Author Topic: SSL Renewal BUG  (Read 31 times)

0 Members and 1 Guest are viewing this topic.

Offline
*
SSL Renewal BUG
« on: October 01, 2025, 09:03:27 PM »
the SSL Cannot be renewed because of missing AAAA Record (IPv6)
- venelina.bg
Error Message: AutoSSL Issue Failed! ->[Wed Oct 1 21:06:15 EEST 2025] Using CA: https://acme-v02.api.letsencrypt.org/directory [Wed Oct 1 21:06:15 EEST 2025] Multi domain='DNS:www.venelina.bg,DNS:venelina.bg' [Wed Oct 1 21:06:19 EEST 2025] Getting webroot for domain='www.venelina.bg' [Wed Oct 1 21:06:19 EEST 2025] Getting webroot for domain='venelina.bg' [Wed Oct 1 21:06:19 EEST 2025] Verifying: www.venelina.bg [Wed Oct 1 21:06:21 EEST 2025] Pending. The CA is processing your order, please wait. (1/30) [Wed Oct 1 21:06:24 EEST 2025] www.venelina.bg: Invalid status. Verification error details: DNS problem: NXDOMAIN looking up A for www.venelina.bg - check that a DNS record exists for this domain; no valid AAAA records found for www.venelina.bg [Wed Oct 1 21:06:24 E
error message from certbot!

Offline
*****
Re: SSL Renewal BUG
« Reply #1 on: Today at 01:07:18 AM »
Are you using and needing IPv6 support? If so, you will need a valid AAAA record for your domain name and hostnames (www can be a CNAME for simplicity).

Offline
****
Re: SSL Renewal BUG
« Reply #2 on: Today at 02:50:27 AM »
Your DNS server could have been busy while it was trying to process.  Try again.   By the way, it's always best to setup a secondary DNS server as a slave to your master.
Google Hangouts:  rcschaff82@gmail.com

Offline
*****
Re: SSL Renewal BUG
« Reply #3 on: Today at 07:36:50 PM »
You also need to have Ports 80 & 443 open for Let's Encrypt to confirm.

If you are running a NAT, all routing needs to be setup correctly for it to work.

Also note, due to sanctions, some companies have geo fences in place.