-
I am trying to create a vpn cert with lets encrypt. My registratr is rackspace. I have set the method to DNS-Rackspace and put my username and API key. When I try to generate the cert, I get the error message below. Do I need to add anything in rackspace's zone file or anything?
Error:
wc_some_domain.com
Renewing certificate
account: Prod
server: letsencrypt-production-2/usr/local/pkg/acme/acme.sh --issue --domain 'vpn.some_domain.com' --dns 'dns_rackspace' --home '/tmp/acme/wc_some_domain.com/' --accountconf '/tmp/acme/wc_some_domain.com/accountconf.conf' --force --reloadCmd '/tmp/acme/wc_some_domain.com/reloadcmd.sh' --dnssleep '120' --log-level 3 --log '/tmp/acme/wc_some_domain.com/acme_issuecert.log'
Array
(
[path] => /etc:/bin:/sbin:/usr/bin:/usr/sbin:/usr/local/bin/
[PATH] => /etc:/bin:/sbin:/usr/bin:/usr/sbin:/usr/local/bin/
[RACKSPACE_Username] => UserName
[RACKSPACE_Apikey] => MyAPI_KEY
)
[Sat Mar 26 14:48:53 EDT 2022] Using CA: https://acme-v02.api.letsencrypt.org/directory
[Sat Mar 26 14:48:53 EDT 2022] Single domain='vpn.some_domain.com'
[Sat Mar 26 14:48:53 EDT 2022] Getting domain auth token for each domain
[Sat Mar 26 14:48:55 EDT 2022] Getting webroot for domain='vpn.some_domain.com'
[Sat Mar 26 14:48:55 EDT 2022] Adding txt value: qOXeRhDM2KvDkVyV3e3vdmGjzptflkALuvvQVNdcXJk for domain: _acme-challenge.vpn.some_domain.com
[Sat Mar 26 14:48:55 EDT 2022] Getting authorization token.
[Sat Mar 26 14:48:55 EDT 2022] Getting https://dns.api.rackspacecloud.com/v1.0//domains/search?name=vpn.some_domain.com
[Sat Mar 26 14:48:56 EDT 2022] Getting https://dns.api.rackspacecloud.com/v1.0//domains/search?name=some_domain.com
[Sat Mar 26 14:48:56 EDT 2022] Getting https://dns.api.rackspacecloud.com/v1.0//domains/search?name=com
[Sat Mar 26 14:48:56 EDT 2022] invalid domain
[Sat Mar 26 14:48:56 EDT 2022] Error add txt for domain:_acme-challenge.vpn.some_domain.com
[Sat Mar 26 14:48:56 EDT 2022] Please check log file for more details: /tmp/acme/wc_some_domain.com/acme_issuecert.log -
@mrjoli021 said in ACME cert with rackspace:
tmp/acme/wc_some_domain.com/acme_issuecert.log
What do you see in the file when it fails?
-
J jimp moved this topic from General pfSense Questions on
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.