Author Topic: AutoSSL not renewing  (Read 176 times)

0 Members and 1 Guest are viewing this topic.

Offline
*
AutoSSL not renewing
« on: November 13, 2019, 12:57:45 PM »
Hi, we've been using CWP with the build in Let's Encrypt certificates for some time now and it renewed the certificates automatically.
But it stoped renewing, I saw today that we had 2 expired certs!

So I got to CWP6pro.admin panel > WebServer Settings > SSL Certificates > and Renew Now for one of the expired domains and got the message:
Successfully...! Renewal carried out successfully.
I visited the site and realized that the certificate was not renewed!

I decided to delete the certificate and create again, but now gives error, displays the message:
An error occurred, the certificate can not be installed

What's going on?
Can anyone point me in a direction?
Which log can I check for errors?


Offline
*
Re: AutoSSL not renewing
« Reply #1 on: December 13, 2019, 11:04:40 AM »
the log can be viewed at /root/.acme.sh/acme.sh.log
If you see: Verify error: Invalid response from http://you.domain/.well-known/acme-challenge/....
Also useful would be a file /root/.acme.sh/http.header
Possible reasons:
1. There is no symbolic link in the root directory of your site. The symbolic link (.well-known) should point to /usr/local/apache/autossl_tmp/.well-known
2. If you do not use IPv6, make sure there are no AAAA entries for your DNS zone.