• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Setup ACME with Webroot Local Folder

ACME
2
4
2.2k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    anggit
    last edited by Mar 26, 2020, 7:20 AM

    I has setup ACME with Validation Method - Webroot Local Folder, and i stuck here
    login-to-view

    may be anyone can help me or guide me regarding the case,

    1 Reply Last reply Reply Quote 0
    • G
      Gertjan
      last edited by Gertjan Mar 26, 2020, 7:47 PM Mar 26, 2020, 7:44 PM

      It's here :
      login-to-view

      It should create a sub directory (in a sub directory) in the webroot .well-known/acme-challenge/ with the hash file.
      And that didn't work out.

      edit : btw : you have access to this webroot web server, right ? Go have a look yourself.
      The dirs are there ?
      Also : there are log files right ? Use them - see if 'pfSense' accessed your server. Dono how "http api" works, but I'm pretty sure there are server logs that can show you what happens.
      edit end.

      The setting you supplied you gave so "httpapi" should do it's job, couldn't fo it's job ?

      Anyway :
      This is not some funny line :
      login-to-view

      It's actually needed when things don't work.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      1 Reply Last reply Reply Quote 0
      • A
        anggit
        last edited by Mar 27, 2020, 4:13 AM

        Hi @Gertjan thank you for you attantion,

        sorry i am forgot ti attach the log,
        this is log when i got today

        ([Fri Mar 27 10:34:39 WIB 2020] code='400'
        [Fri Mar 27 10:34:39 WIB 2020] original='{
        "type": "urn:ietf:params:acme:error:malformed",
        "detail": "Unable to update challenge :: authorization must be pending",
        "status": 400)

        Below is the response after i was click issue/renews button on pfsense

        login-to-view

        May be anyone can teach me regarding the issue and resove the issue

        regards....

        1 Reply Last reply Reply Quote 0
        • G
          Gertjan
          last edited by Mar 27, 2020, 6:56 AM

          Logs ?

          Open a console, SSH, or better SFTP and look in /tmp/acme/your-domain.tld - there is a dot log file.
          This one :
          login-to-view

          Also :

          If I visit :
          login-to-view

          I have a TLS error - as acme has :

          login-to-view

          because the cert is expired since March 6.

          So, when the Letenscypt hits that site, it will bail out.

          I'm not using HAProxy myself, neither the acme webroot method.

          What about : pfsense haproxy acme ,

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          1 Reply Last reply Reply Quote 0
          2 out of 4
          • First post
            2/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.