mahtab2003 / Xera

Now Introducing a new and easy way to manage your clients and MyOwnFreeHost hosting accounts.
https://xera.eu.org/
GNU General Public License v2.0
47 stars 37 forks source link

ACME SSL not working #115

Closed GGLVXD closed 1 month ago

GGLVXD commented 2 months ago

The ACME SSL is not working because i did set up all 3 of them and they should be correct enough but when i try to add an ssl it loads forever for like 2 - 3 min then it ig gets an response that it is added but when i go to the ssl list it again keeps loading until i get error 500 and it did not add any ssl certificate to website

santydesignscr commented 1 month ago

Please share your current configuration on acme SSL, censure kid and hmca because that are sensitive info

GGLVXD commented 1 month ago

Screenshot_20240710-184802_Chrome~2

santydesignscr commented 1 month ago

Are you using Xera in a MOFH account, right? I'm now testing all before the new release, your config seems to be ok, I will debug the orror on a MOFH test website and let you know when it is fixed

GGLVXD commented 1 month ago

Yeah its running on mofh account

santydesignscr commented 1 month ago

In fact there's an error, i fixed it now, soon I will update the code to fix, but as I see ACME SSL is too slow on MOFH

santydesignscr commented 1 month ago

It's working perfect on another hosting

GGLVXD commented 1 month ago

Oh

santydesignscr commented 1 month ago

I will try to improve the performance on MOFH, but there's not much to do

santydesignscr commented 1 month ago

Are you free now to show you how's it going?

GGLVXD commented 1 month ago

Yeah

santydesignscr commented 1 month ago

This is my byet forums porfile: https://www.byet.net/index.php?/profile/600675-santiago/ Send me a PM

betasio commented 1 month ago

bro once updated add a new release the release is the same from 3 weeks update the version as well thanks.

santydesignscr commented 1 month ago

Hello, that's development version, that's why I don't update the version, when I release the new version I will change it

santydesignscr commented 1 month ago

Xera developement version was updated and the issue fixed, next release soon

webersec commented 1 month ago

reqssl

webersec commented 1 month ago

@santydesignscr whenever clients try to create ssl it shows like the above screenshot.

santydesignscr commented 1 month ago

Can you share your current ACME and GoGetSSL configurations?, censure sensitive info

brosec commented 1 month ago

@santydesignscr can you explain the steps to generate Google Trust EAB Key id?

GGLVXD commented 1 month ago

@santydesignscr can you explain the steps to generate Google Trust EAB Key id?

https://cloud.google.com/certificate-manager/docs/public-ca-tutorial Everything is here

santydesignscr commented 1 month ago

For all setup things please refer to: https://github.com/mahtab2003/Xera/blob/dev/Setup-Guide.md

santydesignscr commented 1 month ago

@GGLVXD @brosec, do you had any problems with Xera?

brosec commented 1 month ago

Isn't it possible to use simply gogetssl , zerossl and letsencrypt without using google trust and cloudflare?

santydesignscr commented 1 month ago

reqssl

Like this

santydesignscr commented 1 month ago

Isn't it possible to use simply gogetssl , zerossl and letsencrypt without using google trust and cloudflare?

Yes you can uses the ones that you want but cloudflare is mandatory for CNAME delegation

santydesignscr commented 1 month ago

Just leave the inputs empty

brosec commented 1 month ago

Yeah i've also got the same error i think its because i have only added gogetssl, letsencrypt directory url, zero ssl url and the keys

santydesignscr commented 1 month ago

Yeah, you forgot cloudflare, I will make that required

santydesignscr commented 1 month ago

I will add on the docs that clouflare is mandatory

brosec commented 1 month ago

So if i add the cloudflare config then it will work without adding the google trust config

brosec commented 1 month ago

IMG_20240713_021238

Should i leave this as it is?

santydesignscr commented 1 month ago

Yes

santydesignscr commented 1 month ago

If you are on a paid hosting you can disable DNS over HTTPS and use any dns resolver that you like

brosec commented 1 month ago

@santydesignscr its working you can close the issue.

santydesignscr commented 1 month ago

Ok, thanks for your confirmation