Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    ACME wildcard cert creation-need help.

    Scheduled Pinned Locked Moved ACME
    2 Posts 2 Posters 460 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pepperman
      last edited by

      Knocking myself out trying to get the cert issued [and I thought I was smart]. Can make non-wildcard SSL certs all day, but even looking into the error log I can't get it issued. Same error time and time again. Please help if you can or at least direct me to clear set by steps. Thanks

      Error add txt for domain:_acme-challenge.gleeze.com
      [Sat Aug 19 22:11:16 UTC 2023] Please check log file for more details: /tmp/acme/onesies/acme_issuecert.log

      BELOW are some items that are suspect: I am using Nginx as web server. Thanks

      _currentRoot='dns_dynu'
      [Sat Aug 19 22:11:12 UTC 2023] d
      [Sat Aug 19 22:11:12 UTC 2023] 'pfSenseacme,dns_dynu' does not contain 'apache'
      [Sat Aug 19 22:11:12 UTC 2023] config file is empty, can not read CA_KEY_HASH
      [Sat Aug 19 22:11:12 UTC 2023] _saved_account_key_hash

      config file is empty, can not read CA_EAB_KEY_ID
      [Sat Aug 19 22:11:13 UTC 2023] config file is empty, can not read CA_EAB_HMAC_KEY
      [Sat Aug 19 22:11:13 UTC 2023] _eab_id='[hidden](please add '--output-insecure' to see this value)'
      [Sat Aug 19 22:11:13 UTC 2023] _eab_hmac_key='[hidden](please add '--output-insecure' to see this value)'
      [Sat Aug 19 22:11:13 UTC 2023]

      1 Reply Last reply Reply Quote 0
      • AMG A35A
        AMG A35
        last edited by

        Are you using HTTP challenge, has to be DNS challenge for wildcard. If have domains on dynu and pfSense gets wildcard certs fine with DNS challenge.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.