<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://htyp.org/mw/index.php?action=history&amp;feed=atom&amp;title=User%3AWoozle%2FLet%27s_Encrypt_mystery</id>
	<title>User:Woozle/Let&#039;s Encrypt mystery - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://htyp.org/mw/index.php?action=history&amp;feed=atom&amp;title=User%3AWoozle%2FLet%27s_Encrypt_mystery"/>
	<link rel="alternate" type="text/html" href="https://htyp.org/mw/index.php?title=User:Woozle/Let%27s_Encrypt_mystery&amp;action=history"/>
	<updated>2026-07-01T22:37:30Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.45.3</generator>
	<entry>
		<id>https://htyp.org/mw/index.php?title=User:Woozle/Let%27s_Encrypt_mystery&amp;diff=23277&amp;oldid=prev</id>
		<title>Woozle at 01:21, 21 November 2017</title>
		<link rel="alternate" type="text/html" href="https://htyp.org/mw/index.php?title=User:Woozle/Let%27s_Encrypt_mystery&amp;diff=23277&amp;oldid=prev"/>
		<updated>2017-11-21T01:21:10Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 01:21, 21 November 2017&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l1&quot;&gt;Line 1:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 1:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;==Solution==&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;After looking carefully through the error message I pasted below, I noticed that it was pulling up references to cwre.org (another domain on the same server).&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Making a wild guess, I thought to check the server configuration to make sure htyp.org had the same IPv6 address as the working domains -- and it did not.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;So I added the IPv6 address to both VirtualHost directives in /etc/apache2/sites-available/htyp.org.conf (copied from issuepedia.org.conf), reloaded Apache -- and Let&#039;s Encrypt was successful.&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;==Original Problem==&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;I&amp;#039;ve been migrating domains from one server to another, and setting them up with [[Let&amp;#039;s Encrypt]] [[SSL]] certificates. Out of four domains migrated so far, all have obtained their certs just fine &amp;#039;&amp;#039;except&amp;#039;&amp;#039; for this one (htyp.org).&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;I&amp;#039;ve been migrating domains from one server to another, and setting them up with [[Let&amp;#039;s Encrypt]] [[SSL]] certificates. Out of four domains migrated so far, all have obtained their certs just fine &amp;#039;&amp;#039;except&amp;#039;&amp;#039; for this one (htyp.org).&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Woozle</name></author>
	</entry>
	<entry>
		<id>https://htyp.org/mw/index.php?title=User:Woozle/Let%27s_Encrypt_mystery&amp;diff=23275&amp;oldid=prev</id>
		<title>Woozle: Created page with &quot;I&#039;ve been migrating domains from one server to another, and setting them up with Let&#039;s Encrypt SSL certificates. Out of four domains migrated so far, all have obtained...&quot;</title>
		<link rel="alternate" type="text/html" href="https://htyp.org/mw/index.php?title=User:Woozle/Let%27s_Encrypt_mystery&amp;diff=23275&amp;oldid=prev"/>
		<updated>2017-11-21T00:51:15Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;I&amp;#039;ve been migrating domains from one server to another, and setting them up with &lt;a href=&quot;/Let%27s_Encrypt&quot; title=&quot;Let&amp;#039;s Encrypt&quot;&gt;Let&amp;#039;s Encrypt&lt;/a&gt; &lt;a href=&quot;/SSL&quot; title=&quot;SSL&quot;&gt;SSL&lt;/a&gt; certificates. Out of four domains migrated so far, all have obtained...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;I&amp;#039;ve been migrating domains from one server to another, and setting them up with [[Let&amp;#039;s Encrypt]] [[SSL]] certificates. Out of four domains migrated so far, all have obtained their certs just fine &amp;#039;&amp;#039;except&amp;#039;&amp;#039; for this one (htyp.org).&lt;br /&gt;
&lt;br /&gt;
They are all configured identically in Apache, as far as I can tell.&lt;br /&gt;
&lt;br /&gt;
This is the error I get:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
Parsing account key...&lt;br /&gt;
Parsing CSR...&lt;br /&gt;
Registering account...&lt;br /&gt;
Already registered!&lt;br /&gt;
Verifying htyp.org...&lt;br /&gt;
Wrote file to /home/htyp/public_html/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8, but couldn&amp;#039;t download http://htyp.org/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8&lt;br /&gt;
Traceback (most recent call last):&lt;br /&gt;
  File &amp;quot;/usr/share/webmin/webmin/acme_tiny.py&amp;quot;, line 235, in &amp;lt;module&amp;gt;&lt;br /&gt;
    main(sys.argv[1:])&lt;br /&gt;
  File &amp;quot;/usr/share/webmin/webmin/acme_tiny.py&amp;quot;, line 231, in main&lt;br /&gt;
    signed_crt = get_crt(args.account_key, args.csr, args.acme_dir, args.dns_hook, args.cleanup_hook, log=LOGGER, CA=args.ca)&lt;br /&gt;
  File &amp;quot;/usr/share/webmin/webmin/acme_tiny.py&amp;quot;, line 184, in get_crt&lt;br /&gt;
    domain, challenge_status))&lt;br /&gt;
ValueError: htyp.org challenge did not pass: {u&amp;#039;status&amp;#039;: u&amp;#039;invalid&amp;#039;, u&amp;#039;validationRecord&amp;#039;: [{u&amp;#039;addressesResolved&amp;#039;: [u&amp;#039;45.55.169.129&amp;#039;, u&amp;#039;2604:a880:800:10::63:b001&amp;#039;], u&amp;#039;url&amp;#039;: u&amp;#039;https://cwre.org/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8&amp;#039;, u&amp;#039;hostname&amp;#039;: u&amp;#039;cwre.org&amp;#039;, u&amp;#039;addressesTried&amp;#039;: [], u&amp;#039;addressUsed&amp;#039;: u&amp;#039;45.55.169.129&amp;#039;, u&amp;#039;port&amp;#039;: u&amp;#039;443&amp;#039;}, {u&amp;#039;addressesResolved&amp;#039;: [u&amp;#039;45.55.169.129&amp;#039;, u&amp;#039;2604:a880:800:10::63:b001&amp;#039;], u&amp;#039;url&amp;#039;: u&amp;#039;https://cwre.org/w/Main_Page&amp;#039;, u&amp;#039;hostname&amp;#039;: u&amp;#039;cwre.org&amp;#039;, u&amp;#039;addressesTried&amp;#039;: [], u&amp;#039;addressUsed&amp;#039;: u&amp;#039;45.55.169.129&amp;#039;, u&amp;#039;port&amp;#039;: u&amp;#039;443&amp;#039;}, {u&amp;#039;addressesResolved&amp;#039;: [u&amp;#039;45.55.169.129&amp;#039;, u&amp;#039;2604:a880:800:10::63:b001&amp;#039;], u&amp;#039;url&amp;#039;: u&amp;#039;http://htyp.org/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8&amp;#039;, u&amp;#039;hostname&amp;#039;: u&amp;#039;htyp.org&amp;#039;, u&amp;#039;addressesTried&amp;#039;: [], u&amp;#039;addressUsed&amp;#039;: u&amp;#039;2604:a880:800:10::63:b001&amp;#039;, u&amp;#039;port&amp;#039;: u&amp;#039;80&amp;#039;}], u&amp;#039;keyAuthorization&amp;#039;: u&amp;#039;woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8.pSZGKOoVXSTb2RnQtCFPd4GPasTVgvX5LTGba9tvQEU&amp;#039;, u&amp;#039;uri&amp;#039;: u&amp;#039;https://acme-v01.api.letsencrypt.org/acme/challenge/En0F_38TKIAZhzVwHAJpO14RX29vd_85QWFcPHodl5w/2524467156&amp;#039;, u&amp;#039;token&amp;#039;: u&amp;#039;woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8&amp;#039;, u&amp;#039;error&amp;#039;: {u&amp;#039;status&amp;#039;: 403, u&amp;#039;type&amp;#039;: u&amp;#039;urn:acme:error:unauthorized&amp;#039;, u&amp;#039;detail&amp;#039;: u&amp;#039;Invalid response from http://htyp.org/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8: &amp;quot;&amp;lt;!DOCTYPE html&amp;gt;\n&amp;lt;html class=&amp;quot;client-nojs&amp;quot; lang=&amp;quot;en&amp;quot; dir=&amp;quot;ltr&amp;quot;&amp;gt;\n&amp;lt;head&amp;gt;\n&amp;lt;meta charset=&amp;quot;UTF-8&amp;quot;/&amp;gt;\n&amp;lt;title&amp;gt;CWRE&amp;lt;/title&amp;gt;\n&amp;lt;script&amp;gt;docume&amp;quot;&amp;#039;}, u&amp;#039;type&amp;#039;: u&amp;#039;http-01&amp;#039;}&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This seems to be implying that the remote Let&amp;#039;s Encrypt can&amp;#039;t retrieve the test file, which is a common problem that usually means an Apache config error is preventing access. However, when I go to http://htyp.org/.well-known/acme-challenge/woQzuJQV5zQ5h_5l5dlj8FbVsk31E9-HHYyIQfccKO8 with a web browser or wget, I experience no trouble retrieving the file.&lt;br /&gt;
&lt;br /&gt;
I&amp;#039;ve compared the responses I get from this domain to one of the other domains which have been able to set up Let&amp;#039;s Encrypt certs, and they appear identical.&lt;br /&gt;
&lt;br /&gt;
The core problem here is that I don&amp;#039;t understand why Let&amp;#039;s Encrypt is saying there&amp;#039;s a problem, because I&amp;#039;m not seeing the problem when I access the file it says it cannot access.&lt;/div&gt;</summary>
		<author><name>Woozle</name></author>
	</entry>
</feed>