Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

example.com: Invalid status. Verification error details #5267

Open
yongzhang52545 opened this issue Aug 26, 2024 · 1 comment
Open

example.com: Invalid status. Verification error details #5267

yongzhang52545 opened this issue Aug 26, 2024 · 1 comment

Comments

@yongzhang52545
Copy link

yongzhang52545 commented Aug 26, 2024

Steps to reproduce

当前acme.sh是v3.0.8最新了
acme.sh --issue -d www.example.com -d example.com --nginx /www/server/nginx/conf/nginx.conf --debug 2

Debug log

[Mon Aug 26 13:59:15 CST 2024] listen80; is plain text
[Mon Aug 26 13:59:15 CST 2024] /www/server/panel/vhost/nginx/www.example.com.conf found.
[Mon Aug 26 13:59:15 CST 2024] Found config file: /www/server/panel/vhost/nginx/www.example.com.conf
[Mon Aug 26 13:59:15 CST 2024] _ln='5'
[Mon Aug 26 13:59:15 CST 2024] _lnn='6'
[Mon Aug 26 13:59:15 CST 2024] _start_tag=' index index.php index.html index.htm default.php default.htm default.html;'
[Mon Aug 26 13:59:15 CST 2024] _backup_conf='/root/.acme.sh/www.example.com_ecc/backup/example.com.nginx.conf'
[Mon Aug 26 13:59:15 CST 2024] Backing /www/server/panel/vhost/nginx/www.example.com.conf up to /root/.acme.sh/www.example.com_ecc/backup/example.com.nginx.conf
[Mon Aug 26 13:59:15 CST 2024] Checking the nginx config before setting up.
[Mon Aug 26 13:59:15 CST 2024] OK, setting up the nginx config file
[Mon Aug 26 13:59:15 CST 2024] nginx config has been written, let's check it again.
[Mon Aug 26 13:59:15 CST 2024] Reloading nginx
[Mon Aug 26 13:59:15 CST 2024] _realConf='/www/server/panel/vhost/nginx/www.example.com.conf'
[Mon Aug 26 13:59:17 CST 2024] Trigger domain validation.
[Mon Aug 26 13:59:17 CST 2024] _t_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:17 CST 2024] _t_key_authz='dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI.cyRWTwKdX1Vwk-tuNm6POLHY1_wKJV9Cehms-kBEAXY'
[Mon Aug 26 13:59:17 CST 2024] _t_vtype='http-01'
[Mon Aug 26 13:59:17 CST 2024] =======Sending Signed Request=======
[Mon Aug 26 13:59:17 CST 2024] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:17 CST 2024] payload='{}'
[Mon Aug 26 13:59:17 CST 2024] Use cached jwk for file: /root/.acme.sh/ca/acme-v02.api.letsencrypt.org/directory/account.key
[Mon Aug 26 13:59:17 CST 2024] Use _CACHED_NONCE='fig2ElpouxpNmXG0OOCRFtBQYyE-Q-Hoj9Q6JPB7MGVdOwPHPuE'
[Mon Aug 26 13:59:17 CST 2024] nonce='fig2ElpouxpNmXG0OOCRFtBQYyE-Q-Hoj9Q6JPB7MGVdOwPHPuE'
[Mon Aug 26 13:59:17 CST 2024] POST
[Mon Aug 26 13:59:17 CST 2024] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:17 CST 2024] body='{"protected": "eyJub25jZSI6ICJmaWcyRWxwb3V4cE5tWEcwT09DUkZ0QlFZeUUtUS1Ib2o5UTZKUEI3TUdWZE93UEhQdUUiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLXYzLzM5NTIyNzIwMjM1Ni9DZ3pCbXciLCAiYWxnIjogIkVTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hY2N0LzE1MzM0NjM4NzYifQ", "payload": "e30", "signature": "tseC5kpVI9YNEFQh7et4Y6HB-xScggdHZ419ZOXFgYB8zlaxrWYCcums1LDN94jTinnZabuTh9m3a82C0dnx-A"}'
[Mon Aug 26 13:59:17 CST 2024] _postContentType='application/jose+json'
[Mon Aug 26 13:59:17 CST 2024] Http already initialized.
[Mon Aug 26 13:59:17 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g '
[Mon Aug 26 13:59:17 CST 2024] _ret='0'
[Mon Aug 26 13:59:17 CST 2024] responseHeaders='HTTP/1.1 200 OK
Server: nginx
Date: Mon, 26 Aug 2024 05:59:17 GMT
Content-Type: application/json
Content-Length: 187
Connection: keep-alive
Boulder-Requester: 1533463876
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel="index"
Link: https://acme-v02.api.letsencrypt.org/acme/authz-v3/395227202356;rel="up"
Location: https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw
Replay-Nonce: fig2Elpo3g6MbrFLJsDeCuSkHyWLL9OvZUebdKVD4248AD29ebc
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
'
[Mon Aug 26 13:59:18 CST 2024] code='200'
[Mon Aug 26 13:59:18 CST 2024] original='{
"type": "http-01",
"url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw",
"status": "pending",
"token": "dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI"
}'
[Mon Aug 26 13:59:18 CST 2024] response='{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"pending","token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI"}'
[Mon Aug 26 13:59:18 CST 2024] Trigger validation code: 200
[Mon Aug 26 13:59:18 CST 2024] Let's check the authz status
[Mon Aug 26 13:59:18 CST 2024] original='{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"pending","token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI"}'
[Mon Aug 26 13:59:18 CST 2024] response='{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"pending","token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI"}'
[Mon Aug 26 13:59:18 CST 2024] status='pending'
[Mon Aug 26 13:59:18 CST 2024] Pending. The CA is processing your order, please wait. (1/30)
[Mon Aug 26 13:59:18 CST 2024] Sleep 2 seconds before verifying again
[Mon Aug 26 13:59:21 CST 2024] Checking
[Mon Aug 26 13:59:21 CST 2024] =======Sending Signed Request=======
[Mon Aug 26 13:59:21 CST 2024] url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/395227202356'
[Mon Aug 26 13:59:21 CST 2024] payload
[Mon Aug 26 13:59:21 CST 2024] Use cached jwk for file: /root/.acme.sh/ca/acme-v02.api.letsencrypt.org/directory/account.key
[Mon Aug 26 13:59:21 CST 2024] Use _CACHED_NONCE='fig2Elpo3g6MbrFLJsDeCuSkHyWLL9OvZUebdKVD4248AD29ebc'
[Mon Aug 26 13:59:21 CST 2024] nonce='fig2Elpo3g6MbrFLJsDeCuSkHyWLL9OvZUebdKVD4248AD29ebc'
[Mon Aug 26 13:59:21 CST 2024] POST
[Mon Aug 26 13:59:21 CST 2024] _post_url='https://acme-v02.api.letsencrypt.org/acme/authz-v3/395227202356'
[Mon Aug 26 13:59:21 CST 2024] body='{"protected": "eyJub25jZSI6ICJmaWcyRWxwbzNnNk1ickZMSnNEZUN1U2tIeVdMTDlPdlpVZWJkS1ZENDI0OEFEMjllYmMiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LXYzLzM5NTIyNzIwMjM1NiIsICJhbGciOiAiRVMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTUzMzQ2Mzg3NiJ9", "payload": "", "signature": "n_tnJgrVOQmGZM-UjJnwYTK_Bik4Q4VQzoBo1hvfxf0ke7C6Op1CUVn-6v9Wo6my2PGPdR_LpZK3VwBKI8B1TQ"}'
[Mon Aug 26 13:59:21 CST 2024] _postContentType='application/jose+json'
[Mon Aug 26 13:59:21 CST 2024] Http already initialized.
[Mon Aug 26 13:59:21 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g '
[Mon Aug 26 13:59:21 CST 2024] _ret='0'
[Mon Aug 26 13:59:21 CST 2024] responseHeaders='HTTP/1.1 200 OK
Server: nginx
Date: Mon, 26 Aug 2024 05:59:21 GMT
Content-Type: application/json
Content-Length: 1047
Connection: keep-alive
Boulder-Requester: 1533463876
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel="index"
Replay-Nonce: H95ktvjFSRgJ-D-Ote5UWW-MXSMcmlmLoYqdIT-7FudFbHOnMSk
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
'
[Mon Aug 26 13:59:21 CST 2024] code='200'
[Mon Aug 26 13:59:21 CST 2024] original='{
"identifier": {
"type": "dns",
"value": "example.com"
},
"status": "invalid",
"expires": "2024-09-02T05:59:13Z",
"challenges": [
{
"type": "http-01",
"url": "https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw",
"status": "invalid",
"validated": "2024-08-26T05:59:17Z",
"error": {
"type": "urn:ietf:params:acme:error:connection",
"detail": "47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data",
"status": 400
},
"token": "dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI",
"validationRecord": [
{
"url": "http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI",
"hostname": "example.com",
"port": "80",
"addressesResolved": [
"47.188.25.119"
],
"addressUsed": "47.188.25.119"
}
]
}
]
}'
[Mon Aug 26 13:59:21 CST 2024] response='{"identifier":{"type":"dns","value":"example.com"},"status":"invalid","expires":"2024-09-02T05:59:13Z","challenges":[{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"invalid","validated":"2024-08-26T05:59:17Z","error":{"type":"urn:ietf:params:acme:error:connection","detail":"47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data","status": 400},"token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","validationRecord":[{"url":"http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","hostname":"example.com","port":"80","addressesResolved":["47.188.25.119"],"addressUsed":"47.188.25.119"}]}]}'
[Mon Aug 26 13:59:21 CST 2024] original='{"identifier":{"type":"dns","value":"example.com"},"status":"invalid","expires":"2024-09-02T05:59:13Z","challenges":[{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"invalid","validated":"2024-08-26T05:59:17Z","error":{"type":"urn:ietf:params:acme:error:connection","detail":"47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data","status": 400},"token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","validationRecord":[{"url":"http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","hostname":"example.com","port":"80","addressesResolved":["47.188.25.119"],"addressUsed":"47.188.25.119"}]}]}'
[Mon Aug 26 13:59:21 CST 2024] response='{"identifier":{"type":"dns","value":"example.com"},"status":"invalid","expires":"2024-09-02T05:59:13Z","challenges":[{"type":"http-01","url":"https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw","status":"invalid","validated":"2024-08-26T05:59:17Z","error":{"type":"urn:ietf:params:acme:error:connection","detail":"47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data","status": 400},"token":"dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","validationRecord":[{"url":"http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI","hostname":"example.com","port":"80","addressesResolved":["47.188.25.119"],"addressUsed":"47.188.25.119"}]}]}'
[Mon Aug 26 13:59:21 CST 2024] status='invalid
invalid'
[Mon Aug 26 13:59:21 CST 2024] error='"error":{"type":"urn:ietf:params:acme:error:connection","detail":"47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data","status": 400'
[Mon Aug 26 13:59:21 CST 2024] errordetail='47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data'
[Mon Aug 26 13:59:21 CST 2024] example.com: Invalid status. Verification error details: 47.188.25.119: Fetching http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI: Error getting validation data
[Mon Aug 26 13:59:21 CST 2024] Debug: GET token URL.
[Mon Aug 26 13:59:21 CST 2024] GET
[Mon Aug 26 13:59:21 CST 2024] url='http://example.com/.well-known/acme-challenge/dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI'
[Mon Aug 26 13:59:21 CST 2024] timeout=1
[Mon Aug 26 13:59:21 CST 2024] Http already initialized.
[Mon Aug 26 13:59:21 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g --connect-timeout 1'
[Mon Aug 26 13:59:22 CST 2024] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 28
[Mon Aug 26 13:59:22 CST 2024] Here is the curl dump log:
[Mon Aug 26 13:59:22 CST 2024] == Info: About to connect() to example.com port 80 (#0)
== Info: Trying 47.188.25.119...
== Info: Connection timed out after 1000 milliseconds
== Info: Closing connection 0
[Mon Aug 26 13:59:22 CST 2024] ret='28'
[Mon Aug 26 13:59:22 CST 2024] Skipping for removelevel:
[Mon Aug 26 13:59:22 CST 2024] pid
[Mon Aug 26 13:59:22 CST 2024] _restoreNginx
[Mon Aug 26 13:59:22 CST 2024] NGINX_RESTORE_VLIST='example.com#/www/server/panel/vhost/nginx/www.example.com.conf#/root/.acme.sh/www.example.com_ecc/backup/example.com.nginx.conf,'
[Mon Aug 26 13:59:22 CST 2024] ng_entry='example.com#/www/server/panel/vhost/nginx/www.example.com.conf#/root/.acme.sh/www.example.com_ecc/backup/example.com.nginx.conf'
[Mon Aug 26 13:59:22 CST 2024] Restoring from /root/.acme.sh/www.example.com_ecc/backup/example.com.nginx.conf to /www/server/panel/vhost/nginx/www.example.com.conf
[Mon Aug 26 13:59:22 CST 2024] Reloading nginx
[Mon Aug 26 13:59:22 CST 2024] _clearupdns
[Mon Aug 26 13:59:22 CST 2024] dns_entries
[Mon Aug 26 13:59:22 CST 2024] Skipping dns.
[Mon Aug 26 13:59:22 CST 2024] _on_issue_err
[Mon Aug 26 13:59:22 CST 2024] Please add '--debug' or '--log' to see more information.
[Mon Aug 26 13:59:22 CST 2024] See: https://github.com/acmesh-official/acme.sh/wiki/How-to-debug-acme.sh
[Mon Aug 26 13:59:22 CST 2024] _chk_vlist='www.example.com#verified_ok##http-01#nginx:/www/server/nginx/conf/nginx.conf#https://acme-v02.api.letsencrypt.org/acme/authz-v3/390735950266,example.com#dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI.cyRWTwKdX1Vwk-tuNm6POLHY1_wKJV9Cehms-kBEAXY#https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw#http-01#nginx:/www/server/nginx/conf/nginx.conf#https://acme-v02.api.letsencrypt.org/acme/authz-v3/395227202356,'
[Mon Aug 26 13:59:22 CST 2024] start to deactivate authz
[Mon Aug 26 13:59:22 CST 2024] Trigger domain validation.
[Mon Aug 26 13:59:22 CST 2024] _t_url
[Mon Aug 26 13:59:22 CST 2024] _t_key_authz='verified_ok'
[Mon Aug 26 13:59:22 CST 2024] _t_vtype
[Mon Aug 26 13:59:22 CST 2024] =======Sending Signed Request=======
[Mon Aug 26 13:59:22 CST 2024] url
[Mon Aug 26 13:59:22 CST 2024] payload='{}'
[Mon Aug 26 13:59:22 CST 2024] Use cached jwk for file: /root/.acme.sh/ca/acme-v02.api.letsencrypt.org/directory/account.key
[Mon Aug 26 13:59:22 CST 2024] Use _CACHED_NONCE='H95ktvjFSRgJ-D-Ote5UWW-MXSMcmlmLoYqdIT-7FudFbHOnMSk'
[Mon Aug 26 13:59:22 CST 2024] nonce='H95ktvjFSRgJ-D-Ote5UWW-MXSMcmlmLoYqdIT-7FudFbHOnMSk'
[Mon Aug 26 13:59:22 CST 2024] POST
[Mon Aug 26 13:59:22 CST 2024] _post_url
[Mon Aug 26 13:59:22 CST 2024] body='{"protected": "eyJub25jZSI6ICJIOTVrdHZqRlNSZ0otRC1PdGU1VVdXLU1YU01jbWxtTG9ZcWRJVC03RnVkRmJIT25NU2siLCAidXJsIjogIiIsICJhbGciOiAiRVMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTUzMzQ2Mzg3NiJ9", "payload": "e30", "signature": "mpkwbPncfNsi6Se3aGTE3jpdmibzIB0WuA2QAkCIJHs40ctl-Z8fuVG5VUFxIAqxyx9bKcBN7GDPQMvkRRZJHA"}'
[Mon Aug 26 13:59:22 CST 2024] _postContentType='application/jose+json'
[Mon Aug 26 13:59:22 CST 2024] Http already initialized.
[Mon Aug 26 13:59:22 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g '
[Mon Aug 26 13:59:22 CST 2024] Please refer to https://curl.haxx.se/libcurl/c/libcurl-errors.html for error code: 3
[Mon Aug 26 13:59:22 CST 2024] Here is the curl dump log:
[Mon Aug 26 13:59:22 CST 2024] == Info: malformed
== Info: Closing connection -1
[Mon Aug 26 13:59:22 CST 2024] _ret='3'
[Mon Aug 26 13:59:22 CST 2024] responseHeaders
[Mon Aug 26 13:59:22 CST 2024] code
[Mon Aug 26 13:59:22 CST 2024] original
[Mon Aug 26 13:59:22 CST 2024] response
[Mon Aug 26 13:59:22 CST 2024] Trigger domain validation.
[Mon Aug 26 13:59:22 CST 2024] _t_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:22 CST 2024] _t_key_authz='dObWE8LefsxESXVHynZrCEyNYoCxd027sUNTUlusukI.cyRWTwKdX1Vwk-tuNm6POLHY1_wKJV9Cehms-kBEAXY'
[Mon Aug 26 13:59:22 CST 2024] _t_vtype
[Mon Aug 26 13:59:22 CST 2024] =======Sending Signed Request=======
[Mon Aug 26 13:59:22 CST 2024] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:22 CST 2024] payload='{}'
[Mon Aug 26 13:59:22 CST 2024] Use cached jwk for file: /root/.acme.sh/ca/acme-v02.api.letsencrypt.org/directory/account.key
[Mon Aug 26 13:59:22 CST 2024] Get nonce with HEAD. ACME_NEW_NONCE='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Aug 26 13:59:22 CST 2024] HEAD
[Mon Aug 26 13:59:22 CST 2024] _post_url='https://acme-v02.api.letsencrypt.org/acme/new-nonce'
[Mon Aug 26 13:59:22 CST 2024] body
[Mon Aug 26 13:59:22 CST 2024] _postContentType='application/jose+json'
[Mon Aug 26 13:59:22 CST 2024] Http already initialized.
[Mon Aug 26 13:59:22 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g -I '
[Mon Aug 26 13:59:22 CST 2024] _ret='0'
[Mon Aug 26 13:59:22 CST 2024] _headers='HTTP/1.1 200 OK
Server: nginx
Date: Mon, 26 Aug 2024 05:59:22 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel="index"
Replay-Nonce: fig2Elpob9ceBGGE5WBxfldj1HSUe1TrJ6LVLsT0DDKJ9xFpXXo
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
'
[Mon Aug 26 13:59:22 CST 2024] _CACHED_NONCE='fig2Elpob9ceBGGE5WBxfldj1HSUe1TrJ6LVLsT0DDKJ9xFpXXo'
[Mon Aug 26 13:59:22 CST 2024] nonce='fig2Elpob9ceBGGE5WBxfldj1HSUe1TrJ6LVLsT0DDKJ9xFpXXo'
[Mon Aug 26 13:59:23 CST 2024] POST
[Mon Aug 26 13:59:23 CST 2024] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/395227202356/CgzBmw'
[Mon Aug 26 13:59:23 CST 2024] body='{"protected": "eyJub25jZSI6ICJmaWcyRWxwb2I5Y2VCR0dFNVdCeGZsZGoxSFNVZTFUcko2TFZMc1QwRERLSjl4RnBYWG8iLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLXYzLzM5NTIyNzIwMjM1Ni9DZ3pCbXciLCAiYWxnIjogIkVTMjU2IiwgImtpZCI6ICJodHRwczovL2FjbWUtdjAyLmFwaS5sZXRzZW5jcnlwdC5vcmcvYWNtZS9hY2N0LzE1MzM0NjM4NzYifQ", "payload": "e30", "signature": "YRDCr2Ph3nUGXvq9Xs_gzsqru6l9kf6Bq6mqUnbBP56DGPOutyDW34YhhkKaonEr4CGCBUzYfJxjmcW8kh4eZw"}'
[Mon Aug 26 13:59:23 CST 2024] _postContentType='application/jose+json'
[Mon Aug 26 13:59:23 CST 2024] Http already initialized.
[Mon Aug 26 13:59:23 CST 2024] _CURL='curl --silent --dump-header /root/.acme.sh/http.header -L --trace-ascii /tmp/tmp.r21FIVgL2L -g '
[Mon Aug 26 13:59:23 CST 2024] _ret='0'
[Mon Aug 26 13:59:23 CST 2024] responseHeaders='HTTP/1.1 400 Bad Request
Server: nginx
Date: Mon, 26 Aug 2024 05:59:23 GMT
Content-Type: application/problem+json
Content-Length: 144
Connection: keep-alive
Boulder-Requester: 1533463876
Cache-Control: public, max-age=0, no-cache
Link: https://acme-v02.api.letsencrypt.org/directory;rel="index"
Replay-Nonce: H95ktvjFsDML1t26X4Ps6RsjZDpfUQVMp9AQBExZyKiCDwTXRiU
'
[Mon Aug 26 13:59:23 CST 2024] code='400'
[Mon Aug 26 13:59:23 CST 2024] original='{
"type": "urn:ietf:params:acme:error:malformed",
"detail": "Unable to update challenge :: authorization must be pending",
"status": 400
}'
[Mon Aug 26 13:59:23 CST 2024] response='{
"type": "urn:ietf:params:acme:error:malformed",
"detail": "Unable to update challenge :: authorization must be pending",
"status": 400
}'
[Mon Aug 26 13:59:23 CST 2024] Diagnosis versions:
openssl:openssl
OpenSSL 1.0.2k-fips 26 Jan 2017
Apache:
Apache doesn't exist.
nginx:
nginx version: nginx/1.21.4
built by gcc 4.8.5 20150623 (Red Hat 4.8.5-44) (GCC)
built with OpenSSL 1.1.1q 5 Jul 2022
TLS SNI support enabled
configure arguments: --user=www --group=www --prefix=/www/server/nginx --add-module=/www/server/nginx/src/ngx_devel_kit --add-module=/www/server/nginx/src/lua_nginx_module --add-module=/www/server/nginx/src/ngx_cache_purge --add-module=/www/server/nginx/src/nginx-sticky-module --with-openssl=/www/server/nginx/src/openssl --with-pcre=pcre-8.43 --with-http_v2_module --with-stream --with-stream_ssl_module --with-stream_ssl_preread_module --with-http_stub_status_module --with-http_ssl_module --with-http_image_filter_module --with-http_gzip_static_module --with-http_gunzip_module --with-ipv6 --with-http_sub_module --with-http_flv_module --with-http_addition_module --with-http_realip_module --with-http_mp4_module --add-module=/www/server/nginx/src/ngx_http_substitutions_filter_module-master --with-ld-opt=-Wl,-E --with-cc-opt=-Wno-error --with-ld-opt=-ljemalloc --with-http_dav_module --add-module=/www/server/nginx/src/nginx-dav-ext-module
socat:
socat by Gerhard Rieger and contributors - see www.dest-unreach.org
socat version 1.7.3.2 on Aug 4 2017 04:57:10
running on Linux version #1 SMP Thu Dec 7 15:39:45 UTC 2023, release 3.10.0-1160.105.1.el7.x86_64, machine x86_64
features:
#define WITH_STDIO 1
#define WITH_FDNUM 1
#define WITH_FILE 1
#define WITH_CREAT 1
#define WITH_GOPEN 1
#define WITH_TERMIOS 1
#define WITH_PIPE 1
#define WITH_UNIX 1
#define WITH_ABSTRACT_UNIXSOCKET 1
#define WITH_IP4 1
#define WITH_IP6 1
#define WITH_RAWIP 1
#define WITH_GENERICSOCKET 1
#define WITH_INTERFACE 1
#define WITH_TCP 1
#define WITH_UDP 1
#define WITH_SCTP 1
#define WITH_LISTEN 1
#define WITH_SOCKS4 1
#define WITH_SOCKS4A 1
#define WITH_PROXY 1
#define WITH_SYSTEM 1
#define WITH_EXEC 1
#define WITH_READLINE 1
#define WITH_TUN 1
#define WITH_PTY 1
#define WITH_OPENSSL 1
#undef WITH_FIPS
#define WITH_LIBWRAP 1
#define WITH_SYCLS 1
#define WITH_FILAN 1
#define WITH_RETRY 1
#define WITH_MSGLEVEL 0 /debug/

Copy link

Please upgrade to the latest code and try again first. Maybe it's already fixed. acme.sh --upgrade If it's still not working, please provide the log with --debug 2, otherwise, nobody can help you.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants
@yongzhang52545 and others