [Sun 12 Apr 2020 15:17:30 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:30 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ replay-nonce: 0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:30 AEST] code='200' [Sun 12 Apr 2020 15:17:30 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }' [Sun 12 Apr 2020 15:17:30 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}' [Sun 12 Apr 2020 15:17:30 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:17:30 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] _t_key_authz='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:30 AEST] _t_vtype [Sun 12 Apr 2020 15:17:30 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] payload='{}' [Sun 12 Apr 2020 15:17:30 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:30 AEST] Use _CACHED_NONCE='0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU' [Sun 12 Apr 2020 15:17:30 AEST] nonce='0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU' [Sun 12 Apr 2020 15:17:30 AEST] POST [Sun 12 Apr 2020 15:17:30 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxQzRMVThJUUsteVBTLUxrdV9oOGxQODEzVmtFLWZtaUZVajZDSGJiVFBOVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNTM1Ny96RUMzRmciLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "OtWQ5lbEDRSFmwxPKEnJ5rKmZeSKuVgNtwqkZXa7I3mb7tN65nijUAVS9oAPznEZgvGnesDize2wR6Wr7LT9U005AtnN8znPjarTdq6rtWV3JhUJNi2li-MWhaMDzq9v3kpNsXj7ecncxvavjSSdX4OC21zU5eVksLAEgWEgTN4rmM7cGhnP75S9Cq_NnyTF80-H-75nzDD-bqAD-eCe_N0F86b1AaytVF7TXlSq9YAWUuOIoF0R5DKCatSzo5eCRD9A_Y-XRcwgxYcu-Nhq1ZQrZU6-8OdjAmoC6gn4g3pq9IUsLf2Dq2HMP9GVY0ufitWITLhR9oum_YhKx7bLuA"}' [Sun 12 Apr 2020 15:17:30 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:30 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:30 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:31 AEST] _ret='0' [Sun 12 Apr 2020 15:17:31 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:31 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg replay-nonce: 00013TP0AsfMobKj3aoD7IETewFSVMwMKInimYyRTzNLgbA x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:31 AEST] code='200' [Sun 12 Apr 2020 15:17:31 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }' [Sun 12 Apr 2020 15:17:31 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}' [Sun 12 Apr 2020 15:17:31 AEST] Diagnosis versions: openssl:openssl OpenSSL 1.1.1f 31 Mar 2020 apache: apache doesn't exists. nginx: nginx doesn't exists. socat: socat by Gerhard Rieger and contributors - see www.dest-unreach.org socat version 1.7.3.4 on Jan 6 2020 16:58:19 running on Linux version #1 SMP Thu Apr 2 16:49:00 PDT 2020, release 5.5.15-930.native, machine x86_64 features:
Noticed cannot wrtie no permission on site1.com
So i run for site2
acme.sh --test --issue -d mysite2.com -d www.mysite2.com -w /var/www/html/mysite2 --debug 2
[Sun 12 Apr 2020 15:33:04 AEST] Lets find script dir. [Sun 12 Apr 2020 15:33:04 AEST] SCRIPT='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] _script='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] _script_home='/home/development/.acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:33:04 AEST] LE_WORKING_DIR='/home/development/.acme.sh' https://github.com/acmesh-official/acme.sh v2.8.6 [Sun 12 Apr 2020 15:33:04 AEST] Running cmd: issue [Sun 12 Apr 2020 15:33:04 AEST] _main_domain='mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] _alt_domains='www.mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:33:04 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] ACME_DIRECTORY='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:33:04 AEST] _ACME_SERVER_HOST='acme-staging-v02.api.letsencrypt.org' [Sun 12 Apr 2020 15:33:04 AEST] DOMAIN_PATH='/home/development/.acme.sh/mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] '/var/www/html/mysite2' does not contain 'dns' [Sun 12 Apr 2020 15:33:04 AEST] Using ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] _init api for server: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] GET [Sun 12 Apr 2020 15:33:04 AEST] url='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:33:04 AEST] timeout= [Sun 12 Apr 2020 15:33:04 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.IXCjIq38gn -g ' [Sun 12 Apr 2020 15:33:05 AEST] ret='0' [Sun 12 Apr 2020 15:33:05 AEST] response='{ "_2JsbPyvLlI": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417", "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change", "meta": { "caaIdentities": [ "letsencrypt.org" ], "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf", "website": "https://letsencrypt.org/docs/staging-environment/" }, "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct", "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce", "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order", "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert" }' [Sun 12 Apr 2020 15:33:05 AEST] ACME_KEY_CHANGE='https://acme-staging-v02.api.letsencrypt.org/acme/key-change' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_AUTHZ [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_ORDER='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_ACCOUNT='https://acme-staging-v02.api.letsencrypt.org/acme/new-acct' [Sun 12 Apr 2020 15:33:05 AEST] ACME_REVOKE_CERT='https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert' [Sun 12 Apr 2020 15:33:05 AEST] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:05 AEST] ACME_VERSION='2' [Sun 12 Apr 2020 15:33:05 AEST] Le_NextRenewTime [Sun 12 Apr 2020 15:33:05 AEST] _on_before_issue [Sun 12 Apr 2020 15:33:05 AEST] _chk_main_domain='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _chk_alt_domains='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] '/var/www/html/mysite2' does not contain 'no' [Sun 12 Apr 2020 15:33:05 AEST] Le_LocalAddress [Sun 12 Apr 2020 15:33:05 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] Check for domain='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:05 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] Check for domain='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:05 AEST] d [Sun 12 Apr 2020 15:33:06 AEST] '/var/www/html/mysite2' does not contain 'apache' [Sun 12 Apr 2020 15:33:06 AEST] _saved_account_key_hash='AlbOCKmizF4mvi0vcjf2SJ6BZWMj8STPup+G8pm/3PQ=' [Sun 12 Apr 2020 15:33:06 AEST] _saved_account_key_hash is not changed, skip register account. [Sun 12 Apr 2020 15:33:06 AEST] Read key length: [Sun 12 Apr 2020 15:33:06 AEST] _createcsr [Sun 12 Apr 2020 15:33:06 AEST] domain='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] domainlist='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] csrkey='/home/development/.acme.sh/mysite2.com/mysite2.com.key' [Sun 12 Apr 2020 15:33:06 AEST] csr='/home/development/.acme.sh/mysite2.com/mysite2.com.csr' [Sun 12 Apr 2020 15:33:06 AEST] csrconf='/home/development/.acme.sh/mysite2.com/mysite2.com.csr.conf' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] domainlist='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] Multi domain='DNS:mysite2.com,DNS:www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] _csr_cn='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] Getting domain auth token for each domain [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] d [Sun 12 Apr 2020 15:33:06 AEST] _identifiers='{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}' [Sun 12 Apr 2020 15:33:06 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:06 AEST] payload='{"identifiers": [{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}]}' [Sun 12 Apr 2020 15:33:06 AEST] RSA key [Sun 12 Apr 2020 15:33:06 AEST] Get nonce with HEAD. ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:06 AEST] HEAD [Sun 12 Apr 2020 15:33:06 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:06 AEST] body [Sun 12 Apr 2020 15:33:06 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:06 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g -I ' [Sun 12 Apr 2020 15:33:06 AEST] _ret='0' [Sun 12 Apr 2020 15:33:06 AEST] _headers='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:06 GMT cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:06 AEST] _CACHED_NONCE='00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs' [Sun 12 Apr 2020 15:33:06 AEST] nonce='00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs' [Sun 12 Apr 2020 15:33:06 AEST] POST [Sun 12 Apr 2020 15:33:06 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:06 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyNmJHMF90MHpaaVg2NzJrT2F5SXhlNUEzR2tyT1hMZ0htOWxMTDJpRmpWcyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9uZXctb3JkZXIiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "eyJpZGVudGlmaWVycyI6IFt7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6ImNyYWNraGVyLmxvdmUifSx7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6Ind3dy5jcmFja2hlci5sb3ZlIn1dfQ", "signature": "AsTUpfozuGnq4tbkPh3y7MQLttBsPgqDSJcX4uA3hO68QhkJJJJ2dbheuu_anOl0959luJWYMyrvh17zw2HY3fxcBMoHZ2rUPkGExAFdLHPkTf8CDcNSAytQrlDzOrbIO_dfGrQtCpWOZiea0CaISXS28OOi4gkG-3FoVzrkDtsyRQY3beQhxF3J_7ar5vjLWNN-mgMVCQOAEZ67wLKHrAG-NEO8BoQqxOFQERliJuo1Kfk-CovaKlznUM5PvX_j6zTDVRSdMADVR7JbEl2PSBa0jjAzuXBRUUF1PJFxoObWaUjlzj6jH2FntRVsc_vPiZxepDafv4nGvH8-Ew7sZA"}' [Sun 12 Apr 2020 15:33:06 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:06 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:06 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:07 AEST] _ret='0' [Sun 12 Apr 2020 15:33:07 AEST] responseHeaders='HTTP/2 201 server: nginx date: Sun, 12 Apr 2020 05:33:07 GMT content-type: application/json content-length: 499 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" location: https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84560243 replay-nonce: 00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:07 AEST] code='201' [Sun 12 Apr 2020 15:33:07 AEST] original='{ "status": "pending", "expires": "2020-04-19T05:33:07.659443466Z", "identifiers": [ { "type": "dns", "value": "mysite2.com" }, { "type": "dns", "value": "www.mysite2.com" } ], "authorizations": [ "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944", "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945" ], "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243" }' [Sun 12 Apr 2020 15:33:07 AEST] response='{"status":"pending","expires":"2020-04-19T05:33:07.659443466Z","identifiers":[{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}],"authorizations":["https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944","https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945"],"finalize":"https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243"}' [Sun 12 Apr 2020 15:33:07 AEST] Le_LinkOrder='https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84560243' [Sun 12 Apr 2020 15:33:07 AEST] Le_OrderFinalize='https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243' [Sun 12 Apr 2020 15:33:07 AEST] _authorizations_seg='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944,https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:07 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] payload [Sun 12 Apr 2020 15:33:07 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:07 AEST] Use _CACHED_NONCE='00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI' [Sun 12 Apr 2020 15:33:07 AEST] nonce='00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI' [Sun 12 Apr 2020 15:33:07 AEST] POST [Sun 12 Apr 2020 15:33:07 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxN2R2NmJ5X1dWSDlfTldDd0tkVEZjRko5RlJvZnktd2xtbXpIZXZ5dHdHSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNjk0NCIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "Lg9UIt24Edbj6XDRENz1xXk7x1C_s-b3559BXqjTW5XxepOH8CsbURyddOCoWGCHB0gA0dqqaL5c_tVEwjv-GAmwWzoRkdDBFIiF4lksHOJ4_ks1S8fGwCj1Boyw0i53gbhOnBoucuyhQ8hp70PoWZ3a3fTM7DHeRgyBLJlN1jnr5-GyNQ7nSKjOjyhmspfdoXA-uGJ-XuY80vZ7K8qVb8UBEwbbdMdz8nLKkK-ZoJS9N0CV7DKhRqauYoOPpTHxnVQjqlUfwU6GIkdwBq1ikcTjTsPISg5rkdfUT0784yx6WdKWe_rvRIyw7FKVILvGnR4_kuDkzr2IN337dpKQrw"}' [Sun 12 Apr 2020 15:33:07 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:07 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:07 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:08 AEST] _ret='0' [Sun 12 Apr 2020 15:33:08 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:08 GMT content-type: application/json content-length: 809 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:08 AEST] code='200' [Sun 12 Apr 2020 15:33:08 AEST] original='{ "identifier": { "type": "dns", "value": "mysite2.com" }, "status": "pending", "expires": "2020-04-19T05:33:07Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" } ] }' [Sun 12 Apr 2020 15:33:08 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:08 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:08 AEST] _d='mysite2.com' [Sun 12 Apr 2020 15:33:08 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] payload [Sun 12 Apr 2020 15:33:08 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:08 AEST] Use _CACHED_NONCE='0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4' [Sun 12 Apr 2020 15:33:08 AEST] nonce='0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4' [Sun 12 Apr 2020 15:33:08 AEST] POST [Sun 12 Apr 2020 15:33:08 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxbWZZR0NzZExkOTNZc25LaWw2V3Z4T1hSb3JHeEdCY1VockZuVHRNLXB0NCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNjk0NSIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "ROrCqhihjfJtIT2eHgXGJKOHSl-23LkoPqFOwAAEYPkBZ1nkxVlNlv6-pRagv4z5o5hfgTlnstytV9eoewek07beHP3FjU4swIk2ETm8cEnzoLC5WOvknRcvaJcRBJ6p3yH9K4uiZAj9X5o1x_5QuB9MRDdxh2o1sVnGQG9T8d6vy_nEGHr5C4wdyIyaNH0sxkNcKwswZTJvwJGLbezUloFXTM2zK-eeTgjO5W0dUQYHcgT-qNWFtUfLHZPTW-qz8o2Axzx0QIsKcv8olXGcFn5jTtqTLNGnuQOTo1NhVx-OtC96azYcx2lNhis0sOY5L1aX6Y4VMTU91Cfhl3TkmA"}' [Sun 12 Apr 2020 15:33:08 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:08 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:08 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:09 AEST] _ret='0' [Sun 12 Apr 2020 15:33:09 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:09 GMT content-type: application/json content-length: 813 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:09 AEST] code='200' [Sun 12 Apr 2020 15:33:09 AEST] original='{ "identifier": { "type": "dns", "value": "www.mysite2.com" }, "status": "pending", "expires": "2020-04-19T05:33:07Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" } ] }' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] _d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _authorizations_map='www.mysite2.com,{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]} mysite2.com,{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]} ' [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] Getting webroot for domain='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _w='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _idn_temp [Sun 12 Apr 2020 15:33:09 AEST] _candindates='mysite2.com,{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:09 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"' [Sun 12 Apr 2020 15:33:09 AEST] token='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] dvlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] Getting webroot for domain='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _w='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _idn_temp [Sun 12 Apr 2020 15:33:09 AEST] _candindates='www.mysite2.com,{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"' [Sun 12 Apr 2020 15:33:09 AEST] token='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] dvlist='www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] d [Sun 12 Apr 2020 15:33:09 AEST] vlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2,www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2,' [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] ok, let's start to verify [Sun 12 Apr 2020 15:33:09 AEST] Verifying: mysite2.com [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] wellknown_path='/var/www/html/mysite2/.well-known/acme-challenge' [Sun 12 Apr 2020 15:33:09 AEST] writing token:A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY to /var/www/html/mysite2/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [Sun 12 Apr 2020 15:33:09 AEST] Changing owner/group of .well-known to development:httpDEV [Sun 12 Apr 2020 15:33:09 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:09 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] _t_key_authz='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] _t_vtype='http-01' [Sun 12 Apr 2020 15:33:09 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] payload='{}' [Sun 12 Apr 2020 15:33:09 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:09 AEST] Use _CACHED_NONCE='0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY' [Sun 12 Apr 2020 15:33:09 AEST] nonce='0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY' [Sun 12 Apr 2020 15:33:09 AEST] POST [Sun 12 Apr 2020 15:33:09 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxanVic2NhbzltX1RyblNCYlNNTUs2c0M2X0RkQU9oSHBPMlJld29YMTVaWSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "b_PvWrDunrWbBgkdzOZTqmBtajsjfhH2cXv-MXMJR1nZ1mqD8j-s_rbEQr6Pnear6KKCF8ePXoDQDQ07hLij1kSJU5vjXCgCCEhE7B9j13jsDa0zqaev-3CV-Hr8RxEvPFKL6cyP6Zyu5gdyGTWoi84dn8SBt907-KixclgJ18Vpz3YMD0n3Xl0JIriCIOIFQVswgdxtMQnuxwlbrY3Eds1fESQxirI4et6pY-NmKl0kJA0AcUinPpQzJuPwBJypdwBeRwX2yZlbpvZ8oCAtAfF2ZudMITPUOdALM2P5Y3hjs2KNHI4jL9QlqKFYiHgX15ZnBEu-7EqrzXPR_SoA"}' [Sun 12 Apr 2020 15:33:09 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:09 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:09 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:10 AEST] _ret='0' [Sun 12 Apr 2020 15:33:10 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:10 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A replay-nonce: 0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:10 AEST] code='200' [Sun 12 Apr 2020 15:33:10 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }' [Sun 12 Apr 2020 15:33:10 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}' [Sun 12 Apr 2020 15:33:10 AEST] trigger validation code: 200 [Sun 12 Apr 2020 15:33:10 AEST] sleep 2 secs to verify [Sun 12 Apr 2020 15:33:12 AEST] checking [Sun 12 Apr 2020 15:33:12 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:12 AEST] payload [Sun 12 Apr 2020 15:33:12 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:12 AEST] Use _CACHED_NONCE='0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ' [Sun 12 Apr 2020 15:33:12 AEST] nonce='0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ' [Sun 12 Apr 2020 15:33:12 AEST] POST [Sun 12 Apr 2020 15:33:12 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:12 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAycGlVa1JUcU56MWxwX1o2RzFoSW1sdjcxcEoxM0lOTHNJWTNadkwtTlp0USIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "", "signature": "lmMSPndW3m3vAj_GGK3mHtrfCTvtSjg5ievbxfEtxrQ2Yj5zDnFIFA-QXkyckwS_pC-lWT74RV677z6KcHhHW-VtlDV7ipfrnJDtpQTDh8rb5Ufnh_cxHspT90pT0ojarsazCuTVwLliyHBCptSCMqhgzFBJ3pJ7Q_gRk8NjS-_28WB_X-Uwlkyq01EiBTUVYFN-eglhP4SYPpSq_0vK6iKnOQZk5fHOhDEWYoieXKjn3UMKHn7ZUrZ015DjSaSE-l1lohjE1Ajh_8mQhfCwYABkLorKaOCBhwHMWp2UYmmBtlPUD83ZvxH_G_ztacxwH10kV0CjrpXuTBvuQZlf2A"}' [Sun 12 Apr 2020 15:33:12 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:12 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:12 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:13 AEST] _ret='0' [Sun 12 Apr 2020 15:33:13 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:13 GMT content-type: application/json content-length: 1285 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A replay-nonce: 00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:13 AEST] code='200' [Sun 12 Apr 2020 15:33:13 AEST] original='{ "type": "http-01", "status": "invalid", "error": { "type": "urn:ietf:params:acme:error:unauthorized", "detail": "Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"", "status": 403 }, "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "validationRecord": [ { "url": "http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "hostname": "mysite2.com", "port": "80", "addressesResolved": [ "45.248.76.147" ], "addressUsed": "45.248.76.147" }, { "url": "https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "hostname": "mysite2.com", "port": "443", "addressesResolved": [ "45.248.76.147" ], "addressUsed": "45.248.76.147" } ] }' [Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}' [Sun 12 Apr 2020 15:33:13 AEST] original='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}' [Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] mysite2.com:Verify error:Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: [Sun 12 Apr 2020 15:33:13 AEST] Debug: get token url. [Sun 12 Apr 2020 15:33:13 AEST] GET [Sun 12 Apr 2020 15:33:13 AEST] url='http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY' [Sun 12 Apr 2020 15:33:13 AEST] timeout=1 [Sun 12 Apr 2020 15:33:13 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:13 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g --connect-timeout 1' [Sun 12 Apr 2020 15:33:14 AEST] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 28 [Sun 12 Apr 2020 15:33:14 AEST] Here is the curl dump log: [Sun 12 Apr 2020 15:33:14 AEST] == Info: Resolving timed out after 1000 milliseconds == Info: Closing connection 0 [Sun 12 Apr 2020 15:33:14 AEST] ret='28' [Sun 12 Apr 2020 15:33:14 AEST] Debugging, skip removing: /var/www/html/mysite2/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [Sun 12 Apr 2020 15:33:14 AEST] pid [Sun 12 Apr 2020 15:33:14 AEST] No need to restore nginx, skip. [Sun 12 Apr 2020 15:33:14 AEST] _clearupdns [Sun 12 Apr 2020 15:33:14 AEST] dns_entries [Sun 12 Apr 2020 15:33:14 AEST] skip dns. [Sun 12 Apr 2020 15:33:14 AEST] _on_issue_err [Sun 12 Apr 2020 15:33:14 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log [Sun 12 Apr 2020 15:33:14 AEST] _chk_vlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2,www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2,' [Sun 12 Apr 2020 15:33:14 AEST] start to deactivate authz [Sun 12 Apr 2020 15:33:14 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:14 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] _t_key_authz='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:14 AEST] _t_vtype [Sun 12 Apr 2020 15:33:14 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] payload='{}' [Sun 12 Apr 2020 15:33:14 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:14 AEST] Use _CACHED_NONCE='00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU' [Sun 12 Apr 2020 15:33:14 AEST] nonce='00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU' [Sun 12 Apr 2020 15:33:14 AEST] POST [Sun 12 Apr 2020 15:33:14 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyOUlBWmRSdGNvVlMyM0R0ckFTbHlwUTFGOUtKekJPQjByWmU5SWMzMWNjVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "FwulNcpm81q0rX0ACB-X_Z7rweVFx1qz-ag1FcmIYI28F1oR1Td88XejPbqH6EvdRzkAYaCTCcPqBI03qaa0p9Taj7AcA6y8FZTBVZx5EnSBoq1c8HVnmUbObb211F0dqjAe96GVJGVVV1YNehapdKnfbzptB8JAbLz6c0UtFddUVRTckziqmQYUEvJxoPR_SEc5QaX69hJVR1oG9n56vQ5mIfDkfxgGBoD0d2pdQOHQ-W_oVl8eZmQvm7Vt_F9MIAVk4yCI7h1ghQhF0EOnDzko9T4nGbnXMlMpmNYvZvhQblI2aWsyQ89hehjAjymJel5p5CUcDYpYMaB00Xi79Q"}' [Sun 12 Apr 2020 15:33:14 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:14 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:14 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:15 AEST] _ret='0' [Sun 12 Apr 2020 15:33:15 AEST] responseHeaders='HTTP/2 400 server: nginx date: Sun, 12 Apr 2020 05:33:15 GMT content-type: application/problem+json content-length: 144 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII ' [Sun 12 Apr 2020 15:33:15 AEST] code='400' [Sun 12 Apr 2020 15:33:15 AEST] original='{ "type": "urn:ietf:params:acme:error:malformed", "detail": "Unable to update challenge :: authorization must be pending", "status": 400 }' [Sun 12 Apr 2020 15:33:15 AEST] response='{ "type": "urn:ietf:params:acme:error:malformed", "detail": "Unable to update challenge :: authorization must be pending", "status": 400 }' [Sun 12 Apr 2020 15:33:15 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:15 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] _t_key_authz='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:15 AEST] _t_vtype [Sun 12 Apr 2020 15:33:15 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] payload='{}' [Sun 12 Apr 2020 15:33:15 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:15 AEST] Use _CACHED_NONCE='0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII' [Sun 12 Apr 2020 15:33:15 AEST] nonce='0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII' [Sun 12 Apr 2020 15:33:15 AEST] POST [Sun 12 Apr 2020 15:33:15 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxWGVXa3Y1UE1yc0hKUnh2cFhtd1hiWnR2U2hkMUF0cU9TSkZkYmg3V3FJSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NS8ybXYtdXciLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "qViEt6hsMpKBL_jiCJ0PPK6YAmJLN3FoCzPQZqzByc0DfOiqiaex54hd52t3exbUzkCQt_puOpenVPKNghr0cKyGqO4LSry5RUdpopkLh3hXBfJg8ioFan3lzFQ2BJHCKoIDrQDcsDkeQvSEFB76_Isddte16pTBlgV_Cs30xUGQCcC0b3gCiTwUrruoK0bQcXJJzal7pD_xkdiZJj1hFqgHkEevSK5RHS2TSfhEbeEe3qVin9pl8n-CYap7q406hRfa-4E48NUwbNKghGd5OD7Ftpa33egbEHMlh52nGM0QLk8Kmp-HjRFt6q9ehBwHCfDGe1r33wnk7DVSxGuiBw"}' [Sun 12 Apr 2020 15:33:15 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:15 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:15 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:16 AEST] _ret='0' [Sun 12 Apr 2020 15:33:16 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:16 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw replay-nonce: 0002G8OPIVQh8UlOt7ljy9RidKglnOJXZNCk71tyx-dChQw x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:16 AEST] code='200' [Sun 12 Apr 2020 15:33:16 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }' [Sun 12 Apr 2020 15:33:16 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}' [Sun 12 Apr 2020 15:33:16 AEST] Diagnosis versions: openssl:openssl OpenSSL 1.1.1f 31 Mar 2020 apache: apache doesn't exists. nginx: nginx doesn't exists. socat: socat by Gerhard Rieger and contributors - see www.dest-unreach.org socat version 1.7.3.4 on Jan 6 2020 16:58:19 running on Linux version #1 SMP Thu Apr 2 16:49:00 PDT 2020, release 5.5.15-930.native, machine x86_64 features:
[Sun 12 Apr 2020 15:33:13 AEST] code='200'
[Sun 12 Apr 2020 15:33:13 AEST] original='{
"type": "http-01",
"status": "invalid",
"error": {
"type": "urn:ietf:params:acme:error:unauthorized",
"detail": "Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"",
"status": 403
},
"url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A",
"token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"validationRecord": [
{
"url": "http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"hostname": "mysite2.com",
"port": "80",
"addressesResolved": [
"45.248.76.147"
],
"addressUsed": "45.248.76.147"
},
{
"url": "https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"hostname": "mysite2.com",
"port": "443",
"addressesResolved": [
"45.248.76.147"
],
"addressUsed": "45.248.76.147"
}
]
}'
[Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] original='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] error='"error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: '
[Sun 12 Apr 2020 15:33:13 AEST] errordetail='Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: '
What does it all mean?
The websites nginx config allows only some IPs while in dev mode, so all other IP's are denied.
Does the nginx config need letsencrypt IPs to be allowed?
I see above this URL
https://acme-staging-v02.api.letsencrypt.org
your website must be accessible from anywhere of the world.
Neilpang, thanks, at least now I know what is going on. I'll give this a try again when the going live. thanks again
@ketonik The issue with mysite1 is that the write operation is failing due to permissions. That problem doesn't exist with site2, so something in the perms is different.
With mysite2 forbidden access, wiki instructions include something like: "On your firewall temporarily set access to port 80 to 0.0.0.0/32". acme.sh has "hooks" that can be executed before and after cert renewal. So if you can do something from the command-line to open/close access, you can execute scripts that will open/renew/close, minimizing exposure to unauthorized access.
Tonight I may get the opportunity to open the sites to public and install webroot mode acme.sh.
Just want to confirm I have all the correct commands and in the correct order.
1 - Login as root:
Remove all LetsEncrypt Uninstall certbot bundle delete /etc/letsencrypt
2 - Advanced Installation commands:
git clone https://github.com/Neilpang/acme.sh.git
cd acme.sh
./acme.sh --install \ --home ~/myacme \ --config-home ~/myacme/data \ --cert-home /ect/nginx-mainline/ssl \ --accountemail "myemail@address.com" \ --accountkey ~/myaccount.key \ --accountconf ~/myaccount.conf \ --useragent "this is my client."
Question
https://github.com/acmesh-official/acme.sh/wiki/How-to-install#4-advanced-installation
Shows one big block of code.
Do I select all this as one command and paste in terminal and hit enter or is it 3 different commands like I have isolated above?
Question
parameter --cert-home
Should this be left default as ~/mycerts
or does it have to be changed to where the nginx-mainline conf will need to look for the certs?:
/ect/nginx-mainline/ssl
or is this --cert-home
function different from the
--install-cert
function mentioned above?
--install-cert
is not mentioned anywhere on advanced installation page.
Try this: Re-execute the --install-cert with these values:
--cert-file /etc/ssl/mysite.com/cert.pm
--key-file /etc/ssl/mysite.com/key.pm
--fullchain-file /etc/ssl/mysite.com/fullchain.pm
Then change your .conf file:
ssl_certificate /etc/ssl/mysite.com/cert.pm;
ssl_certificate_key /etc/ssl/mysite.com/key.pm;
ssl_trusted_certificate /etc/ssl/mysite.com/fullchain.pm;
3 - Check if .bashrc has correct alias
alias ll='ls -alF'
. "/root/.acme.sh/acme.sh.env"
4 - logout, close terminal window, re-login as root
5 - Adjust nginx-mainline config for each site. Add lines under SSL point to --cert-home
/ect/nginx-mainline/ssl
Site1
ssl_certificate /ect/nginx-mainline/ssl/site1.com/fullchain.pem;
ssl_certificate_key /ect/nginx-mainline/ssl/site1.com/privkey.pem;
ssl_trusted_certificate /ect/nginx-mainline/ssl/site1.com/chain.pem;
Site2
ssl_certificate /ect/nginx-mainline/ssl/site2.com/fullchain.pem;
ssl_certificate_key /ect/nginx-mainline/ssl/site2.com/privkey.pem;
ssl_trusted_certificate /ect/nginx-mainline/ssl/site2.com/chain.pem;
6 - Issue Certificates Site1:
acme.sh --issue -d site1.com -d www.site1.com -d australia.site2.com -d adelaide.site1.com -w /var/www/html/site1
Issue Certificates Site2:
acme.sh --issue -d site2.com -d www.site2.com -d australia.site2.com -d adelaide.site2.com -w /var/www/html/site2
7 - Reload nginx-mainline
systemctl reload nginx-mainline
Question
- Does this Advanced installation also instal the cronjobs same as:
https://github.com/acmesh-official/acme.sh#2-or-install-from-git
Preparation information required to use the acme.sh
Webroot mode
on an existing machine?Machine currently has: A-nginx-mainline web server installed and running. B-letsencrypt-client installed, certificates issued with
Manual DNS mode
(up for renewal soon).I've been desperately trying to figure out how to automatically renew certificates and really had no idea because people told me it's not possible on my server with nginx-mainline is not supprted only nginx is and so I must do Manual DNS commands to renew.
I've read many times the documents about
acme.sh
and still trying to undserstand exactly what auto renew mode I can use.I think it is
Webroot mode
, so, what needs to be done with existing letsencrypt client, keys, nginx config on the system before usingacme.sh
?1-Does the letsencrypt-client need to be uninstalled?
2-Does the letsencrypt directory need to be removed/deleted before using
acme.sh
to useWebroot mode
?`/etc/letsencrypt' (exists containing all the keys in use)
There's a directory
/etc/nginx-mainline/conf.d
with all the nginx-mainline web server configurations, I have two sites, one config for each, in the config file in server block are lines for the ssl certificates.3-Do these need to be deleted from the website nginx config files? TLD
.biz
ssl_certificate /etc/letsencrypt/live/site1.biz/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/site1.biz/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/site1.biz/chain.pem;
TLD.com
ssl_certificate /etc/letsencrypt/live/site1.com/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/site1.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/site1.com/chain.pem;
4-My two websites both have two TLD's,
.biz
is the one used, I own.com
so no-one else can use it,.com
redirects to.biz
in the nginx webserver config.Is it necessary to create certificates for each TLD? (
acme.sh
command confirmation:) Considering I am using TLD.biz
but.com
redirects to.biz
?? or do I need to issue 4 different command such as:acme.sh --issue -d site1.biz -d www.site1.biz -d *.biz -w /var/www/html/site1.biz
acme.sh --issue -d site1.com -d www.site1.com -d *.com -w /var/www/html/site1.com
acme.sh --issue -d site2.biz -d www.site2.biz -d *.biz -w /var/www/html/site2.biz
acme.sh --issue -d site2.com -d www.site2.com -d *.com -w /var/www/html/site2.com
Server directory structure is:
/var/www/html
inside
/html
are directories:/site1
(1st of my two sites)/site2
(2nd of my two sites)(
acme.sh
command confirmation:) Which exactly is my Webroot?/var/www/html
or/var/www/html/site1
and/var/www/html/site2
5-Subdomains, I have cities like:
shanghai.examplesite1.biz
,beijing.examplesite1.biz
in theacme.sh
command, can I use an Asterix proceeding the domain, example*.examplesite1.biz
to take care of all the city subdomains? I used before in the Certbot Manual DNS*.
and it handled all the subdomains.(
acme.sh
command confirmation ok?)acme.sh --issue -d example1.biz -d www.example1.biz -d *.example1.biz -w /var/www/html/site1.biz
6-Webroot mode says "The certs will be renewed automatically every 60 days." If I install by
cd /home/myuser
curl https://get.acme.sh | sh
Does this method of
acme.sh
install automatically create a cronjob that run every 60 days to renew automatically?or do I need to do the "Advanced Installation"??
This is all unfamiliar technical voodoo to me, trying to learn something new and understand as fast as possible, need to fill in the gaps. thanks