Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Acme errors with old and new Certificates

    Scheduled Pinned Locked Moved ACME
    1 Posts 1 Posters 777 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      Peque
      last edited by Peque

      Hi forum.
      Setup is:
      PFsense: Community Edition 2.6.0 ( But have Plus at home with same results)
      ACME: 0.7.1_1

      I'm trying to use our ACME in our PFsense - for let's Encrypt certificates. But after gratisDNS closed in Denmark ( and where moved to One.com) I cannot get my certificate renewing to work at all. I have 2 PFsense's and both can not renew the certificates.

      A Simpel Question regarding the setup here with simply.com - it's asking for the API Endpopint URL - where the default is https://api.simply.com/1- and the recommanded are https://api.simply.com/2/

      But no matter if I try through Acme/Simply.com or ACME/webroot - I'm still getting the same error - that my PHP make errors constantly. That ACME cannot create the Folder on PFsense.

      I have tried with renewing the old, creating a new ACME account etc and nothing helps here
      I'm getting this error regarding PHP errors, and can't get any further here:

      challenge_response_put insacal, www.insacal.com
      FOUND domainitemwebroot
      
      Fatal error: Uncaught RuntimeException: Couldn't create directory: '' to expose challenge for certificate: insacal. in /usr/local/pkg/acme/acme.inc:1820
      Stack trace:
      #0 /usr/local/pkg/acme/acme_command.sh(89): pfsense_pkg\acme\challenge_response_put('insacal', 'www.insacal.com', 'pJ1HMkcuKPd2t17...', 'pJ1HMkcuKPd2t17...')
      #1 {main}
        thrown in /usr/local/pkg/acme/acme.inc on line 1820
      PHP ERROR: Type: 1, File: /usr/local/pkg/acme/acme.inc, Line: 1820, Message: Uncaught RuntimeException: Couldn't create directory: '' to expose challenge for certificate: insacal. in /usr/local/pkg/acme/acme.inc:1820
      Stack trace:
      #0 /usr/local/pkg/acme/acme_command.sh(89): pfsense_pkg\acme\challenge_response_put('insacal', 'www.insacal.com', 'pJ1HMkcuKPd2t17...', 'pJ1HMkcuKPd2t17...')
      #1 {main}
        thrown[Mon May  2 07:29:07 CEST 2022] Pending, The CA is processing your order, please just wait. (1/30)
      [Mon May  2 07:29:10 CEST 2022] Found domain http api file: /tmp/acme/insacal//httpapi/pfSenseacme.sh
      [Mon May  2 07:29:06 CEST 2022] Error add webroot for domain:www.insacal.com
      

      And cannot figure out where all thgis goes wrong, when ACME is trying to renewing any certificates.

      1 Reply Last reply Reply Quote 1
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.