acmesh-official / acme.sh

A pure Unix shell script implementing ACME client protocol
https://acme.sh
GNU General Public License v3.0
39.21k stars 4.95k forks source link

Preparation to use acme.sh Webroot mode on machine with certbot and certificates installed? #2784

Open ketonik opened 4 years ago

ketonik commented 4 years ago

Preparation information required to use the acme.sh Webroot mode on an existing machine?

Machine currently has: A-nginx-mainline web server installed and running. B-letsencrypt-client installed, certificates issued with Manual DNS mode (up for renewal soon).

I've been desperately trying to figure out how to automatically renew certificates and really had no idea because people told me it's not possible on my server with nginx-mainline is not supprted only nginx is and so I must do Manual DNS commands to renew.

I've read many times the documents about acme.sh and still trying to undserstand exactly what auto renew mode I can use.

I think it is Webroot mode, so, what needs to be done with existing letsencrypt client, keys, nginx config on the system before using acme.sh?

1-Does the letsencrypt-client need to be uninstalled?

2-Does the letsencrypt directory need to be removed/deleted before using acme.sh to use Webroot mode?

`/etc/letsencrypt' (exists containing all the keys in use)

There's a directory /etc/nginx-mainline/conf.d with all the nginx-mainline web server configurations, I have two sites, one config for each, in the config file in server block are lines for the ssl certificates.

3-Do these need to be deleted from the website nginx config files? TLD .biz ssl_certificate /etc/letsencrypt/live/site1.biz/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/site1.biz/privkey.pem; ssl_trusted_certificate /etc/letsencrypt/live/site1.biz/chain.pem; TLD .com ssl_certificate /etc/letsencrypt/live/site1.com/fullchain.pem; ssl_certificate_key /etc/letsencrypt/live/site1.com/privkey.pem; ssl_trusted_certificate /etc/letsencrypt/live/site1.com/chain.pem;

4-My two websites both have two TLD's, .biz is the one used, I own .com so no-one else can use it, .com redirects to .biz in the nginx webserver config.

Is it necessary to create certificates for each TLD? (acme.sh command confirmation:) Considering I am using TLD .biz but .com redirects to .biz?? or do I need to issue 4 different command such as:

acme.sh --issue -d site1.biz -d www.site1.biz -d *.biz -w /var/www/html/site1.biz acme.sh --issue -d site1.com -d www.site1.com -d *.com -w /var/www/html/site1.com

acme.sh --issue -d site2.biz -d www.site2.biz -d *.biz -w /var/www/html/site2.biz acme.sh --issue -d site2.com -d www.site2.com -d *.com -w /var/www/html/site2.com

Server directory structure is: /var/www/html

inside /html are directories:

/site1 (1st of my two sites) /site2 (2nd of my two sites)

(acme.sh command confirmation:) Which exactly is my Webroot? /var/www/html or /var/www/html/site1 and /var/www/html/site2

5-Subdomains, I have cities like: shanghai.examplesite1.biz, beijing.examplesite1.biz in the acme.sh command, can I use an Asterix proceeding the domain, example *.examplesite1.biz to take care of all the city subdomains? I used before in the Certbot Manual DNS *. and it handled all the subdomains.

(acme.sh command confirmation ok?) acme.sh --issue -d example1.biz -d www.example1.biz -d *.example1.biz -w /var/www/html/site1.biz

6-Webroot mode says "The certs will be renewed automatically every 60 days." If I install by cd /home/myuser curl https://get.acme.sh | sh

Does this method of acme.sh install automatically create a cronjob that run every 60 days to renew automatically?

or do I need to do the "Advanced Installation"??

This is all unfamiliar technical voodoo to me, trying to learn something new and understand as fast as possible, need to fill in the gaps. thanks

Neilpang commented 4 years ago

just do the steps in the readme file: https://github.com/acmesh-official/acme.sh

If you use webroot mode, it's not allowed to issue a wildcard cert by webroot mode. you can only use dns mode.

ketonik commented 4 years ago

Clear Linux OS This just doesn't work for me: As per 2. Just issue a cert:

acme.sh --issue -d mysite.com -d www.mysite.com -d australia.mysite.com -d adelaide.mysite.com -d brisbane.mysite.com -d cairns.mysite.com -d canberra.mysite.com -d darwin.mysite.com -d gold-coast.mysite.com -d hobart.mysite.com -d launceston.mysite.com -d melbourne.mysite.com -d newcastle.mysite.com -d perth.mysite.com -d sydney.mysite.com -d toowoomba.mysite.com -d townsville.mysite.com -d wollongong.mysite.com -w /var/www/html/mysite

curl https://get.acme.sh | sh
  % Total    % Received % Xferd  Average Speed   Time    Time     Time  Current
                                 Dload  Upload   Total   Spent    Left  Speed
100   775    0   775    0     0   2690      0 --:--:-- --:--:-- --:--:--  2690
  % Total    % Received % Xferd  Average Speed   Time    Time     Time  Current
                                 Dload  Upload   Total   Spent    Left  Speed
100  191k  100  191k    0     0   238k      0 --:--:-- --:--:-- --:--:--  238k
[Mon Apr  6 11:30:04 AEST 2020] Installing from online archive.
[Mon Apr  6 11:30:04 AEST 2020] Downloading https://github.com/acmesh-official/acme.sh/archive/master.tar.gz
[Mon Apr  6 11:30:05 AEST 2020] Extracting master.tar.gz
[Mon Apr  6 11:30:05 AEST 2020] Installing to /home/development/.acme.sh
[Mon Apr  6 11:30:05 AEST 2020] Installed to /home/development/.acme.sh/acme.sh
[Mon Apr  6 11:30:05 AEST 2020] Installing alias to '/home/development/.bashrc'
[Mon Apr  6 11:30:05 AEST 2020] OK, Close and reopen your terminal to start using acme.sh
[Mon Apr  6 11:30:05 AEST 2020] Installing cron job
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
You (development) are not allowed to use this program (crontab)
See crontab(1) for more information
[Mon Apr  6 11:30:05 AEST 2020] Install cron job failed. You need to manually renew your certs.
[Mon Apr  6 11:30:05 AEST 2020] Or you can add cronjob by yourself:
[Mon Apr  6 11:30:05 AEST 2020] "/home/development/.acme.sh"/acme.sh --cron --home "/home/development/.acme.sh" > /dev/null
[Mon Apr  6 11:30:05 AEST 2020] Good, bash is found, so change the shebang to use bash as preferred.
[Mon Apr  6 11:30:05 AEST 2020] OK
[Mon Apr  6 11:30:05 AEST 2020] Install success!

acme.sh: command not found acme.sh --help acme.sh: command not found

ketonik commented 4 years ago

-bash: alias: /home/development/.acme.sh/acme.sh.env: not found

ketonik commented 4 years ago

/home/development/.bashrc before installed acme:

# Use global profile when available
if [ -f /usr/share/defaults/etc/profile ]; then
    . /usr/share/defaults/etc/profile
fi
# allow admin overrides
if [ -f /etc/profile ]; then
    . /etc/profile
fi
alias ll='ls -alF'

this was /home/development/.bashrc after installed acme:

# Use global profile when available
if [ -f /usr/share/defaults/etc/profile ]; then
    . /usr/share/defaults/etc/profile
fi
# allow admin overrides
if [ -f /etc/profile ]; then
    . /etc/profile
fi
alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"

difference line 9 before and after

alias ll='ls -alF'

alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"

ketonik commented 4 years ago

/home/development/.acme.sh/acme.sh.env

export LE_WORKING_DIR="/home/development/.acme.sh"
alias acme.sh="/home/development/.acme.sh/acme.sh"
ketonik commented 4 years ago

/home/development/.profile

# ~/.profile: executed by Bourne-compatible login shells.

if [ -f ~/.bashrc ]; then
  . ~/.bashrc
fi

# path set by /etc/profile
# export PATH

# mesg n
ketonik commented 4 years ago

My certs have expired but I still have

dir /etc/letsencrypt

/etc/nginx-mainline/conf.d/mysite.conf in file:

ssl_certificate      /etc/letsencrypt/live/mysite.com/fullchain.pem;
 ssl_certificate_key  /etc/letsencrypt/live/mysite.com/privkey.pem;
 ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;

Does all this stuff need to be deleted

ketonik commented 4 years ago

Anaother question, what happens if I have two or three sites in one Web App (webroot) Do I need two individual commands for each site and their sub domains ? or

can I run one command with both site's domains and all their subdomains? This would have 2-3 site domains and 15 subdomains for each site domain totalling about 30-45, is there maximum domain limit in each command?

acme.sh --issue -d mysite1.com -d australia.mysite1.com -d sydney.mysite1.com -d mysite2.com -d australia.mysite2.com -d sydney.mysite2.com -w /var/www/html/mysite

after fixing all the issues with the bashrc

run command still fails

$ acme.sh --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com -d adelaide.mysite1.com -d brisbane.mysite1.com -d cairns.mysite1.com -d canberra.mysite1.com -d darwin.mysite1.com -d gold-coast.mysite1.com -d hobart.mysite1.com -d launceston.mysite1.com -d melbourne.mysite1.com -d newcastle.mysite1.com -d perth.mysite1.com -d sydney.mysite1.com -d toowoomba.mysite1.com -d townsville.mysite1.com -d wollongong.mysite1.com -w /var/www/html/mysite1
[Mon Apr  6 17:33:15 AEST 2020] Create account key ok.
[Mon Apr  6 17:33:15 AEST 2020] Registering account
[Mon Apr  6 17:33:16 AEST 2020] Registered
[Mon Apr  6 17:33:16 AEST 2020] ACCOUNT_THUMBPRINT='Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:33:16 AEST 2020] Creating domain key
[Mon Apr  6 17:33:16 AEST 2020] The domain key is here: /home/development/.acme.sh/mysite1.com/mysite1.com.key
[Mon Apr  6 17:33:16 AEST 2020] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com,DNS:australia.mysite1.com,DNS:adelaide.mysite1.com,DNS:brisbane.mysite1.com,DNS:cairns.mysite1.com,DNS:canberra.mysite1.com,DNS:darwin.mysite1.com,DNS:gold-coast.mysite1.com,DNS:hobart.mysite1.com,DNS:launceston.mysite1.com,DNS:melbourne.mysite1.com,DNS:newcastle.mysite1.com,DNS:perth.mysite1.com,DNS:sydney.mysite1.com,DNS:toowoomba.mysite1.com,DNS:townsville.mysite1.com,DNS:wollongong.mysite1.com'
[Mon Apr  6 17:33:16 AEST 2020] Getting domain auth token for each domain
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='www.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='australia.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='adelaide.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='brisbane.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='cairns.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='canberra.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='darwin.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='gold-coast.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='hobart.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='launceston.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='melbourne.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='newcastle.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='perth.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='sydney.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='toowoomba.mysite1.com'
[Mon Apr  6 17:33:33 AEST 2020] Getting webroot for domain='townsville.mysite1.com'
[Mon Apr  6 17:33:34 AEST 2020] Getting webroot for domain='wollongong.mysite1.com'
[Mon Apr  6 17:33:34 AEST 2020] Verifying: mysite1.com
[Mon Apr  6 17:33:37 AEST 2020] mysite1.com:Verify error:Invalid response from https://mysite1.com/.well-known/acme-challenge/hJt1rqezeiu7vb_wKiQRdD8Dv27tvZ9tKImrRCsLuVk [123.212.46.112]:
[Mon Apr  6 17:33:37 AEST 2020] Please add '--debug' or '--log' to check more details.
[Mon Apr  6 17:33:37 AEST 2020] See: https://github.com/acmesh-official/acme.sh/wiki/How-to-debug-acme.sh
ketonik commented 4 years ago
[Mon Apr  6 17:34:42 AEST 2020] Running cmd: 
[Mon Apr  6 17:34:42 AEST 2020] Using config home:/home/development/.acme.sh
[Mon Apr  6 17:34:42 AEST 2020] ACME_DIRECTORY='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr  6 17:37:23 AEST 2020] Running cmd: issue
[Mon Apr  6 17:37:23 AEST 2020] _main_domain='mysite1.com'
[Mon Apr  6 17:37:23 AEST 2020] _alt_domains='www.mysite1.com,australia.mysite1.com,adelaide.mysite1.com,brisbane.mysite1.com,cairns.mysite1.com,canberra.mysite1.com,darwin.mysite1.com,gold-coast.mysite1.com,hobart.mysite1.com,launceston.mysite1.com,melbourne.mysite1.com,newcastle.mysite1.com,perth.mysite1.com,sydney.mysite1.com,toowoomba.mysite1.com,townsville.mysite1.com,wollongong.mysite1.com'
[Mon Apr  6 17:37:23 AEST 2020] Using config home:/home/development/.acme.sh
[Mon Apr  6 17:37:23 AEST 2020] ACME_DIRECTORY='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr  6 17:37:23 AEST 2020] DOMAIN_PATH='/home/development/.acme.sh/mysite1.com'
[Mon Apr  6 17:37:23 AEST 2020] Using ACME_DIRECTORY: https://acme-v02.api.letsencrypt.org/directory
[Mon Apr  6 17:37:23 AEST 2020] _init api for server: https://acme-v02.api.letsencrypt.org/directory
[Mon Apr  6 17:37:23 AEST 2020] GET
[Mon Apr  6 17:37:23 AEST 2020] url='https://acme-v02.api.letsencrypt.org/directory'
[Mon Apr  6 17:37:23 AEST 2020] timeout=
[Mon Apr  6 17:37:23 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:24 AEST 2020] ret='0'
[Mon Apr  6 17:37:24 AEST 2020] ACME_KEY_CHANGE='https://acme-v02.api.letsencrypt.org/acme/key-change'
[Mon Apr  6 17:37:24 AEST 2020] ACME_NEW_AUTHZ
[Mon Apr  6 17:37:24 AEST 2020] ACME_NEW_ORDER='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr  6 17:37:24 AEST 2020] ACME_NEW_ACCOUNT='https://acme-v02.api.letsencrypt.org/acme/new-acct'
[Mon Apr  6 17:37:24 AEST 2020] ACME_REVOKE_CERT='https://acme-v02.api.letsencrypt.org/acme/revoke-cert'
[Mon Apr  6 17:37:24 AEST 2020] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf'
[Mon Apr  6 17:37:24 AEST 2020] ACME_NEW_NONCE='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Apr  6 17:37:24 AEST 2020] ACME_VERSION='2'
[Mon Apr  6 17:37:24 AEST 2020] Le_NextRenewTime
[Mon Apr  6 17:37:24 AEST 2020] _on_before_issue
[Mon Apr  6 17:37:24 AEST 2020] _chk_main_domain='mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _chk_alt_domains='www.mysite1.com,australia.mysite1.com,adelaide.mysite1.com,brisbane.mysite1.com,cairns.mysite1.com,canberra.mysite1.com,darwin.mysite1.com,gold-coast.mysite1.com,hobart.mysite1.com,launceston.mysite1.com,melbourne.mysite1.com,newcastle.mysite1.com,perth.mysite1.com,sydney.mysite1.com,toowoomba.mysite1.com,townsville.mysite1.com,wollongong.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Le_LocalAddress
[Mon Apr  6 17:37:24 AEST 2020] d='mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='www.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='www.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='australia.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='australia.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='adelaide.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='brisbane.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='cairns.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='cairns.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='canberra.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='canberra.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='darwin.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='darwin.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='gold-coast.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='hobart.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='hobart.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='launceston.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='launceston.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='melbourne.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='newcastle.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='perth.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='perth.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='sydney.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='sydney.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='toowoomba.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='townsville.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='townsville.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Check for domain='wollongong.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:24 AEST 2020] d
[Mon Apr  6 17:37:24 AEST 2020] _saved_account_key_hash is not changed, skip register account.
[Mon Apr  6 17:37:24 AEST 2020] Read key length:
[Mon Apr  6 17:37:24 AEST 2020] _createcsr
[Mon Apr  6 17:37:24 AEST 2020] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com,DNS:australia.mysite1.com,DNS:adelaide.mysite1.com,DNS:brisbane.mysite1.com,DNS:cairns.mysite1.com,DNS:canberra.mysite1.com,DNS:darwin.mysite1.com,DNS:gold-coast.mysite1.com,DNS:hobart.mysite1.com,DNS:launceston.mysite1.com,DNS:melbourne.mysite1.com,DNS:newcastle.mysite1.com,DNS:perth.mysite1.com,DNS:sydney.mysite1.com,DNS:toowoomba.mysite1.com,DNS:townsville.mysite1.com,DNS:wollongong.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] Getting domain auth token for each domain
[Mon Apr  6 17:37:24 AEST 2020] d='www.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='australia.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='cairns.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='canberra.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='darwin.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='hobart.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='launceston.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='perth.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='sydney.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='townsville.mysite1.com'
[Mon Apr  6 17:37:24 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr  6 17:37:25 AEST 2020] d
[Mon Apr  6 17:37:25 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr  6 17:37:25 AEST 2020] payload='{"identifiers": [{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"},{"type":"dns","value":"australia.mysite1.com"},{"type":"dns","value":"adelaide.mysite1.com"},{"type":"dns","value":"brisbane.mysite1.com"},{"type":"dns","value":"cairns.mysite1.com"},{"type":"dns","value":"canberra.mysite1.com"},{"type":"dns","value":"darwin.mysite1.com"},{"type":"dns","value":"gold-coast.mysite1.com"},{"type":"dns","value":"hobart.mysite1.com"},{"type":"dns","value":"launceston.mysite1.com"},{"type":"dns","value":"melbourne.mysite1.com"},{"type":"dns","value":"newcastle.mysite1.com"},{"type":"dns","value":"perth.mysite1.com"},{"type":"dns","value":"sydney.mysite1.com"},{"type":"dns","value":"toowoomba.mysite1.com"},{"type":"dns","value":"townsville.mysite1.com"},{"type":"dns","value":"wollongong.mysite1.com"}]}'
[Mon Apr  6 17:37:25 AEST 2020] RSA key
[Mon Apr  6 17:37:25 AEST 2020] HEAD
[Mon Apr  6 17:37:25 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Apr  6 17:37:25 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g  -I  '
[Mon Apr  6 17:37:25 AEST 2020] _ret='0'
[Mon Apr  6 17:37:25 AEST 2020] POST
[Mon Apr  6 17:37:25 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/new-order'
[Mon Apr  6 17:37:25 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:26 AEST 2020] _ret='0'
[Mon Apr  6 17:37:26 AEST 2020] code='201'
[Mon Apr  6 17:37:26 AEST 2020] Le_LinkOrder='https://acme-v02.api.letsencrypt.org/acme/order/82624169/2908143252'
[Mon Apr  6 17:37:26 AEST 2020] Le_OrderFinalize='https://acme-v02.api.letsencrypt.org/acme/finalize/82624169/2908143252'
[Mon Apr  6 17:37:26 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188427'
[Mon Apr  6 17:37:26 AEST 2020] payload
[Mon Apr  6 17:37:26 AEST 2020] POST
[Mon Apr  6 17:37:26 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188427'
[Mon Apr  6 17:37:26 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:27 AEST 2020] _ret='0'
[Mon Apr  6 17:37:27 AEST 2020] code='200'
[Mon Apr  6 17:37:27 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188428'
[Mon Apr  6 17:37:27 AEST 2020] payload
[Mon Apr  6 17:37:27 AEST 2020] POST
[Mon Apr  6 17:37:27 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188428'
[Mon Apr  6 17:37:27 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:28 AEST 2020] _ret='0'
[Mon Apr  6 17:37:28 AEST 2020] code='200'
[Mon Apr  6 17:37:28 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188429'
[Mon Apr  6 17:37:28 AEST 2020] payload
[Mon Apr  6 17:37:28 AEST 2020] POST
[Mon Apr  6 17:37:28 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188429'
[Mon Apr  6 17:37:28 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:29 AEST 2020] _ret='0'
[Mon Apr  6 17:37:29 AEST 2020] code='200'
[Mon Apr  6 17:37:29 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188430'
[Mon Apr  6 17:37:29 AEST 2020] payload
[Mon Apr  6 17:37:29 AEST 2020] POST
[Mon Apr  6 17:37:29 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188430'
[Mon Apr  6 17:37:29 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:30 AEST 2020] _ret='0'
[Mon Apr  6 17:37:30 AEST 2020] code='200'
[Mon Apr  6 17:37:30 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188431'
[Mon Apr  6 17:37:30 AEST 2020] payload
[Mon Apr  6 17:37:30 AEST 2020] POST
[Mon Apr  6 17:37:30 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188431'
[Mon Apr  6 17:37:30 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:31 AEST 2020] _ret='0'
[Mon Apr  6 17:37:31 AEST 2020] code='200'
[Mon Apr  6 17:37:31 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188432'
[Mon Apr  6 17:37:31 AEST 2020] payload
[Mon Apr  6 17:37:31 AEST 2020] POST
[Mon Apr  6 17:37:31 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188432'
[Mon Apr  6 17:37:31 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:31 AEST 2020] _ret='0'
[Mon Apr  6 17:37:31 AEST 2020] code='200'
[Mon Apr  6 17:37:31 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188433'
[Mon Apr  6 17:37:31 AEST 2020] payload
[Mon Apr  6 17:37:31 AEST 2020] POST
[Mon Apr  6 17:37:31 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188433'
[Mon Apr  6 17:37:31 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:32 AEST 2020] _ret='0'
[Mon Apr  6 17:37:32 AEST 2020] code='200'
[Mon Apr  6 17:37:32 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188434'
[Mon Apr  6 17:37:32 AEST 2020] payload
[Mon Apr  6 17:37:33 AEST 2020] POST
[Mon Apr  6 17:37:33 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188434'
[Mon Apr  6 17:37:33 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:33 AEST 2020] _ret='0'
[Mon Apr  6 17:37:33 AEST 2020] code='200'
[Mon Apr  6 17:37:33 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188435'
[Mon Apr  6 17:37:33 AEST 2020] payload
[Mon Apr  6 17:37:33 AEST 2020] POST
[Mon Apr  6 17:37:33 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188435'
[Mon Apr  6 17:37:33 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:34 AEST 2020] _ret='0'
[Mon Apr  6 17:37:34 AEST 2020] code='200'
[Mon Apr  6 17:37:34 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188436'
[Mon Apr  6 17:37:34 AEST 2020] payload
[Mon Apr  6 17:37:34 AEST 2020] POST
[Mon Apr  6 17:37:34 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188436'
[Mon Apr  6 17:37:34 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:35 AEST 2020] _ret='0'
[Mon Apr  6 17:37:35 AEST 2020] code='200'
[Mon Apr  6 17:37:35 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188438'
[Mon Apr  6 17:37:35 AEST 2020] payload
[Mon Apr  6 17:37:35 AEST 2020] POST
[Mon Apr  6 17:37:35 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188438'
[Mon Apr  6 17:37:35 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:36 AEST 2020] _ret='0'
[Mon Apr  6 17:37:36 AEST 2020] code='200'
[Mon Apr  6 17:37:36 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188441'
[Mon Apr  6 17:37:36 AEST 2020] payload
[Mon Apr  6 17:37:36 AEST 2020] POST
[Mon Apr  6 17:37:36 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188441'
[Mon Apr  6 17:37:36 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:37 AEST 2020] _ret='0'
[Mon Apr  6 17:37:37 AEST 2020] code='200'
[Mon Apr  6 17:37:37 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188443'
[Mon Apr  6 17:37:37 AEST 2020] payload
[Mon Apr  6 17:37:37 AEST 2020] POST
[Mon Apr  6 17:37:37 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188443'
[Mon Apr  6 17:37:37 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:38 AEST 2020] _ret='0'
[Mon Apr  6 17:37:38 AEST 2020] code='200'
[Mon Apr  6 17:37:38 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188444'
[Mon Apr  6 17:37:38 AEST 2020] payload
[Mon Apr  6 17:37:38 AEST 2020] POST
[Mon Apr  6 17:37:38 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188444'
[Mon Apr  6 17:37:38 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:38 AEST 2020] _ret='0'
[Mon Apr  6 17:37:39 AEST 2020] code='200'
[Mon Apr  6 17:37:39 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188445'
[Mon Apr  6 17:37:39 AEST 2020] payload
[Mon Apr  6 17:37:39 AEST 2020] POST
[Mon Apr  6 17:37:39 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188445'
[Mon Apr  6 17:37:39 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:39 AEST 2020] _ret='0'
[Mon Apr  6 17:37:39 AEST 2020] code='200'
[Mon Apr  6 17:37:39 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188446'
[Mon Apr  6 17:37:39 AEST 2020] payload
[Mon Apr  6 17:37:39 AEST 2020] POST
[Mon Apr  6 17:37:39 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188446'
[Mon Apr  6 17:37:39 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:40 AEST 2020] _ret='0'
[Mon Apr  6 17:37:40 AEST 2020] code='200'
[Mon Apr  6 17:37:40 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188449'
[Mon Apr  6 17:37:40 AEST 2020] payload
[Mon Apr  6 17:37:40 AEST 2020] POST
[Mon Apr  6 17:37:40 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188449'
[Mon Apr  6 17:37:40 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:41 AEST 2020] _ret='0'
[Mon Apr  6 17:37:41 AEST 2020] code='200'
[Mon Apr  6 17:37:41 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188450'
[Mon Apr  6 17:37:41 AEST 2020] payload
[Mon Apr  6 17:37:41 AEST 2020] POST
[Mon Apr  6 17:37:41 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/3792188450'
[Mon Apr  6 17:37:41 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:42 AEST 2020] _ret='0'
[Mon Apr  6 17:37:42 AEST 2020] code='200'
[Mon Apr  6 17:37:42 AEST 2020] d='mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ","token":"AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs"'
[Mon Apr  6 17:37:42 AEST 2020] token='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='mysite1.com#AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='www.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='www.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg","token":"upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8"'
[Mon Apr  6 17:37:42 AEST 2020] token='upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='www.mysite1.com#upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='australia.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='australia.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g","token":"md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE"'
[Mon Apr  6 17:37:42 AEST 2020] token='md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='australia.mysite1.com#md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='adelaide.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g","token":"CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk"'
[Mon Apr  6 17:37:42 AEST 2020] token='CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='adelaide.mysite1.com#CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='brisbane.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA","token":"WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg"'
[Mon Apr  6 17:37:42 AEST 2020] token='WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='brisbane.mysite1.com#WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='cairns.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='cairns.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog","token":"3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8"'
[Mon Apr  6 17:37:42 AEST 2020] token='3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='cairns.mysite1.com#3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='canberra.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='canberra.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw","token":"4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A"'
[Mon Apr  6 17:37:42 AEST 2020] token='4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='canberra.mysite1.com#4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='darwin.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='darwin.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng","token":"qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ"'
[Mon Apr  6 17:37:42 AEST 2020] token='qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='darwin.mysite1.com#qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='gold-coast.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ","token":"IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g"'
[Mon Apr  6 17:37:42 AEST 2020] token='IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='gold-coast.mysite1.com#IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='hobart.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='hobart.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ","token":"B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY"'
[Mon Apr  6 17:37:42 AEST 2020] token='B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='hobart.mysite1.com#B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='launceston.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='launceston.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q","token":"HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q"'
[Mon Apr  6 17:37:42 AEST 2020] token='HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='launceston.mysite1.com#HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='melbourne.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg","token":"WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII"'
[Mon Apr  6 17:37:42 AEST 2020] token='WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='melbourne.mysite1.com#WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='newcastle.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw","token":"qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0"'
[Mon Apr  6 17:37:42 AEST 2020] token='qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0'
[Mon Apr  6 17:37:42 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr  6 17:37:42 AEST 2020] keyauthorization='qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:42 AEST 2020] dvlist='newcastle.mysite1.com#qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] d='perth.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] Getting webroot for domain='perth.mysite1.com'
[Mon Apr  6 17:37:42 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:42 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw","token":"-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg"'
[Mon Apr  6 17:37:42 AEST 2020] token='-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] dvlist='perth.mysite1.com#-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] d='sydney.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] Getting webroot for domain='sydney.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g","token":"2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g"'
[Mon Apr  6 17:37:43 AEST 2020] token='2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] dvlist='sydney.mysite1.com#2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] Getting webroot for domain='toowoomba.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg","token":"_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc"'
[Mon Apr  6 17:37:43 AEST 2020] token='_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] dvlist='toowoomba.mysite1.com#_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] d='townsville.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] Getting webroot for domain='townsville.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q","token":"aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4"'
[Mon Apr  6 17:37:43 AEST 2020] token='aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] dvlist='townsville.mysite1.com#aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] Getting webroot for domain='wollongong.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] _w='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] entry='"type":"http-01","status":"pending","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g","token":"sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg"'
[Mon Apr  6 17:37:43 AEST 2020] token='sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] dvlist='wollongong.mysite1.com#sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g#http-01#/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] d
[Mon Apr  6 17:37:43 AEST 2020] vlist='mysite1.com#AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ#http-01#/var/www/html/mysite1,www.mysite1.com#upKC-Z7Vh2lv2Oj8iLLvbrlqOhv-Y1PWR_Iz-aEnur8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg#http-01#/var/www/html/mysite1,australia.mysite1.com#md2OdYGExl2dofRI-P9fq-zMIv5zNAnwUJgEMiHaJoE.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g#http-01#/var/www/html/mysite1,adelaide.mysite1.com#CSITRsQwlpexBabFXjOasouCzyWLLylJKX6iGZtxKpk.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g#http-01#/var/www/html/mysite1,brisbane.mysite1.com#WGjErnmddk5mWvmY0x7waobyZZ91McWqa-ZJtVsatvg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA#http-01#/var/www/html/mysite1,cairns.mysite1.com#3v0E6QYK7Si4sEY-3qmKX8yWazHlmDWnkhJ6ePOj2x8.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog#http-01#/var/www/html/mysite1,canberra.mysite1.com#4FI8x4moC_FYkVQiNl6jKmeWiMcyS45EbOnuVLJ2z2A.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw#http-01#/var/www/html/mysite1,darwin.mysite1.com#qP-2zOsaUEnEE6aPtefr6vbCNTk255E9KSnAu4nfBTQ.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng#http-01#/var/www/html/mysite1,gold-coast.mysite1.com#IJjXwXa6HQUMUJkiVGJl4UQhsADnLG78SP9a6DXvk-g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ#http-01#/var/www/html/mysite1,hobart.mysite1.com#B-Na6D8GDmInXsKbxhGsiqeEB8DJpjy52qz12uCqSCY.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ#http-01#/var/www/html/mysite1,launceston.mysite1.com#HHpNVOTW4jXki3YhoucHqulRkegKBlELm1fhstR8S6Q.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q#http-01#/var/www/html/mysite1,melbourne.mysite1.com#WREWr-j-jzpqD6e7Tq1AElRVVBKywE-y6otS6AFhsII.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg#http-01#/var/www/html/mysite1,newcastle.mysite1.com#qeX_ErGWSFxut4LgqxoaAxpLyyQwk_yLE2y7odYYP-0.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw#http-01#/var/www/html/mysite1,perth.mysite1.com#-3CuEHeqg9P4q0vtAmeyCQYRF517So8vgpzLDsUEOkg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw#http-01#/var/www/html/mysite1,sydney.mysite1.com#2HmceHVxNZ6bJz92RoAa7yU8M60qhkadV37MycIE-1g.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g#http-01#/var/www/html/mysite1,toowoomba.mysite1.com#_5Pok3wKX-0dYB_FxiqpgumGz8sNKu3xcNvv6B0y0vc.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg#http-01#/var/www/html/mysite1,townsville.mysite1.com#aY__VbQYFzE28bqTVLOVgKBWJLd3nAHogFqSqx1tAH4.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q#http-01#/var/www/html/mysite1,wollongong.mysite1.com#sXOiUP9DA9j8_84-PmzS5NJg617hJAU8kYfQ-4pRCYg.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA#https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g#http-01#/var/www/html/mysite1,'
[Mon Apr  6 17:37:43 AEST 2020] d='mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='www.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='australia.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='adelaide.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='brisbane.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='cairns.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='canberra.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='darwin.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='gold-coast.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='hobart.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='launceston.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='melbourne.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='newcastle.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='perth.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='sydney.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='toowoomba.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='townsville.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] d='wollongong.mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] ok, let's start to verify
[Mon Apr  6 17:37:43 AEST 2020] Verifying: mysite1.com
[Mon Apr  6 17:37:43 AEST 2020] d='mysite1.com'
[Mon Apr  6 17:37:43 AEST 2020] keyauthorization='AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs.Cs-3eJzFniCdYW-ZJBYsiJBUwk31mTAQK87GECLmoWA'
[Mon Apr  6 17:37:43 AEST 2020] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:43 AEST 2020] _currentRoot='/var/www/html/mysite1'
[Mon Apr  6 17:37:43 AEST 2020] wellknown_path='/var/www/html/mysite1/.well-known/acme-challenge'
[Mon Apr  6 17:37:43 AEST 2020] writing token:AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs to /var/www/html/mysite1/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs
[Mon Apr  6 17:37:43 AEST 2020] Changing owner/group of .well-known to development:httpDEV
[Mon Apr  6 17:37:43 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:43 AEST 2020] payload='{}'
[Mon Apr  6 17:37:43 AEST 2020] POST
[Mon Apr  6 17:37:43 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:43 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:44 AEST 2020] _ret='0'
[Mon Apr  6 17:37:44 AEST 2020] code='200'
[Mon Apr  6 17:37:44 AEST 2020] trigger validation code: 200
[Mon Apr  6 17:37:44 AEST 2020] sleep 2 secs to verify
[Mon Apr  6 17:37:46 AEST 2020] checking
[Mon Apr  6 17:37:46 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:46 AEST 2020] payload
[Mon Apr  6 17:37:46 AEST 2020] POST
[Mon Apr  6 17:37:46 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:46 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:47 AEST 2020] _ret='0'
[Mon Apr  6 17:37:47 AEST 2020] code='200'
[Mon Apr  6 17:37:47 AEST 2020] Pending
[Mon Apr  6 17:37:47 AEST 2020] sleep 2 secs to verify
[Mon Apr  6 17:37:49 AEST 2020] checking
[Mon Apr  6 17:37:49 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:49 AEST 2020] payload
[Mon Apr  6 17:37:49 AEST 2020] POST
[Mon Apr  6 17:37:49 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:49 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:49 AEST 2020] _ret='0'
[Mon Apr  6 17:37:49 AEST 2020] code='200'
[Mon Apr  6 17:37:49 AEST 2020] mysite1.com:Verify error:Invalid response from https://mysite1.com/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs [34.232.56.134]: 
[Mon Apr  6 17:37:49 AEST 2020] Debug: get token url.
[Mon Apr  6 17:37:49 AEST 2020] GET
[Mon Apr  6 17:37:49 AEST 2020] url='http://mysite1.com/.well-known/acme-challenge/AP5nTEn-ftJK7Zr1ECCm1NljGHlmwl5Jq3RmIkgOxhs'
[Mon Apr  6 17:37:49 AEST 2020] timeout=1
[Mon Apr  6 17:37:49 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g  --connect-timeout 1'
[Mon Apr  6 17:37:49 AEST 2020] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 60
[Mon Apr  6 17:37:49 AEST 2020] ret='60'
[Mon Apr  6 17:37:49 AEST 2020] Debugging, skip removing: /var/www/html/mysite1/.well-known
[Mon Apr  6 17:37:49 AEST 2020] pid
[Mon Apr  6 17:37:49 AEST 2020] No need to restore nginx, skip.
[Mon Apr  6 17:37:49 AEST 2020] _clearupdns
[Mon Apr  6 17:37:49 AEST 2020] dns_entries
[Mon Apr  6 17:37:49 AEST 2020] skip dns.
[Mon Apr  6 17:37:49 AEST 2020] _on_issue_err
[Mon Apr  6 17:37:49 AEST 2020] Please check log file for more details: /home/development/.acme.sh/acme.sh.log
[Mon Apr  6 17:37:50 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:50 AEST 2020] payload='{}'
[Mon Apr  6 17:37:50 AEST 2020] POST
[Mon Apr  6 17:37:50 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188432/soIwhQ'
[Mon Apr  6 17:37:50 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:50 AEST 2020] _ret='0'
[Mon Apr  6 17:37:50 AEST 2020] code='400'
[Mon Apr  6 17:37:50 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr  6 17:37:50 AEST 2020] payload='{}'
[Mon Apr  6 17:37:50 AEST 2020] POST
[Mon Apr  6 17:37:50 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188450/7JJfNg'
[Mon Apr  6 17:37:50 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:51 AEST 2020] _ret='0'
[Mon Apr  6 17:37:51 AEST 2020] code='200'
[Mon Apr  6 17:37:51 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr  6 17:37:51 AEST 2020] payload='{}'
[Mon Apr  6 17:37:51 AEST 2020] POST
[Mon Apr  6 17:37:51 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188428/Xgus8g'
[Mon Apr  6 17:37:51 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:52 AEST 2020] _ret='0'
[Mon Apr  6 17:37:52 AEST 2020] code='200'
[Mon Apr  6 17:37:52 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr  6 17:37:52 AEST 2020] payload='{}'
[Mon Apr  6 17:37:52 AEST 2020] POST
[Mon Apr  6 17:37:52 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188427/VJdn-g'
[Mon Apr  6 17:37:52 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:53 AEST 2020] _ret='0'
[Mon Apr  6 17:37:53 AEST 2020] code='200'
[Mon Apr  6 17:37:53 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr  6 17:37:53 AEST 2020] payload='{}'
[Mon Apr  6 17:37:53 AEST 2020] POST
[Mon Apr  6 17:37:53 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188429/yfQYmA'
[Mon Apr  6 17:37:53 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:54 AEST 2020] _ret='0'
[Mon Apr  6 17:37:54 AEST 2020] code='200'
[Mon Apr  6 17:37:54 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr  6 17:37:54 AEST 2020] payload='{}'
[Mon Apr  6 17:37:54 AEST 2020] POST
[Mon Apr  6 17:37:54 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188430/y5rnog'
[Mon Apr  6 17:37:54 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:54 AEST 2020] _ret='0'
[Mon Apr  6 17:37:54 AEST 2020] code='200'
[Mon Apr  6 17:37:55 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr  6 17:37:55 AEST 2020] payload='{}'
[Mon Apr  6 17:37:55 AEST 2020] POST
[Mon Apr  6 17:37:55 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188431/1F_ITw'
[Mon Apr  6 17:37:55 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:55 AEST 2020] _ret='0'
[Mon Apr  6 17:37:55 AEST 2020] code='200'
[Mon Apr  6 17:37:55 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr  6 17:37:55 AEST 2020] payload='{}'
[Mon Apr  6 17:37:55 AEST 2020] POST
[Mon Apr  6 17:37:55 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188433/_t9gng'
[Mon Apr  6 17:37:55 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:56 AEST 2020] _ret='0'
[Mon Apr  6 17:37:56 AEST 2020] code='200'
[Mon Apr  6 17:37:56 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr  6 17:37:56 AEST 2020] payload='{}'
[Mon Apr  6 17:37:56 AEST 2020] POST
[Mon Apr  6 17:37:56 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188434/GzQcIQ'
[Mon Apr  6 17:37:56 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:57 AEST 2020] _ret='0'
[Mon Apr  6 17:37:57 AEST 2020] code='200'
[Mon Apr  6 17:37:57 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr  6 17:37:57 AEST 2020] payload='{}'
[Mon Apr  6 17:37:57 AEST 2020] POST
[Mon Apr  6 17:37:57 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188435/tG-IWQ'
[Mon Apr  6 17:37:57 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:58 AEST 2020] _ret='0'
[Mon Apr  6 17:37:58 AEST 2020] code='200'
[Mon Apr  6 17:37:58 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr  6 17:37:58 AEST 2020] payload='{}'
[Mon Apr  6 17:37:58 AEST 2020] POST
[Mon Apr  6 17:37:58 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188436/R8dQ9Q'
[Mon Apr  6 17:37:58 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:37:59 AEST 2020] _ret='0'
[Mon Apr  6 17:37:59 AEST 2020] code='200'
[Mon Apr  6 17:37:59 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr  6 17:37:59 AEST 2020] payload='{}'
[Mon Apr  6 17:37:59 AEST 2020] POST
[Mon Apr  6 17:37:59 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188438/lqVjEg'
[Mon Apr  6 17:37:59 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:00 AEST 2020] _ret='0'
[Mon Apr  6 17:38:00 AEST 2020] code='200'
[Mon Apr  6 17:38:00 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr  6 17:38:00 AEST 2020] payload='{}'
[Mon Apr  6 17:38:00 AEST 2020] POST
[Mon Apr  6 17:38:00 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188441/W5QVYw'
[Mon Apr  6 17:38:00 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:01 AEST 2020] _ret='0'
[Mon Apr  6 17:38:01 AEST 2020] code='200'
[Mon Apr  6 17:38:01 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr  6 17:38:01 AEST 2020] payload='{}'
[Mon Apr  6 17:38:01 AEST 2020] POST
[Mon Apr  6 17:38:01 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188443/FnmzWw'
[Mon Apr  6 17:38:01 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:02 AEST 2020] _ret='0'
[Mon Apr  6 17:38:02 AEST 2020] code='200'
[Mon Apr  6 17:38:02 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr  6 17:38:02 AEST 2020] payload='{}'
[Mon Apr  6 17:38:02 AEST 2020] POST
[Mon Apr  6 17:38:02 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188444/CRuL1g'
[Mon Apr  6 17:38:02 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:03 AEST 2020] _ret='0'
[Mon Apr  6 17:38:03 AEST 2020] code='200'
[Mon Apr  6 17:38:03 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr  6 17:38:03 AEST 2020] payload='{}'
[Mon Apr  6 17:38:03 AEST 2020] POST
[Mon Apr  6 17:38:03 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188445/ZVYrFg'
[Mon Apr  6 17:38:03 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:04 AEST 2020] _ret='0'
[Mon Apr  6 17:38:04 AEST 2020] code='200'
[Mon Apr  6 17:38:04 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr  6 17:38:04 AEST 2020] payload='{}'
[Mon Apr  6 17:38:04 AEST 2020] POST
[Mon Apr  6 17:38:04 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188446/_djg9Q'
[Mon Apr  6 17:38:04 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:05 AEST 2020] _ret='0'
[Mon Apr  6 17:38:05 AEST 2020] code='200'
[Mon Apr  6 17:38:05 AEST 2020] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr  6 17:38:05 AEST 2020] payload='{}'
[Mon Apr  6 17:38:05 AEST 2020] POST
[Mon Apr  6 17:38:05 AEST 2020] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/3792188449/qXsN0g'
[Mon Apr  6 17:38:05 AEST 2020] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header  -g '
[Mon Apr  6 17:38:06 AEST 2020] _ret='0'
[Mon Apr  6 17:38:06 AEST 2020] code='200'
[Mon Apr  6 17:38:06 AEST 2020] Diagnosis versions: 
openssl:openssl
OpenSSL 1.1.1d  10 Sep 2019
apache:
apache doesn't exists.
nginx:
nginx doesn't exists.
socat:
socat by Gerhard Rieger and contributors - see www.dest-unreach.org
socat version 1.7.3.4 on Jan  6 2020 16:58:19
   running on Linux version #1 SMP Mon Feb 24 07:35:13 PST 2020, release 5.5.6-914.native, machine x86_64
features:
  #define WITH_STDIO 1
  #define WITH_FDNUM 1
  #define WITH_FILE 1
  #define WITH_CREAT 1
  #define WITH_GOPEN 1
  #define WITH_TERMIOS 1
  #define WITH_PIPE 1
  #define WITH_UNIX 1
  #define WITH_ABSTRACT_UNIXSOCKET 1
  #define WITH_IP4 1
  #define WITH_IP6 1
  #define WITH_RAWIP 1
  #define WITH_GENERICSOCKET 1
  #define WITH_INTERFACE 1
  #define WITH_TCP 1
  #define WITH_UDP 1
  #define WITH_SCTP 1
  #define WITH_LISTEN 1
  #define WITH_SOCKS4 1
  #define WITH_SOCKS4A 1
  #define WITH_PROXY 1
  #define WITH_SYSTEM 1
  #define WITH_EXEC 1
  #undef WITH_READLINE
  #define WITH_TUN 1
  #define WITH_PTY 1
  #define WITH_OPENSSL 1
  #undef WITH_FIPS
  #undef WITH_LIBWRAP
  #define WITH_SYCLS 1
  #define WITH_FILAN 1
  #define WITH_RETRY 1
  #define WITH_MSGLEVEL 0 /*debug*/
ketonik commented 4 years ago

nginx-mainline is my web server not nginx (which is the stable build).

Does the .acme.sh file need to be modified to look for nginx-mainline ???

if so where, there are 110 nginx entries in the .acme.sh file.

ketonik commented 4 years ago

curl -IkL -m20 http://mysite1.com

HTTP/1.1 301 Moved Permanently Server: nginx/1.17.8 Date: Mon, 06 Apr 2020 08:10:16 GMT Content-Type: text/html Content-Length: 169 Connection: keep-alive Location: https://mysite1.com/

HTTP/2 200 server: nginx/1.17.8 content-type: text/html; charset=UTF-8 x-powered-by: PHP/7.4.2 cache-control: max-age=0, must-revalidate, private date: Mon, 06 Apr 2020 08:10:16 GMT x-debug-token: 1b8ccc x-debug-token-link: https://mysite1.com/_profiler/1b8ccc x-robots-tag: noindex expires: Mon, 06 Apr 2020 08:10:16 GMT

ketonik commented 4 years ago

So any idea what's all the problems here?

TonyGravagno commented 4 years ago

I can help with a couple points, and I share a couple questions. I am addressing each point in separate comments.

1) In your .bashrc, at the very bottom there should have been a new line added after the alias, but it was appended to the alias in a way that looks semantically correct:

alias ll='ls -alF'. "/home/development/.acme.sh/acme.sh.env"

Should be:

alias ll='ls -alF'
. "/home/development/.acme.sh/acme.sh.env"

The goal of that line wasn't to change the alias but to execute the .env script.

TonyGravagno commented 4 years ago

2) You asked about these lines in your nginx .conf file:

ssl_certificate      /etc/letsencrypt/live/mysite.com/fullchain.pem;
ssl_certificate_key  /etc/letsencrypt/live/mysite.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;

Under /home/user/.acme.sh you will find one folder per site. For example: ./acme.sh/mysite.com. When we issue a cert that folder is updated with new certs and renewals. The output from the --issue tells us which file is the cert file, the key, and the fullchain file.

Here is a concept that blew my mind. When we --install-cert we tell the command where we want to save the --cert-file, --key-file, and --fullchain-file, and we provide a name. But we do not tell it which files to use as the source of those target files. I was searching everywhere for "how do we tell it which files to use!?!" The answer is that we do not. The files under .acme.sh/mysite.com are "found" by acme.sh. It knows where the source data is to build the .pem files It just needs to know where we want to create new .pem files. So if it wasn't clear, just execute the --install-cert and send files into a new folder, not /etc/letsencrypt/zzz.

Which folder?

This is where we get to the config stuff above. When using certbot we have /etc/letsencrypt/live. You can still use that folder, but I suggest using a completely different one. The wiki suggests we create a folder that can be accessed by the web server. So in my apache2 server I have /etc/apache2/ssl. That is the path used with --install-cert, and (advanced install) you change those lines in the config file so that it points to the folder+files that you specified in the --install-cert command.

The names for these files aren't all the same. You need to just look at the three files you have, the three files required in the config, and logically deduce which is which. Again, the --install-cert function has options for --cert-file, --key-file, and --fullchain-file. My guess is that this is what needs:

ssl_certificate      --cert-file
ssl_certificate_key  --key-file
ssl_trusted_certificate --fullchain-file

But look at your .conf file : for the ssl_certificate you have your fullchain file. And your ssl_trusted_certificate is chain.pem.

Try this: Re-execute the --install-cert with these values:

 --cert-file  /etc/ssl/mysite.com/cert.pm
 --key-file  /etc/ssl/mysite.com/key.pm
 --fullchain-file  /etc/ssl/mysite.com/fullchain.pm

Then change your .conf file:

ssl_certificate      /etc/ssl/mysite.com/cert.pm;
ssl_certificate_key   /etc/ssl/mysite.com/key.pm;
ssl_trusted_certificate   /etc/ssl/mysite.com/fullchain.pm;
TonyGravagno commented 4 years ago

3) I am also converting from certbot to acme.sh, and I'm also confused.

Do we need anything in /etc/letsencrypt? : I don't think so. As I'm trying to do this I'm renaming that folder. If everything works later, I'll delete it.

What about old certbot stuff? : I'm now doing everything I can to remove certbot and anything related to it. I want to start from scratch with acme.sh. This also means manually modifying all of the site .conf files. For Apache I've been having a big problem where the .conf giles and the sites-enabled entries are incorrect, so starting Apache has been difficult. I have used a2dissite to disable all HTTPS sites except one so that I can just get one working and then replicate the process for other sites.

I thought acme.sh was going to do some of that for us but I was wrong. I mean, there's no lack of appreciation here for all of the great things that this code does do. I just thought it did more. Reading the documentation a few more times helps to understand it better.

When re-creating the conf files, I'm going to try renaming the SSL conf files from mysite.tld-le-ssl.conf to mysite.tld-ssl.conf. I don't see a good reason to "brand" my config files with the LE (Let's Encrypt) identifier. It doesn't matter how we're implementing SSL, it just needs to work.

So to summarize about what to do with the old certbot/le stuff - I'm completely blowing it all away. I wish I could find a blog or wiki on this topic.

TonyGravagno commented 4 years ago

4) Finally - I've been very confused about permissions, and this is related to certbot migration to acme.sh.

We need to --install-cert into a folder like /etc/apache/ssl/mysite, the way certbot installed to /etc/letsencrypt/live/mysite. That requires root permissions. @Neilpang has said acme.sh is designed so that it doesn't need root permissions. I'm very confused about that.

The wiki page also says we shouldn't use 'sudo'. Well, don't use sudo, and don't use root, so the cert folders need to be accessible by a different user: but what are the requirements for that user? I run sites under user+owner www-data. My ubuntu user is in group www-data. I think I installed certbot with root. Now I think I need to give folders like /etc/apache/ssl/mysite write access to ubuntu and read access to group www-data? I dunno, I'm making guesses, searching for info, experimenting, and spending a lot of time on this.

TonyGravagno commented 4 years ago

Summary on-topic request: Please note some of these concerns and document what we need to do. I'll be happy to collect notes here and elsewhere and write/PR a new wiki page. I just need the answers. Thanks!

Neilpang commented 4 years ago

@TonyGravagno

Thanks for your comments.

That requires root permissions. @Neilpang has said acme.sh is designed so that it doesn't need root permissions. I'm very confused about that.

Actually, acme.sh doesn't need root to generate certs. As for copying files, you just need to configure the "Write" permissions to the user who is running acme.sh.

If you want to use root. please install acme.sh as root user, and then use it to generate certs and install-cert. But don't use sudo.

For example:

#unstall acme.sh for current user:
acme.sh --uninstall

# first switch to root user
sudo su

#install acme.sh for root user:

curl https://get.acme.sh | sh

#try issue and install-cert again

acme.sh --issue .....
acme.sh --install-cert .....
TonyGravagno commented 4 years ago

Thank you for the quick response, @Neilpang. I have spent my entire day with this fine software. Yes, I think I need to install, issue, install-cert, and renew with root.

To install a cert with --apache, the script needs to modify apache.conf. The 'ubuntu' user doesn't have permissions to update/swap that file. I used setfacl to fix that. Then I found this user couldn't restart the apache service (even with --reloadcmd "service apache2 force-reload"). So I decided to try the -w option.

All of my WordPress sites run with user/group www-data. My user 'ubuntu' is in group www-data. The script can create folders, but they cannot be accessed as user/group ubuntu. I created a script that creates the .well-known/acme-challenge path and inserts a simple .htaccess, then changes the ownership to www-data. But of course the script attempts to write the challenge file as user ubuntu, so the web server can't access it anyway. I decided to stop trying to get around the problems.

I will start from scratch again with all operations as root. But I would really like to understand if acme.sh is capable of defeating these obstacles, and I'm just not using it properly? Or is there a better pattern to follow? Or is root really the answer?

And - back on topic with this ticket (and not wanting to hijack it further: Certbot and acme.sh are both implementing the API for LE. Can we eliminate the /etc/letsencrypt folder when we use acme.sh? It's tough to know where the client ends and LE begins. Thanks!

Neilpang commented 4 years ago

Can we eliminate the /etc/letsencrypt folder when we use acme.sh?

Yes, there are no relations between certbot files and acme.sh files. you can remove them totally.

acme.sh only lives in its home folder("~/.acme.sh/" by default). This is designed to keep your system safe. We don't modify any of your system files unless you specified on the commandline args.

As for the www-data permissions problem, yes, you are correct.
For the -w webroot mode, you need (and only need) to give write access of the folder .well-known/acme-challenge to your user ubuntu. That should be enough for issuing a cert.

Thanks.

ketonik commented 4 years ago

TonyG > Appreciate your insightful comments

Neilpang > My log output above show any clue why still fails? Thanks

Neilpang commented 4 years ago

@ketonik

I think @TonyGravagno has explained clearly.

Are all your domains *.mysite1.com pointing to the save webroot folder /var/www/html/mysite.

You must use one weboot folder for one website for one sub domain.

TonyGravagno commented 4 years ago

@Neilpang : With root I quickly and successfully have issued a couple certs. I will continue with this and will try with user ubuntu later.

@ketonik I hope I was able to help a little with this. I believe I made an error in a suggestion to you:

In my SSL conf file in Apache, I have:

SSLCertificateFile  /etc/apache2/ssl/site.tld/fullchain.pem
SSLCertificateKeyFile  /etc/apache2/ssl/site.tld/key.pem

Note that the cert file is the fullchain, which makes sense since that has all of the info needed. So just confirm if your files are assigned to the right nginx values:

ssl_certificate      /etc/letsencrypt/live/mysite.com/fullchain.pem;
ssl_certificate_key  /etc/letsencrypt/live/mysite.com/privkey.pem;
ssl_trusted_certificate /etc/letsencrypt/live/mysite.com/chain.pem;

Also, I haven't done this with nginx yet, but with Apache whenever we change the .conf files we need to ensure we use a2ensite to enable them and then restart the server. You might need a similar operation to be performed before your site will register that the configs have changed.

I think you saw a significant item: The script said you don't have nginx loaded but you do have nginx-mainline. The script write the .well-known/acme-challenge file and then changed the ownership of that file. Then it attempted to get a verification and curl returned error CURLE_PEER_FAILED_VERIFICATION (60) "The remote server's SSL certificate or SSH md5 fingerprint was deemed not OK."

I'm a noob with this stuff too, but that tells me it saw a cert but that the cert is bad. This comes back to the above ... check to make sure you have the right .pem files in those folders.

And as noted, to avoid confusion, now that Neil confirmed that we can delete the LE stuff, I have moved the pem files to another folder and will delete the LE folders soon. You might want to do the same. HTH!

ketonik commented 4 years ago

@ketonik

I think @TonyGravagno has explained clearly.

Are all your domains *.mysite1.com pointing to the save webroot folder /var/www/html/mysite.

You must use one weboot folder for one website for one sub domain.

Yes one webroot: /var/www/html/mysite1

with this command:

acme.sh --issue -d mysite1.com -d www.mysite1.com -d australia.mysite1.com -d adelaide.mysite1.com -d brisbane.mysite1.com -d cairns.mysite1.com -d canberra.mysite1.com -d darwin.mysite1.com -d gold-coast.mysite1.com -d hobart.mysite1.com -d launceston.mysite1.com -d melbourne.mysite1.com -d newcastle.mysite1.com -d perth.mysite1.com -d sydney.mysite1.com -d toowoomba.mysite1.com -d townsville.mysite1.com -d wollongong.mysite1.com -w /var/www/html/mysite1

ketonik commented 4 years ago

And as noted, to avoid confusion, now that Neil confirmed that we can delete the LE stuff, I have moved the pem files to another folder and will delete the LE folders soon. You might want to do the same. HTH!

This is a scary thought, as always tends to happen, try something unknown 'in case it may work' fall down a rabbit hole, after remove all and then find the acme.sh still doesn't work, costing hours and breaking everything along the way. mmm gosh i wish stuff just worked :-(

Neilpang commented 4 years ago

@ketonik Can you please reduce the domain count and try with --test option, and then provie log with --debug 2.

For example:


acme.sh --test  --issue -d mysite1.com -d www.mysite1.com  /var/www/html/mysite1  --debug 2

acme.sh --test  --issue -d mysite1.com -d www.mysite1.com  -d australia.mysite1.com 
  /var/www/html/mysite1  --debug 2

acme.sh --test  --issue -d mysite1.com -d www.mysite1.com  -d australia.mysite1.com   -d adelaide.mysite1.com

  /var/www/html/mysite1  --debug 2
ketonik commented 4 years ago

acme.sh --test --issue -d mysite1.com -d www.mysite1.com /var/www/html/mysite1 Unknown parameter : /var/www/html/mysite1

assuming you've missed the -w option

acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1 Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk

acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1 [Sun 12 Apr 2020 15:11:34 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:11:35 AEST] Create account key ok. [Sun 12 Apr 2020 15:11:35 AEST] Registering account [Sun 12 Apr 2020 15:11:37 AEST] Registered [Sun 12 Apr 2020 15:11:37 AEST] ACCOUNT_THUMBPRINT='vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:11:37 AEST] Creating domain key [Sun 12 Apr 2020 15:11:37 AEST] The domain key is here: /home/development/.acme.sh/mysite1.com/mysite1.com.key [Sun 12 Apr 2020 15:11:37 AEST] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com' [Sun 12 Apr 2020 15:11:37 AEST] Getting domain auth token for each domain [Sun 12 Apr 2020 15:11:40 AEST] Getting webroot for domain='mysite1.com' [Sun 12 Apr 2020 15:11:40 AEST] Getting webroot for domain='www.mysite1.com' [Sun 12 Apr 2020 15:11:40 AEST] Verifying: mysite1.com mkdir: cannot create directory ‘/var/www/html/mysite1/.well-known’: Permission denied /home/development/.acme.sh/acme.sh: line 4384: /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk: No such file or directory [Sun 12 Apr 2020 15:11:40 AEST] mysite1.com:Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/LQNcSLC16iLpbsT875xfAarlE64sKZpkIgZNfbVCpuk [Sun 12 Apr 2020 15:11:40 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log

ketonik commented 4 years ago

acme.sh --test --issue -d mysite1.com -d www.mysite1.com -w /var/www/html/mysite1 --debug 2

[Sun 12 Apr 2020 15:17:24 AEST] Lets find script dir. [Sun 12 Apr 2020 15:17:24 AEST] SCRIPT='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] _script='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] _script_home='/home/development/.acme.sh' [Sun 12 Apr 2020 15:17:24 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:17:24 AEST] LE_WORKING_DIR='/home/development/.acme.sh' https://github.com/acmesh-official/acme.sh v2.8.6 [Sun 12 Apr 2020 15:17:24 AEST] Running cmd: issue [Sun 12 Apr 2020 15:17:24 AEST] _main_domain='mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] _alt_domains='www.mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:17:24 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] ACME_DIRECTORY='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:17:24 AEST] _ACME_SERVER_HOST='acme-staging-v02.api.letsencrypt.org' [Sun 12 Apr 2020 15:17:24 AEST] DOMAIN_PATH='/home/development/.acme.sh/mysite1.com' [Sun 12 Apr 2020 15:17:24 AEST] '/var/www/html/mysite1' does not contain 'dns' [Sun 12 Apr 2020 15:17:24 AEST] Using ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] _init api for server: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:17:24 AEST] GET [Sun 12 Apr 2020 15:17:24 AEST] url='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:17:24 AEST] timeout= [Sun 12 Apr 2020 15:17:24 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.81F07qPdPs -g ' [Sun 12 Apr 2020 15:17:24 AEST] ret='0' [Sun 12 Apr 2020 15:17:24 AEST] response='{ "SorBucOP1UM": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417", "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change", "meta": { "caaIdentities": [ "letsencrypt.org" ], "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf", "website": "https://letsencrypt.org/docs/staging-environment/" }, "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct", "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce", "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order", "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert" }' [Sun 12 Apr 2020 15:17:25 AEST] ACME_KEY_CHANGE='https://acme-staging-v02.api.letsencrypt.org/acme/key-change' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_AUTHZ [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_ORDER='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_ACCOUNT='https://acme-staging-v02.api.letsencrypt.org/acme/new-acct' [Sun 12 Apr 2020 15:17:25 AEST] ACME_REVOKE_CERT='https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert' [Sun 12 Apr 2020 15:17:25 AEST] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf' [Sun 12 Apr 2020 15:17:25 AEST] ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] ACME_VERSION='2' [Sun 12 Apr 2020 15:17:25 AEST] Le_NextRenewTime [Sun 12 Apr 2020 15:17:25 AEST] _on_before_issue [Sun 12 Apr 2020 15:17:25 AEST] _chk_main_domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _chk_alt_domains='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] '/var/www/html/mysite1' does not contain 'no' [Sun 12 Apr 2020 15:17:25 AEST] Le_LocalAddress [Sun 12 Apr 2020 15:17:25 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Check for domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:25 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Check for domain='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:25 AEST] d [Sun 12 Apr 2020 15:17:25 AEST] '/var/www/html/mysite1' does not contain 'apache' [Sun 12 Apr 2020 15:17:25 AEST] _saved_account_key_hash='AlbOCKmizF4mvi0vcjf2SJ6BZWMj8STPup+G8pm/3PQ=' [Sun 12 Apr 2020 15:17:25 AEST] _saved_account_key_hash is not changed, skip register account. [Sun 12 Apr 2020 15:17:25 AEST] Read key length: [Sun 12 Apr 2020 15:17:25 AEST] _createcsr [Sun 12 Apr 2020 15:17:25 AEST] domain='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] domainlist='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] csrkey='/home/development/.acme.sh/mysite1.com/mysite1.com.key' [Sun 12 Apr 2020 15:17:25 AEST] csr='/home/development/.acme.sh/mysite1.com/mysite1.com.csr' [Sun 12 Apr 2020 15:17:25 AEST] csrconf='/home/development/.acme.sh/mysite1.com/mysite1.com.csr.conf' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] domainlist='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] Multi domain='DNS:mysite1.com,DNS:www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] _csr_cn='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] Getting domain auth token for each domain [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:25 AEST] _idn_temp [Sun 12 Apr 2020 15:17:25 AEST] d [Sun 12 Apr 2020 15:17:25 AEST] _identifiers='{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}' [Sun 12 Apr 2020 15:17:25 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:25 AEST] payload='{"identifiers": [{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}]}' [Sun 12 Apr 2020 15:17:25 AEST] RSA key [Sun 12 Apr 2020 15:17:25 AEST] Get nonce with HEAD. ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] HEAD [Sun 12 Apr 2020 15:17:25 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:17:25 AEST] body [Sun 12 Apr 2020 15:17:25 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:25 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g -I ' [Sun 12 Apr 2020 15:17:26 AEST] _ret='0' [Sun 12 Apr 2020 15:17:26 AEST] _headers='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:26 GMT cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:26 AEST] _CACHED_NONCE='0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0' [Sun 12 Apr 2020 15:17:26 AEST] nonce='0002NuwXhjmhgz5FMrGRkNxAfhBp8iJ-RS3xkypm29KX6q0' [Sun 12 Apr 2020 15:17:26 AEST] POST [Sun 12 Apr 2020 15:17:26 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:17:26 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyTnV3WGhqbWhnejVGTXJHUmtOeEFmaEJwOGlKLVJTM3hreXBtMjlLWDZxMCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9uZXctb3JkZXIiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "eyJpZGVudGlmaWVycyI6IFt7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6ImVzY29ydGFkZGljdGlvbi5sb3ZlIn0seyJ0eXBlIjoiZG5zIiwidmFsdWUiOiJ3d3cuZXNjb3J0YWRkaWN0aW9uLmxvdmUifV19", "signature": "og6FP2q4DLr9YX0btxa8Tt7UHoF1Lkrdg6duQqIPQQyQ4sIkthfTCesXk7or0wGTY1j5V3Dt5QlrPFkcq-7dQ6nsJvlF3R-xrseKfGQMK6glwCM6-FlGu_m4F7Sx1xj-WTn1h3_D5o6aiVywbYFzmP5RSGDlS8gJRFNc8Y4SHOPIZ0fHKgU6HhAzUjkdLy0b8209wHkAe2I_C7QOAxbeQ_lOukyRSYLEoxA0SCkUg_K3gKebcTmuVVlrOrxtT1iZykvH13PTPTrxRA3P06X-wOHCgjs6f7aLsS2arQNXUezPo1tTEP3bUu1bU8GXz2UHabxLwzVE9ywxaxXpW34fCA"}' [Sun 12 Apr 2020 15:17:26 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:26 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:26 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:27 AEST] _ret='0' [Sun 12 Apr 2020 15:17:27 AEST] responseHeaders='HTTP/2 201 server: nginx date: Sun, 12 Apr 2020 05:17:27 GMT content-type: application/json content-length: 513 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" location: https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84558747 replay-nonce: 0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:27 AEST] code='201' [Sun 12 Apr 2020 15:17:27 AEST] original='{ "status": "pending", "expires": "2020-04-19T05:17:27.007271354Z", "identifiers": [ { "type": "dns", "value": "mysite1.com" }, { "type": "dns", "value": "www.mysite1.com" } ], "authorizations": [ "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356", "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357" ], "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747" }' [Sun 12 Apr 2020 15:17:27 AEST] response='{"status":"pending","expires":"2020-04-19T05:17:27.007271354Z","identifiers":[{"type":"dns","value":"mysite1.com"},{"type":"dns","value":"www.mysite1.com"}],"authorizations":["https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356","https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357"],"finalize":"https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747"}' [Sun 12 Apr 2020 15:17:27 AEST] Le_LinkOrder='https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84558747' [Sun 12 Apr 2020 15:17:27 AEST] Le_OrderFinalize='https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84558747' [Sun 12 Apr 2020 15:17:27 AEST] _authorizations_seg='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356,https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:27 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] payload [Sun 12 Apr 2020 15:17:27 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:27 AEST] Use _CACHED_NONCE='0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU' [Sun 12 Apr 2020 15:17:27 AEST] nonce='0001mN9XsDZxgEeSlG5Y3ANk1POAKTKLQsAeWoFLkvlISQU' [Sun 12 Apr 2020 15:17:27 AEST] POST [Sun 12 Apr 2020 15:17:27 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356' [Sun 12 Apr 2020 15:17:27 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxbU45WHNEWnhnRWVTbEc1WTNBTmsxUE9BS1RLTFFzQWVXb0ZMa3ZsSVNRVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNTM1NiIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "dZTfsh3ZPcmTYSOSEAUHWBVyYLH59b4AaHGBp4ZYeXLvSorIXQ7-1oMhHLoPofMOjOP88VZW-e3WhXY0XFQxwh41ps5ozyEPzRMP3y-5iPh7Dl8zVBQNJD6OKIchYhJUmurT2yaJoeSRQHgXskiHuPFKWUOc886itWrSaJtz3T_APByYlRX3jUldeCLRXW32CIZVQUFsW6igrWP0cnt_66fL3TlF_to5NaGc8zpOOoAuORMtguCVXwQXKqCE5rL0YMfrobNwQchjmSjtjshuxs1wiBoFaZO_bWRparuJMohy6z9blSfJKuhUmBzEkA7oSShGwG9oLObM_O8qeKyhgg"}' [Sun 12 Apr 2020 15:17:27 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:27 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:27 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:28 AEST] _ret='0' [Sun 12 Apr 2020 15:17:28 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:28 GMT content-type: application/json content-length: 816 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:28 AEST] code='200' [Sun 12 Apr 2020 15:17:28 AEST] original='{ "identifier": { "type": "dns", "value": "mysite1.com" }, "status": "pending", "expires": "2020-04-19T05:17:27Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" } ] }' [Sun 12 Apr 2020 15:17:28 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:28 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:28 AEST] _d='mysite1.com' [Sun 12 Apr 2020 15:17:28 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] payload [Sun 12 Apr 2020 15:17:28 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:28 AEST] Use _CACHED_NONCE='0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4' [Sun 12 Apr 2020 15:17:28 AEST] nonce='0002XQBULLzUQwWbHuEVKn22yVhKVnYMoKAJFrLZNKewWn4' [Sun 12 Apr 2020 15:17:28 AEST] POST [Sun 12 Apr 2020 15:17:28 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357' [Sun 12 Apr 2020 15:17:28 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyWFFCVUxMelVRd1diSHVFVktuMjJ5VmhLVm5ZTW9LQUpGckxaTktld1duNCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNTM1NyIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "PRQSf1F14LbD29ua0F1fCWfJssjvxTfzNzdxkGFMtYXKcbYejiPGAbZn5bcoCVvlm823kZlSib0hz8TlhhHOaQH__IKXuuMmYQkS4vNFUltgsZqv_oT_Vad0DwdOP_urEj5zd8MnaSGFSt_2HhLnPjWcJ81pZeTwILHE6PVSy_dvC9rrOTbk3C6skRWkzUdiUfApURzdCVTBjlg5BfXGtKsx_1j3xV2y7jXsSpRz3GlExvE54vjDLY3u7UN6QS9kxTMgbOsD7DI1Qwm3gHmmAMsVm4z49JB9R0Zihb9SwZDSdqKvw5f71qNpKi62_mfsyYmcxmfWYchUrmIQtBG91w"}' [Sun 12 Apr 2020 15:17:28 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:28 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:28 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:29 AEST] _ret='0' [Sun 12 Apr 2020 15:17:29 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:28 GMT content-type: application/json content-length: 820 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:29 AEST] code='200' [Sun 12 Apr 2020 15:17:29 AEST] original='{ "identifier": { "type": "dns", "value": "www.mysite1.com" }, "status": "pending", "expires": "2020-04-19T05:17:27Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" } ] }' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] _d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _authorizations_map='www.mysite1.com,{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]} mysite1.com,{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]} ' [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] Getting webroot for domain='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _w='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _is_idn_d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _idn_temp [Sun 12 Apr 2020 15:17:29 AEST] _candindates='mysite1.com,{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vGT-EQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/vjKT7A","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}]}' [Sun 12 Apr 2020 15:17:29 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"' [Sun 12 Apr 2020 15:17:29 AEST] token='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] dvlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] Getting webroot for domain='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _w='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] _is_idn_d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] _idn_temp [Sun 12 Apr 2020 15:17:29 AEST] _candindates='www.mysite1.com,{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] response='{"identifier":{"type":"dns","value":"www.mysite1.com"},"status":"pending","expires":"2020-04-19T05:17:27Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/Rh2RAA","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/6-2evg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}]}' [Sun 12 Apr 2020 15:17:29 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"' [Sun 12 Apr 2020 15:17:29 AEST] token='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] dvlist='www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] d [Sun 12 Apr 2020 15:17:29 AEST] vlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1,www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1,' [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] d='www.mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] ok, let's start to verify [Sun 12 Apr 2020 15:17:29 AEST] Verifying: mysite1.com [Sun 12 Apr 2020 15:17:29 AEST] d='mysite1.com' [Sun 12 Apr 2020 15:17:29 AEST] keyauthorization='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] _currentRoot='/var/www/html/mysite1' [Sun 12 Apr 2020 15:17:29 AEST] wellknown_path='/var/www/html/mysite1/.well-known/acme-challenge' [Sun 12 Apr 2020 15:17:29 AEST] writing token:WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 to /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 mkdir: cannot create directory ‘/var/www/html/mysite1/.well-known’: Permission denied /home/development/.acme.sh/acme.sh: line 4384: /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50: No such file or directory [Sun 12 Apr 2020 15:17:29 AEST] mysite1.com:Can not write token to file : /var/www/html/mysite1/.well-known/acme-challenge/WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50 [Sun 12 Apr 2020 15:17:29 AEST] Debugging, skip removing: /var/www/html/mysite1/.well-known [Sun 12 Apr 2020 15:17:29 AEST] pid [Sun 12 Apr 2020 15:17:29 AEST] No need to restore nginx, skip. [Sun 12 Apr 2020 15:17:29 AEST] _clearupdns [Sun 12 Apr 2020 15:17:29 AEST] dns_entries [Sun 12 Apr 2020 15:17:29 AEST] skip dns. [Sun 12 Apr 2020 15:17:29 AEST] _on_issue_err [Sun 12 Apr 2020 15:17:29 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log [Sun 12 Apr 2020 15:17:29 AEST] _chk_vlist='mysite1.com#WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ#http-01#/var/www/html/mysite1,www.mysite1.com#vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg#http-01#/var/www/html/mysite1,' [Sun 12 Apr 2020 15:17:29 AEST] start to deactivate authz [Sun 12 Apr 2020 15:17:29 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:17:29 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] _t_key_authz='WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:29 AEST] _t_vtype [Sun 12 Apr 2020 15:17:29 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] payload='{}' [Sun 12 Apr 2020 15:17:29 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:29 AEST] Use _CACHED_NONCE='0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU' [Sun 12 Apr 2020 15:17:29 AEST] nonce='0001ppgZcCLMyOWhCaGH_H35fttVRHVR7N5R-CBp6KlysbU' [Sun 12 Apr 2020 15:17:29 AEST] POST [Sun 12 Apr 2020 15:17:29 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ' [Sun 12 Apr 2020 15:17:29 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxcHBnWmNDTE15T1doQ2FHSF9IMzVmdHRWUkhWUjdONVItQ0JwNktseXNiVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNTM1Ni9fUHprelEiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "Y2N-LSrWt63sqXGi4iZSuj3pSZXlcwppF6mH8sWCenjsOgXr6yPcyeWrEjmw-Wh9RvNSvNoptC6qZVrISfts5eecQM-r3y7TkHZsZFYwuWjX0ksE0IXDO77ZHZZrE39FuvWA_4yGRjX0-en8-5-LL48izRqVnbpYu40JtOJrt5fYkCsrynIXU2BqrlEge4PVgqWL-ZrxO0NkkpXOdWDwJenIQXYvFfOHOEYj4AHf8ldD35_tRbcsMcA-eTcKY2ruP1zmlh8v8RMP59YP5IuPWGIwWxDmIY-TrwshkisMSgqee8dHyARXm9pa7Hwrmame3z7F-Hz0dkfbV5NVyfOFSQ"}' [Sun 12 Apr 2020 15:17:29 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:29 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:29 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:30 AEST] _ret='0' [Sun 12 Apr 2020 15:17:30 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:30 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805356;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ replay-nonce: 0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:30 AEST] code='200' [Sun 12 Apr 2020 15:17:30 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ", "token": "WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50" }' [Sun 12 Apr 2020 15:17:30 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805356/_PzkzQ","token":"WPI9VAMjEHioOtoOW18JDF2tj_GjG4MIzCdSmTUXL50"}' [Sun 12 Apr 2020 15:17:30 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:17:30 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] _t_key_authz='vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:17:30 AEST] _t_vtype [Sun 12 Apr 2020 15:17:30 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] payload='{}' [Sun 12 Apr 2020 15:17:30 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:17:30 AEST] Use _CACHED_NONCE='0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU' [Sun 12 Apr 2020 15:17:30 AEST] nonce='0001C4LU8IQK-yPS-Lku_h8lP813VkE-fmiFUj6CHbbTPNU' [Sun 12 Apr 2020 15:17:30 AEST] POST [Sun 12 Apr 2020 15:17:30 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg' [Sun 12 Apr 2020 15:17:30 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxQzRMVThJUUsteVBTLUxrdV9oOGxQODEzVmtFLWZtaUZVajZDSGJiVFBOVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNTM1Ny96RUMzRmciLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "OtWQ5lbEDRSFmwxPKEnJ5rKmZeSKuVgNtwqkZXa7I3mb7tN65nijUAVS9oAPznEZgvGnesDize2wR6Wr7LT9U005AtnN8znPjarTdq6rtWV3JhUJNi2li-MWhaMDzq9v3kpNsXj7ecncxvavjSSdX4OC21zU5eVksLAEgWEgTN4rmM7cGhnP75S9Cq_NnyTF80-H-75nzDD-bqAD-eCe_N0F86b1AaytVF7TXlSq9YAWUuOIoF0R5DKCatSzo5eCRD9A_Y-XRcwgxYcu-Nhq1ZQrZU6-8OdjAmoC6gn4g3pq9IUsLf2Dq2HMP9GVY0ufitWITLhR9oum_YhKx7bLuA"}' [Sun 12 Apr 2020 15:17:30 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:17:30 AEST] Http already initialized. [Sun 12 Apr 2020 15:17:30 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.Es0rBFHwdc -g ' [Sun 12 Apr 2020 15:17:31 AEST] _ret='0' [Sun 12 Apr 2020 15:17:31 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:17:31 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48805357;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg replay-nonce: 00013TP0AsfMobKj3aoD7IETewFSVMwMKInimYyRTzNLgbA x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:17:31 AEST] code='200' [Sun 12 Apr 2020 15:17:31 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg", "token": "vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI" }' [Sun 12 Apr 2020 15:17:31 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48805357/zEC3Fg","token":"vf40LYwrJW9o2Zvr4qGMozcgwH0Rj1ILTHrkQchNZRI"}' [Sun 12 Apr 2020 15:17:31 AEST] Diagnosis versions: openssl:openssl OpenSSL 1.1.1f 31 Mar 2020 apache: apache doesn't exists. nginx: nginx doesn't exists. socat: socat by Gerhard Rieger and contributors - see www.dest-unreach.org socat version 1.7.3.4 on Jan 6 2020 16:58:19 running on Linux version #1 SMP Thu Apr 2 16:49:00 PDT 2020, release 5.5.15-930.native, machine x86_64 features:

define WITH_STDIO 1

define WITH_FDNUM 1

define WITH_FILE 1

define WITH_CREAT 1

define WITH_GOPEN 1

define WITH_TERMIOS 1

define WITH_PIPE 1

define WITH_UNIX 1

define WITH_ABSTRACT_UNIXSOCKET 1

define WITH_IP4 1

define WITH_IP6 1

define WITH_RAWIP 1

define WITH_GENERICSOCKET 1

define WITH_INTERFACE 1

define WITH_TCP 1

define WITH_UDP 1

define WITH_SCTP 1

define WITH_LISTEN 1

define WITH_SOCKS4 1

define WITH_SOCKS4A 1

define WITH_PROXY 1

define WITH_SYSTEM 1

define WITH_EXEC 1

undef WITH_READLINE

define WITH_TUN 1

define WITH_PTY 1

define WITH_OPENSSL 1

undef WITH_FIPS

undef WITH_LIBWRAP

define WITH_SYCLS 1

define WITH_FILAN 1

define WITH_RETRY 1

define WITH_MSGLEVEL 0 /debug/

ketonik commented 4 years ago

Noticed cannot wrtie no permission on site1.com

So i run for site2

acme.sh --test --issue -d mysite2.com -d www.mysite2.com -w /var/www/html/mysite2 --debug 2

[Sun 12 Apr 2020 15:33:04 AEST] Lets find script dir. [Sun 12 Apr 2020 15:33:04 AEST] SCRIPT='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] _script='/home/development/.acme.sh/acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] _script_home='/home/development/.acme.sh' [Sun 12 Apr 2020 15:33:04 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:33:04 AEST] LE_WORKING_DIR='/home/development/.acme.sh' https://github.com/acmesh-official/acme.sh v2.8.6 [Sun 12 Apr 2020 15:33:04 AEST] Running cmd: issue [Sun 12 Apr 2020 15:33:04 AEST] _main_domain='mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] _alt_domains='www.mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] Using config home:/home/development/.acme.sh [Sun 12 Apr 2020 15:33:04 AEST] Using stage ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] ACME_DIRECTORY='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:33:04 AEST] _ACME_SERVER_HOST='acme-staging-v02.api.letsencrypt.org' [Sun 12 Apr 2020 15:33:04 AEST] DOMAIN_PATH='/home/development/.acme.sh/mysite2.com' [Sun 12 Apr 2020 15:33:04 AEST] '/var/www/html/mysite2' does not contain 'dns' [Sun 12 Apr 2020 15:33:04 AEST] Using ACME_DIRECTORY: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] _init api for server: https://acme-staging-v02.api.letsencrypt.org/directory [Sun 12 Apr 2020 15:33:04 AEST] GET [Sun 12 Apr 2020 15:33:04 AEST] url='https://acme-staging-v02.api.letsencrypt.org/directory' [Sun 12 Apr 2020 15:33:04 AEST] timeout= [Sun 12 Apr 2020 15:33:04 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.IXCjIq38gn -g ' [Sun 12 Apr 2020 15:33:05 AEST] ret='0' [Sun 12 Apr 2020 15:33:05 AEST] response='{ "_2JsbPyvLlI": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417", "keyChange": "https://acme-staging-v02.api.letsencrypt.org/acme/key-change", "meta": { "caaIdentities": [ "letsencrypt.org" ], "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf", "website": "https://letsencrypt.org/docs/staging-environment/" }, "newAccount": "https://acme-staging-v02.api.letsencrypt.org/acme/new-acct", "newNonce": "https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce", "newOrder": "https://acme-staging-v02.api.letsencrypt.org/acme/new-order", "revokeCert": "https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert" }' [Sun 12 Apr 2020 15:33:05 AEST] ACME_KEY_CHANGE='https://acme-staging-v02.api.letsencrypt.org/acme/key-change' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_AUTHZ [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_ORDER='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_ACCOUNT='https://acme-staging-v02.api.letsencrypt.org/acme/new-acct' [Sun 12 Apr 2020 15:33:05 AEST] ACME_REVOKE_CERT='https://acme-staging-v02.api.letsencrypt.org/acme/revoke-cert' [Sun 12 Apr 2020 15:33:05 AEST] ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf' [Sun 12 Apr 2020 15:33:05 AEST] ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:05 AEST] ACME_VERSION='2' [Sun 12 Apr 2020 15:33:05 AEST] Le_NextRenewTime [Sun 12 Apr 2020 15:33:05 AEST] _on_before_issue [Sun 12 Apr 2020 15:33:05 AEST] _chk_main_domain='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _chk_alt_domains='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] '/var/www/html/mysite2' does not contain 'no' [Sun 12 Apr 2020 15:33:05 AEST] Le_LocalAddress [Sun 12 Apr 2020 15:33:05 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] Check for domain='mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:05 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] Check for domain='www.mysite2.com' [Sun 12 Apr 2020 15:33:05 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:05 AEST] d [Sun 12 Apr 2020 15:33:06 AEST] '/var/www/html/mysite2' does not contain 'apache' [Sun 12 Apr 2020 15:33:06 AEST] _saved_account_key_hash='AlbOCKmizF4mvi0vcjf2SJ6BZWMj8STPup+G8pm/3PQ=' [Sun 12 Apr 2020 15:33:06 AEST] _saved_account_key_hash is not changed, skip register account. [Sun 12 Apr 2020 15:33:06 AEST] Read key length: [Sun 12 Apr 2020 15:33:06 AEST] _createcsr [Sun 12 Apr 2020 15:33:06 AEST] domain='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] domainlist='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] csrkey='/home/development/.acme.sh/mysite2.com/mysite2.com.key' [Sun 12 Apr 2020 15:33:06 AEST] csr='/home/development/.acme.sh/mysite2.com/mysite2.com.csr' [Sun 12 Apr 2020 15:33:06 AEST] csrconf='/home/development/.acme.sh/mysite2.com/mysite2.com.csr.conf' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] domainlist='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] Multi domain='DNS:mysite2.com,DNS:www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] _csr_cn='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] Getting domain auth token for each domain [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:06 AEST] _idn_temp [Sun 12 Apr 2020 15:33:06 AEST] d [Sun 12 Apr 2020 15:33:06 AEST] _identifiers='{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}' [Sun 12 Apr 2020 15:33:06 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:06 AEST] payload='{"identifiers": [{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}]}' [Sun 12 Apr 2020 15:33:06 AEST] RSA key [Sun 12 Apr 2020 15:33:06 AEST] Get nonce with HEAD. ACME_NEW_NONCE='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:06 AEST] HEAD [Sun 12 Apr 2020 15:33:06 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-nonce' [Sun 12 Apr 2020 15:33:06 AEST] body [Sun 12 Apr 2020 15:33:06 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:06 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g -I ' [Sun 12 Apr 2020 15:33:06 AEST] _ret='0' [Sun 12 Apr 2020 15:33:06 AEST] _headers='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:06 GMT cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:06 AEST] _CACHED_NONCE='00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs' [Sun 12 Apr 2020 15:33:06 AEST] nonce='00026bG0_t0zZiX672kOayIxe5A3GkrOXLgHm9lLL2iFjVs' [Sun 12 Apr 2020 15:33:06 AEST] POST [Sun 12 Apr 2020 15:33:06 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/new-order' [Sun 12 Apr 2020 15:33:06 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyNmJHMF90MHpaaVg2NzJrT2F5SXhlNUEzR2tyT1hMZ0htOWxMTDJpRmpWcyIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9uZXctb3JkZXIiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "eyJpZGVudGlmaWVycyI6IFt7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6ImNyYWNraGVyLmxvdmUifSx7InR5cGUiOiJkbnMiLCJ2YWx1ZSI6Ind3dy5jcmFja2hlci5sb3ZlIn1dfQ", "signature": "AsTUpfozuGnq4tbkPh3y7MQLttBsPgqDSJcX4uA3hO68QhkJJJJ2dbheuu_anOl0959luJWYMyrvh17zw2HY3fxcBMoHZ2rUPkGExAFdLHPkTf8CDcNSAytQrlDzOrbIO_dfGrQtCpWOZiea0CaISXS28OOi4gkG-3FoVzrkDtsyRQY3beQhxF3J_7ar5vjLWNN-mgMVCQOAEZ67wLKHrAG-NEO8BoQqxOFQERliJuo1Kfk-CovaKlznUM5PvX_j6zTDVRSdMADVR7JbEl2PSBa0jjAzuXBRUUF1PJFxoObWaUjlzj6jH2FntRVsc_vPiZxepDafv4nGvH8-Ew7sZA"}' [Sun 12 Apr 2020 15:33:06 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:06 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:06 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:07 AEST] _ret='0' [Sun 12 Apr 2020 15:33:07 AEST] responseHeaders='HTTP/2 201 server: nginx date: Sun, 12 Apr 2020 05:33:07 GMT content-type: application/json content-length: 499 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" location: https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84560243 replay-nonce: 00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:07 AEST] code='201' [Sun 12 Apr 2020 15:33:07 AEST] original='{ "status": "pending", "expires": "2020-04-19T05:33:07.659443466Z", "identifiers": [ { "type": "dns", "value": "mysite2.com" }, { "type": "dns", "value": "www.mysite2.com" } ], "authorizations": [ "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944", "https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945" ], "finalize": "https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243" }' [Sun 12 Apr 2020 15:33:07 AEST] response='{"status":"pending","expires":"2020-04-19T05:33:07.659443466Z","identifiers":[{"type":"dns","value":"mysite2.com"},{"type":"dns","value":"www.mysite2.com"}],"authorizations":["https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944","https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945"],"finalize":"https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243"}' [Sun 12 Apr 2020 15:33:07 AEST] Le_LinkOrder='https://acme-staging-v02.api.letsencrypt.org/acme/order/13117284/84560243' [Sun 12 Apr 2020 15:33:07 AEST] Le_OrderFinalize='https://acme-staging-v02.api.letsencrypt.org/acme/finalize/13117284/84560243' [Sun 12 Apr 2020 15:33:07 AEST] _authorizations_seg='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944,https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:07 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] payload [Sun 12 Apr 2020 15:33:07 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:07 AEST] Use _CACHED_NONCE='00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI' [Sun 12 Apr 2020 15:33:07 AEST] nonce='00017dv6by_WVH9_NWCwKdTFcFJ9FRofy-wlmmzHevytwGI' [Sun 12 Apr 2020 15:33:07 AEST] POST [Sun 12 Apr 2020 15:33:07 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944' [Sun 12 Apr 2020 15:33:07 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxN2R2NmJ5X1dWSDlfTldDd0tkVEZjRko5RlJvZnktd2xtbXpIZXZ5dHdHSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNjk0NCIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "Lg9UIt24Edbj6XDRENz1xXk7x1C_s-b3559BXqjTW5XxepOH8CsbURyddOCoWGCHB0gA0dqqaL5c_tVEwjv-GAmwWzoRkdDBFIiF4lksHOJ4_ks1S8fGwCj1Boyw0i53gbhOnBoucuyhQ8hp70PoWZ3a3fTM7DHeRgyBLJlN1jnr5-GyNQ7nSKjOjyhmspfdoXA-uGJ-XuY80vZ7K8qVb8UBEwbbdMdz8nLKkK-ZoJS9N0CV7DKhRqauYoOPpTHxnVQjqlUfwU6GIkdwBq1ikcTjTsPISg5rkdfUT0784yx6WdKWe_rvRIyw7FKVILvGnR4_kuDkzr2IN337dpKQrw"}' [Sun 12 Apr 2020 15:33:07 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:07 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:07 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:08 AEST] _ret='0' [Sun 12 Apr 2020 15:33:08 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:08 GMT content-type: application/json content-length: 809 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4 x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:08 AEST] code='200' [Sun 12 Apr 2020 15:33:08 AEST] original='{ "identifier": { "type": "dns", "value": "mysite2.com" }, "status": "pending", "expires": "2020-04-19T05:33:07Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" } ] }' [Sun 12 Apr 2020 15:33:08 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:08 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:08 AEST] _d='mysite2.com' [Sun 12 Apr 2020 15:33:08 AEST] _authz_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] payload [Sun 12 Apr 2020 15:33:08 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:08 AEST] Use _CACHED_NONCE='0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4' [Sun 12 Apr 2020 15:33:08 AEST] nonce='0001mfYGCsdLd93YsnKil6WvxOXRorGxGBcUhrFnTtM-pt4' [Sun 12 Apr 2020 15:33:08 AEST] POST [Sun 12 Apr 2020 15:33:08 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945' [Sun 12 Apr 2020 15:33:08 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxbWZZR0NzZExkOTNZc25LaWw2V3Z4T1hSb3JHeEdCY1VockZuVHRNLXB0NCIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hdXRoei12My80ODgwNjk0NSIsICJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS1zdGFnaW5nLXYwMi5hcGkubGV0c2VuY3J5cHQub3JnL2FjbWUvYWNjdC8xMzExNzI4NCJ9", "payload": "", "signature": "ROrCqhihjfJtIT2eHgXGJKOHSl-23LkoPqFOwAAEYPkBZ1nkxVlNlv6-pRagv4z5o5hfgTlnstytV9eoewek07beHP3FjU4swIk2ETm8cEnzoLC5WOvknRcvaJcRBJ6p3yH9K4uiZAj9X5o1x_5QuB9MRDdxh2o1sVnGQG9T8d6vy_nEGHr5C4wdyIyaNH0sxkNcKwswZTJvwJGLbezUloFXTM2zK-eeTgjO5W0dUQYHcgT-qNWFtUfLHZPTW-qz8o2Axzx0QIsKcv8olXGcFn5jTtqTLNGnuQOTo1NhVx-OtC96azYcx2lNhis0sOY5L1aX6Y4VMTU91Cfhl3TkmA"}' [Sun 12 Apr 2020 15:33:08 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:08 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:08 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:09 AEST] _ret='0' [Sun 12 Apr 2020 15:33:09 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:09 GMT content-type: application/json content-length: 813 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:09 AEST] code='200' [Sun 12 Apr 2020 15:33:09 AEST] original='{ "identifier": { "type": "dns", "value": "www.mysite2.com" }, "status": "pending", "expires": "2020-04-19T05:33:07Z", "challenges": [ { "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }, { "type": "dns-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }, { "type": "tls-alpn-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" } ] }' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] _d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _authorizations_map='www.mysite2.com,{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]} mysite2.com,{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]} ' [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] Getting webroot for domain='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _w='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _is_idn_d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _idn_temp [Sun 12 Apr 2020 15:33:09 AEST] _candindates='mysite2.com,{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/w-ZSqQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/t6ZFpQ","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}]}' [Sun 12 Apr 2020 15:33:09 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"' [Sun 12 Apr 2020 15:33:09 AEST] token='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] dvlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] Getting webroot for domain='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _w='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] _is_idn_d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] _idn_temp [Sun 12 Apr 2020 15:33:09 AEST] _candindates='www.mysite2.com,{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] response='{"identifier":{"type":"dns","value":"www.mysite2.com"},"status":"pending","expires":"2020-04-19T05:33:07Z","challenges":[{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"dns-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/t7W6wg","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"},{"type":"tls-alpn-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/S_G3cA","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}]}' [Sun 12 Apr 2020 15:33:09 AEST] entry='"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"' [Sun 12 Apr 2020 15:33:09 AEST] token='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] dvlist='www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] d [Sun 12 Apr 2020 15:33:09 AEST] vlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2,www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2,' [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] d='www.mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] ok, let's start to verify [Sun 12 Apr 2020 15:33:09 AEST] Verifying: mysite2.com [Sun 12 Apr 2020 15:33:09 AEST] d='mysite2.com' [Sun 12 Apr 2020 15:33:09 AEST] keyauthorization='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] uri='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] _currentRoot='/var/www/html/mysite2' [Sun 12 Apr 2020 15:33:09 AEST] wellknown_path='/var/www/html/mysite2/.well-known/acme-challenge' [Sun 12 Apr 2020 15:33:09 AEST] writing token:A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY to /var/www/html/mysite2/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [Sun 12 Apr 2020 15:33:09 AEST] Changing owner/group of .well-known to development:httpDEV [Sun 12 Apr 2020 15:33:09 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:09 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] _t_key_authz='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:09 AEST] _t_vtype='http-01' [Sun 12 Apr 2020 15:33:09 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] payload='{}' [Sun 12 Apr 2020 15:33:09 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:09 AEST] Use _CACHED_NONCE='0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY' [Sun 12 Apr 2020 15:33:09 AEST] nonce='0001jubscao9m_TrnSBbSMMK6sC6_DdAOhHpO2RewoX15ZY' [Sun 12 Apr 2020 15:33:09 AEST] POST [Sun 12 Apr 2020 15:33:09 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:09 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxanVic2NhbzltX1RyblNCYlNNTUs2c0M2X0RkQU9oSHBPMlJld29YMTVaWSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "b_PvWrDunrWbBgkdzOZTqmBtajsjfhH2cXv-MXMJR1nZ1mqD8j-s_rbEQr6Pnear6KKCF8ePXoDQDQ07hLij1kSJU5vjXCgCCEhE7B9j13jsDa0zqaev-3CV-Hr8RxEvPFKL6cyP6Zyu5gdyGTWoi84dn8SBt907-KixclgJ18Vpz3YMD0n3Xl0JIriCIOIFQVswgdxtMQnuxwlbrY3Eds1fESQxirI4et6pY-NmKl0kJA0AcUinPpQzJuPwBJypdwBeRwX2yZlbpvZ8oCAtAfF2ZudMITPUOdALM2P5Y3hjs2KNHI4jL9QlqKFYiHgX15ZnBEu-7EqrzXPR_SoA"}' [Sun 12 Apr 2020 15:33:09 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:09 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:09 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:10 AEST] _ret='0' [Sun 12 Apr 2020 15:33:10 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:10 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A replay-nonce: 0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:10 AEST] code='200' [Sun 12 Apr 2020 15:33:10 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY" }' [Sun 12 Apr 2020 15:33:10 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY"}' [Sun 12 Apr 2020 15:33:10 AEST] trigger validation code: 200 [Sun 12 Apr 2020 15:33:10 AEST] sleep 2 secs to verify [Sun 12 Apr 2020 15:33:12 AEST] checking [Sun 12 Apr 2020 15:33:12 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:12 AEST] payload [Sun 12 Apr 2020 15:33:12 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:12 AEST] Use _CACHED_NONCE='0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ' [Sun 12 Apr 2020 15:33:12 AEST] nonce='0002piUkRTqNz1lp_Z6G1hImlv71pJ13INLsIY3ZvL-NZtQ' [Sun 12 Apr 2020 15:33:12 AEST] POST [Sun 12 Apr 2020 15:33:12 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:12 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAycGlVa1JUcU56MWxwX1o2RzFoSW1sdjcxcEoxM0lOTHNJWTNadkwtTlp0USIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "", "signature": "lmMSPndW3m3vAj_GGK3mHtrfCTvtSjg5ievbxfEtxrQ2Yj5zDnFIFA-QXkyckwS_pC-lWT74RV677z6KcHhHW-VtlDV7ipfrnJDtpQTDh8rb5Ufnh_cxHspT90pT0ojarsazCuTVwLliyHBCptSCMqhgzFBJ3pJ7Q_gRk8NjS-_28WB_X-Uwlkyq01EiBTUVYFN-eglhP4SYPpSq_0vK6iKnOQZk5fHOhDEWYoieXKjn3UMKHn7ZUrZ015DjSaSE-l1lohjE1Ajh_8mQhfCwYABkLorKaOCBhwHMWp2UYmmBtlPUD83ZvxH_G_ztacxwH10kV0CjrpXuTBvuQZlf2A"}' [Sun 12 Apr 2020 15:33:12 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:12 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:12 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:13 AEST] _ret='0' [Sun 12 Apr 2020 15:33:13 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:13 GMT content-type: application/json content-length: 1285 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806944;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A replay-nonce: 00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:13 AEST] code='200' [Sun 12 Apr 2020 15:33:13 AEST] original='{ "type": "http-01", "status": "invalid", "error": { "type": "urn:ietf:params:acme:error:unauthorized", "detail": "Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"", "status": 403 }, "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A", "token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "validationRecord": [ { "url": "http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "hostname": "mysite2.com", "port": "80", "addressesResolved": [ "45.248.76.147" ], "addressUsed": "45.248.76.147" }, { "url": "https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY", "hostname": "mysite2.com", "port": "443", "addressesResolved": [ "45.248.76.147" ], "addressUsed": "45.248.76.147" } ] }' [Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}' [Sun 12 Apr 2020 15:33:13 AEST] original='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}' [Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: \"\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce\"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'

[Sun 12 Apr 2020 15:33:13 AEST] mysite2.com:Verify error:Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: [Sun 12 Apr 2020 15:33:13 AEST] Debug: get token url. [Sun 12 Apr 2020 15:33:13 AEST] GET [Sun 12 Apr 2020 15:33:13 AEST] url='http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY' [Sun 12 Apr 2020 15:33:13 AEST] timeout=1 [Sun 12 Apr 2020 15:33:13 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:13 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g --connect-timeout 1' [Sun 12 Apr 2020 15:33:14 AEST] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 28 [Sun 12 Apr 2020 15:33:14 AEST] Here is the curl dump log: [Sun 12 Apr 2020 15:33:14 AEST] == Info: Resolving timed out after 1000 milliseconds == Info: Closing connection 0 [Sun 12 Apr 2020 15:33:14 AEST] ret='28' [Sun 12 Apr 2020 15:33:14 AEST] Debugging, skip removing: /var/www/html/mysite2/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [Sun 12 Apr 2020 15:33:14 AEST] pid [Sun 12 Apr 2020 15:33:14 AEST] No need to restore nginx, skip. [Sun 12 Apr 2020 15:33:14 AEST] _clearupdns [Sun 12 Apr 2020 15:33:14 AEST] dns_entries [Sun 12 Apr 2020 15:33:14 AEST] skip dns. [Sun 12 Apr 2020 15:33:14 AEST] _on_issue_err [Sun 12 Apr 2020 15:33:14 AEST] Please check log file for more details: /home/development/.acme.sh/acme.sh.log [Sun 12 Apr 2020 15:33:14 AEST] _chk_vlist='mysite2.com#A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A#http-01#/var/www/html/mysite2,www.mysite2.com#ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I#https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw#http-01#/var/www/html/mysite2,' [Sun 12 Apr 2020 15:33:14 AEST] start to deactivate authz [Sun 12 Apr 2020 15:33:14 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:14 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] _t_key_authz='A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:14 AEST] _t_vtype [Sun 12 Apr 2020 15:33:14 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] payload='{}' [Sun 12 Apr 2020 15:33:14 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:14 AEST] Use _CACHED_NONCE='00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU' [Sun 12 Apr 2020 15:33:14 AEST] nonce='00029IAZdRtcoVS23DtrASlypQ1F9KJzBOB0rZe9Ic31ccU' [Sun 12 Apr 2020 15:33:14 AEST] POST [Sun 12 Apr 2020 15:33:14 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A' [Sun 12 Apr 2020 15:33:14 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAyOUlBWmRSdGNvVlMyM0R0ckFTbHlwUTFGOUtKekJPQjByWmU5SWMzMWNjVSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NC9XNmpuX0EiLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "FwulNcpm81q0rX0ACB-X_Z7rweVFx1qz-ag1FcmIYI28F1oR1Td88XejPbqH6EvdRzkAYaCTCcPqBI03qaa0p9Taj7AcA6y8FZTBVZx5EnSBoq1c8HVnmUbObb211F0dqjAe96GVJGVVV1YNehapdKnfbzptB8JAbLz6c0UtFddUVRTckziqmQYUEvJxoPR_SEc5QaX69hJVR1oG9n56vQ5mIfDkfxgGBoD0d2pdQOHQ-W_oVl8eZmQvm7Vt_F9MIAVk4yCI7h1ghQhF0EOnDzko9T4nGbnXMlMpmNYvZvhQblI2aWsyQ89hehjAjymJel5p5CUcDYpYMaB00Xi79Q"}' [Sun 12 Apr 2020 15:33:14 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:14 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:14 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:15 AEST] _ret='0' [Sun 12 Apr 2020 15:33:15 AEST] responseHeaders='HTTP/2 400 server: nginx date: Sun, 12 Apr 2020 05:33:15 GMT content-type: application/problem+json content-length: 144 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" replay-nonce: 0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII ' [Sun 12 Apr 2020 15:33:15 AEST] code='400' [Sun 12 Apr 2020 15:33:15 AEST] original='{ "type": "urn:ietf:params:acme:error:malformed", "detail": "Unable to update challenge :: authorization must be pending", "status": 400 }' [Sun 12 Apr 2020 15:33:15 AEST] response='{ "type": "urn:ietf:params:acme:error:malformed", "detail": "Unable to update challenge :: authorization must be pending", "status": 400 }' [Sun 12 Apr 2020 15:33:15 AEST] Trigger domain validation. [Sun 12 Apr 2020 15:33:15 AEST] _t_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] _t_key_authz='ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU.vzrchBMrbIHKGczvUWZBNsnIw5bqeo1--IL1Wi7vi7I' [Sun 12 Apr 2020 15:33:15 AEST] _t_vtype [Sun 12 Apr 2020 15:33:15 AEST] url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] payload='{}' [Sun 12 Apr 2020 15:33:15 AEST] Use cached jwk for file: /home/development/.acme.sh/ca/acme-staging-v02.api.letsencrypt.org/account.key [Sun 12 Apr 2020 15:33:15 AEST] Use _CACHED_NONCE='0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII' [Sun 12 Apr 2020 15:33:15 AEST] nonce='0001XeWkv5PMrsHJRxvpXmwXbZtvShd1AtqOSJFdbh7WqII' [Sun 12 Apr 2020 15:33:15 AEST] POST [Sun 12 Apr 2020 15:33:15 AEST] _post_url='https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw' [Sun 12 Apr 2020 15:33:15 AEST] body='{"protected": "eyJub25jZSI6ICIwMDAxWGVXa3Y1UE1yc0hKUnh2cFhtd1hiWnR2U2hkMUF0cU9TSkZkYmg3V3FJSSIsICJ1cmwiOiAiaHR0cHM6Ly9hY21lLXN0YWdpbmctdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9jaGFsbC12My80ODgwNjk0NS8ybXYtdXciLCAiYWxnIjogIlJTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtc3RhZ2luZy12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTMxMTcyODQifQ", "payload": "e30", "signature": "qViEt6hsMpKBL_jiCJ0PPK6YAmJLN3FoCzPQZqzByc0DfOiqiaex54hd52t3exbUzkCQt_puOpenVPKNghr0cKyGqO4LSry5RUdpopkLh3hXBfJg8ioFan3lzFQ2BJHCKoIDrQDcsDkeQvSEFB76_Isddte16pTBlgV_Cs30xUGQCcC0b3gCiTwUrruoK0bQcXJJzal7pD_xkdiZJj1hFqgHkEevSK5RHS2TSfhEbeEe3qVin9pl8n-CYap7q406hRfa-4E48NUwbNKghGd5OD7Ftpa33egbEHMlh52nGM0QLk8Kmp-HjRFt6q9ehBwHCfDGe1r33wnk7DVSxGuiBw"}' [Sun 12 Apr 2020 15:33:15 AEST] _postContentType='application/jose+json' [Sun 12 Apr 2020 15:33:15 AEST] Http already initialized. [Sun 12 Apr 2020 15:33:15 AEST] _CURL='curl -L --silent --dump-header /home/development/.acme.sh/http.header --trace-ascii /tmp/tmp.ES4rPuZh6F -g ' [Sun 12 Apr 2020 15:33:16 AEST] _ret='0' [Sun 12 Apr 2020 15:33:16 AEST] responseHeaders='HTTP/2 200 server: nginx date: Sun, 12 Apr 2020 05:33:16 GMT content-type: application/json content-length: 191 boulder-requester: 13117284 cache-control: public, max-age=0, no-cache link: https://acme-staging-v02.api.letsencrypt.org/directory;rel="index" link: https://acme-staging-v02.api.letsencrypt.org/acme/authz-v3/48806945;rel="up" location: https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw replay-nonce: 0002G8OPIVQh8UlOt7ljy9RidKglnOJXZNCk71tyx-dChQw x-frame-options: DENY strict-transport-security: max-age=604800 ' [Sun 12 Apr 2020 15:33:16 AEST] code='200' [Sun 12 Apr 2020 15:33:16 AEST] original='{ "type": "http-01", "status": "pending", "url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw", "token": "ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU" }' [Sun 12 Apr 2020 15:33:16 AEST] response='{"type":"http-01","status":"pending","url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806945/2mv-uw","token":"ia0n4vYHD8jif3Vlk0-4iuGTXxSbCjPlMjvq6G3lwRU"}' [Sun 12 Apr 2020 15:33:16 AEST] Diagnosis versions: openssl:openssl OpenSSL 1.1.1f 31 Mar 2020 apache: apache doesn't exists. nginx: nginx doesn't exists. socat: socat by Gerhard Rieger and contributors - see www.dest-unreach.org socat version 1.7.3.4 on Jan 6 2020 16:58:19 running on Linux version #1 SMP Thu Apr 2 16:49:00 PDT 2020, release 5.5.15-930.native, machine x86_64 features:

define WITH_STDIO 1

define WITH_FDNUM 1

define WITH_FILE 1

define WITH_CREAT 1

define WITH_GOPEN 1

define WITH_TERMIOS 1

define WITH_PIPE 1

define WITH_UNIX 1

define WITH_ABSTRACT_UNIXSOCKET 1

define WITH_IP4 1

define WITH_IP6 1

define WITH_RAWIP 1

define WITH_GENERICSOCKET 1

define WITH_INTERFACE 1

define WITH_TCP 1

define WITH_UDP 1

define WITH_SCTP 1

define WITH_LISTEN 1

define WITH_SOCKS4 1

define WITH_SOCKS4A 1

define WITH_PROXY 1

define WITH_SYSTEM 1

define WITH_EXEC 1

undef WITH_READLINE

define WITH_TUN 1

define WITH_PTY 1

define WITH_OPENSSL 1

undef WITH_FIPS

undef WITH_LIBWRAP

define WITH_SYCLS 1

define WITH_FILAN 1

define WITH_RETRY 1

define WITH_MSGLEVEL 0 /debug/

Neilpang commented 4 years ago
[Sun 12 Apr 2020 15:33:13 AEST] code='200'
[Sun 12 Apr 2020 15:33:13 AEST] original='{
"type": "http-01",
"status": "invalid",
"error": {
"type": "urn:ietf:params:acme:error:unauthorized",
"detail": "Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"",
"status": 403
},
"url": "https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A",
"token": "A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"validationRecord": [
{
"url": "http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"hostname": "mysite2.com",
"port": "80",
"addressesResolved": [
"45.248.76.147"
],
"addressUsed": "45.248.76.147"
},
{
"url": "https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY",
"hostname": "mysite2.com",
"port": "443",
"addressesResolved": [
"45.248.76.147"
],
"addressUsed": "45.248.76.147"
}
]
}'
[Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] original='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] response='{"type":"http-01","status":"invalid","error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: "\u003chtml\u003e\r\n\u003chead\u003e\u003ctitle\u003e403 Forbidden\u003c/title\u003e\u003c/head\u003e\r\n\u003cbody\u003e\r\n\u003ccenter\u003e\u003ch1\u003e403 Forbidden\u003c/h1\u003e\u003c/center\u003e\r\n\u003chr\u003e\u003ccenter\u003enginx/1.17.9\u003c/ce"","status": 403},"url":"https://acme-staging-v02.api.letsencrypt.org/acme/chall-v3/48806944/W6jn_A","token":"A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","validationRecord":[{"url":"http://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"80","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"},{"url":"https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY","hostname":"mysite2.com","port":"443","addressesResolved":["45.248.76.147"],"addressUsed":"45.248.76.147"}]}'
[Sun 12 Apr 2020 15:33:13 AEST] error='"error":{"type":"urn:ietf:params:acme:error:unauthorized","detail":"Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: '
[Sun 12 Apr 2020 15:33:13 AEST] errordetail='Invalid response from https://mysite2.com/.well-known/acme-challenge/A3diGbDlvmi2QnMCMXpxmw3IFG3GVvaGfZvL1MZU_rY [45.248.76.147]: '
ketonik commented 4 years ago

What does it all mean?

The websites nginx config allows only some IPs while in dev mode, so all other IP's are denied.

Does the nginx config need letsencrypt IPs to be allowed?

I see above this URL https://acme-staging-v02.api.letsencrypt.org

Neilpang commented 4 years ago

your website must be accessible from anywhere of the world.

ketonik commented 4 years ago

Neilpang, thanks, at least now I know what is going on. I'll give this a try again when the going live. thanks again

TonyGravagno commented 4 years ago

@ketonik The issue with mysite1 is that the write operation is failing due to permissions. That problem doesn't exist with site2, so something in the perms is different.

With mysite2 forbidden access, wiki instructions include something like: "On your firewall temporarily set access to port 80 to 0.0.0.0/32". acme.sh has "hooks" that can be executed before and after cert renewal. So if you can do something from the command-line to open/close access, you can execute scripts that will open/renew/close, minimizing exposure to unauthorized access.

ketonik commented 4 years ago

Tonight I may get the opportunity to open the sites to public and install webroot mode acme.sh.

Just want to confirm I have all the correct commands and in the correct order.

1 - Login as root:

Remove all LetsEncrypt Uninstall certbot bundle delete /etc/letsencrypt

2 - Advanced Installation commands:

git clone https://github.com/Neilpang/acme.sh.git

cd acme.sh

./acme.sh --install \ --home ~/myacme \ --config-home ~/myacme/data \ --cert-home /ect/nginx-mainline/ssl \ --accountemail "myemail@address.com" \ --accountkey ~/myaccount.key \ --accountconf ~/myaccount.conf \ --useragent "this is my client."

Question https://github.com/acmesh-official/acme.sh/wiki/How-to-install#4-advanced-installation Shows one big block of code. Do I select all this as one command and paste in terminal and hit enter or is it 3 different commands like I have isolated above?

Question parameter --cert-home Should this be left default as ~/mycerts

or does it have to be changed to where the nginx-mainline conf will need to look for the certs?:

/ect/nginx-mainline/ssl

or is this --cert-home function different from the --install-cert function mentioned above? --install-cert is not mentioned anywhere on advanced installation page.

Try this: Re-execute the --install-cert with these values:

--cert-file /etc/ssl/mysite.com/cert.pm --key-file /etc/ssl/mysite.com/key.pm --fullchain-file /etc/ssl/mysite.com/fullchain.pm

Then change your .conf file:

ssl_certificate /etc/ssl/mysite.com/cert.pm; ssl_certificate_key /etc/ssl/mysite.com/key.pm; ssl_trusted_certificate /etc/ssl/mysite.com/fullchain.pm;

3 - Check if .bashrc has correct alias alias ll='ls -alF' . "/root/.acme.sh/acme.sh.env"

4 - logout, close terminal window, re-login as root

5 - Adjust nginx-mainline config for each site. Add lines under SSL point to --cert-home /ect/nginx-mainline/ssl

Site1 ssl_certificate /ect/nginx-mainline/ssl/site1.com/fullchain.pem; ssl_certificate_key /ect/nginx-mainline/ssl/site1.com/privkey.pem; ssl_trusted_certificate /ect/nginx-mainline/ssl/site1.com/chain.pem;

Site2 ssl_certificate /ect/nginx-mainline/ssl/site2.com/fullchain.pem; ssl_certificate_key /ect/nginx-mainline/ssl/site2.com/privkey.pem; ssl_trusted_certificate /ect/nginx-mainline/ssl/site2.com/chain.pem;

6 - Issue Certificates Site1:

acme.sh --issue -d site1.com -d www.site1.com -d australia.site2.com -d adelaide.site1.com -w /var/www/html/site1

Issue Certificates Site2:

acme.sh --issue -d site2.com -d www.site2.com -d australia.site2.com -d adelaide.site2.com -w /var/www/html/site2

7 - Reload nginx-mainline

systemctl reload nginx-mainline

Question - Does this Advanced installation also instal the cronjobs same as:

https://github.com/acmesh-official/acme.sh#2-or-install-from-git