Skip to content

Instantly share code, notes, and snippets.

@sahsanu
Created May 30, 2017 22:02
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save sahsanu/773de6c00958107b1fdb7e31c5985a2c to your computer and use it in GitHub Desktop.
Save sahsanu/773de6c00958107b1fdb7e31c5985a2c to your computer and use it in GitHub Desktop.
get cert redirecting with domain
2017-05-30 21:55:38,239:DEBUG:certbot.main:certbot version: 0.14.2
2017-05-30 21:55:38,240:DEBUG:certbot.main:Arguments: ['--webroot', '-w', '/usr/share/nginx/html/', '-d', 'redirect.27a.net', '--register-unsafely-without-email', '--dry-run']
2017-05-30 21:55:38,240:DEBUG:certbot.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#apache,PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2017-05-30 21:55:38,310:DEBUG:certbot.plugins.selection:Requested authenticator webroot and installer <certbot.cli._Default object at 0x7f32db1c9590>
2017-05-30 21:55:38,310:DEBUG:certbot.cli:Default Detector is Namespace(account=<certbot.cli._Default object at 0x7f32db1a3590>, agree_dev_preview=None, allow_subset_of_names=<certbot.cli._Default object at 0x7f32db1a3190>, apache=<certbot.cli._Default object at 0x7f32db1c9890>, apache_challenge_location=<certbot.cli._Default object at 0x7f32db1d04d0>, apache_ctl=<certbot.cli._Default object at 0x7f32db19a350>, apache_dismod=<certbot.cli._Default object at 0x7f32db1c9ed0>, apache_enmod=<certbot.cli._Default object at 0x7f32db1c9dd0>, apache_handle_modules=<certbot.cli._Default object at 0x7f32db1d0650>, apache_handle_sites=<certbot.cli._Default object at 0x7f32db1d07d0>, apache_init_script=<certbot.cli._Default object at 0x7f32db1d09d0>, apache_le_vhost_ext=<certbot.cli._Default object at 0x7f32db1d0050>, apache_logs_root=<certbot.cli._Default object at 0x7f32db1d0390>, apache_server_root=<certbot.cli._Default object at 0x7f32db1d0190>, apache_vhost_root=<certbot.cli._Default object at 0x7f32db1d0290>, authenticator='webroot', break_my_certs=<certbot.cli._Default object at 0x7f32db1c21d0>, cert_path=<certbot.cli._Default object at 0x7f32db1c5d50>, certname=<certbot.cli._Default object at 0x7f32db208f10>, chain_path=<certbot.cli._Default object at 0x7f32db1c9090>, checkpoints=<certbot.cli._Default object at 0x7f32db1c5850>, config_dir=<certbot.cli._Default object at 0x7f32db1c9190>, config_file=None, configurator=<certbot.cli._Default object at 0x7f32db1c9590>, csr=<certbot.cli._Default object at 0x7f32db1c5610>, debug=<certbot.cli._Default object at 0x7f32db1a3c90>, debug_challenges=<certbot.cli._Default object at 0x7f32db1a3d90>, dialog=None, domains='redirect.27a.net', dry_run=True, duplicate=<certbot.cli._Default object at 0x7f32db1a3690>, eff_email=<certbot.cli._Default object at 0x7f32db208790>, email=<certbot.cli._Default object at 0x7f32db208910>, expand=<certbot.cli._Default object at 0x7f32db208350>, force_interactive=<certbot.cli._Default object at 0x7f32db20c5d0>, fullchain_path=<certbot.cli._Default object at 0x7f32db1c5f50>, func=<function certonly at 0x7f32db3f5938>, hsts=<certbot.cli._Default object at 0x7f32db1c26d0>, http01_port=<certbot.cli._Default object at 0x7f32db1c20d0>, ifaces=<certbot.cli._Default object at 0x7f32db1c5b50>, init=<certbot.cli._Default object at 0x7f32db1c5950>, installer=<certbot.cli._Default object at 0x7f32db1c9590>, key_path=<certbot.cli._Default object at 0x7f32db1c5e50>, logs_dir=<certbot.cli._Default object at 0x7f32db1c9390>, manual=<certbot.cli._Default object at 0x7f32db1c9b90>, manual_auth_hook=<certbot.cli._Default object at 0x7f32db1c9d90>, manual_cleanup_hook=<certbot.cli._Default object at 0x7f32db1d0c10>, manual_public_ip_logging_ok=<certbot.cli._Default object at 0x7f32db1c9e50>, must_staple=<certbot.cli._Default object at 0x7f32db1c23d0>, nginx=<certbot.cli._Default object at 0x7f32db1c9990>, nginx_ctl=<certbot.cli._Default object at 0x7f32db1c9910>, nginx_server_root=<certbot.cli._Default object at 0x7f32db1c9b10>, no_bootstrap=<certbot.cli._Default object at 0x7f32db1a3990>, no_self_upgrade=<certbot.cli._Default object at 0x7f32db1a3890>, no_verify_ssl=<certbot.cli._Default object at 0x7f32db1a3e90>, noninteractive_mode=<certbot.cli._Default object at 0x7f32db20c2d0>, num=<certbot.cli._Default object at 0x7f32db1c5490>, os_packages_only=<certbot.cli._Default object at 0x7f32db1a3790>, post_hook=<certbot.cli._Default object at 0x7f32db1c2fd0>, pre_hook=<certbot.cli._Default object at 0x7f32db1c2ed0>, pref_challs=<certbot.cli._Default object at 0x7f32db1c2dd0>, prepare=<certbot.cli._Default object at 0x7f32db1c5a50>, quiet=<certbot.cli._Default object at 0x7f32db1a3a90>, reason=<certbot.cli._Default object at 0x7f32db1c5750>, redirect=<certbot.cli._Default object at 0x7f32db1c24d0>, register_unsafely_without_email=True, reinstall=<certbot.cli._Default object at 0x7f32db208090>, renew_by_default=<certbot.cli._Default object at 0x7f32db1fdb10>, renew_hook=<certbot.cli._Default object at 0x7f32db1c5110>, renew_with_new_domains=<certbot.cli._Default object at 0x7f32db1a3090>, rsa_key_size=<certbot.cli._Default object at 0x7f32db1c22d0>, server=<certbot.cli._Default object at 0x7f32db1c9490>, staging=<certbot.cli._Default object at 0x7f32db1a3b90>, standalone=<certbot.cli._Default object at 0x7f32db1c9a90>, standalone_supported_challenges=<certbot.cli._Default object at 0x7f32db1c9710>, staple=<certbot.cli._Default object at 0x7f32db1c2ad0>, strict_permissions=<certbot.cli._Default object at 0x7f32db1c2cd0>, text_mode=<certbot.cli._Default object at 0x7f32db20c210>, tls_sni_01_port=<certbot.cli._Default object at 0x7f32db1a3f90>, tos=<certbot.cli._Default object at 0x7f32db1a33d0>, uir=<certbot.cli._Default object at 0x7f32db1c28d0>, update_registration=<certbot.cli._Default object at 0x7f32db208a90>, user_agent=<certbot.cli._Default object at 0x7f32db20cb50>, validate_hooks=<certbot.cli._Default object at 0x7f32db1c5210>, verb='certonly', verbose_count=<certbot.cli._Default object at 0x7f32db20c390>, webroot=True, webroot_map=<certbot.cli._Default object at 0x7f32db1c9310>, webroot_path='/usr/share/nginx/html/', work_dir=<certbot.cli._Default object at 0x7f32db1c9290>)
2017-05-30 21:55:38,344:DEBUG:certbot.log:Root logging level set at 20
2017-05-30 21:55:38,345:INFO:certbot.log:Saving debug log to /var/log/letsencrypt/letsencrypt.log
2017-05-30 21:55:38,347:DEBUG:certbot.plugins.selection:Requested authenticator webroot and installer None
2017-05-30 21:55:38,354:DEBUG:certbot.plugins.selection:Single candidate plugin: * webroot
Description: Place files in webroot directory
Interfaces: IAuthenticator, IPlugin
Entry point: webroot = certbot.plugins.webroot:Authenticator
Initialized: <certbot.plugins.webroot.Authenticator object at 0x7f32db1c9150>
Prep: True
2017-05-30 21:55:38,355:DEBUG:certbot.plugins.selection:Selected authenticator <certbot.plugins.webroot.Authenticator object at 0x7f32db1c9150> and installer None
2017-05-30 21:55:38,364:DEBUG:certbot.main:Picked account: <Account(RegistrationResource(body=Registration(status=None, contact=(), agreement=u'https://letsencrypt.org/documents/LE-SA-v1.1.1-August-1-2016.pdf', key=JWKRSA(key=<ComparableRSAKey(<cryptography.hazmat.backends.openssl.rsa._RSAPublicKey object at 0x7f32ddae3990>)>)), uri=u'https://acme-staging.api.letsencrypt.org/acme/reg/2401646', new_authzr_uri=u'https://acme-staging.api.letsencrypt.org/acme/new-authz', terms_of_service=u'https://letsencrypt.org/documents/LE-SA-v1.1.1-August-1-2016.pdf'), 61ac3980578fac4597d1f3533d1c1912, Meta(creation_host=u'nj.corp.sahsanu.com', creation_dt=datetime.datetime(2017, 5, 30, 21, 51, 41, tzinfo=<UTC>)))>
2017-05-30 21:55:38,366:DEBUG:acme.client:Sending GET request to https://acme-staging.api.letsencrypt.org/directory.
2017-05-30 21:55:38,376:DEBUG:requests.packages.urllib3.connectionpool:Starting new HTTPS connection (1): acme-staging.api.letsencrypt.org
2017-05-30 21:55:38,521:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 473
2017-05-30 21:55:38,522:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Content-Type: application/json
Content-Length: 473
Boulder-Request-Id: JGQ1OGUQLbvoM7IZ_QVU5a2_V-lYyQNhxtu_VjYtv8Q
Replay-Nonce: 7JAXrubyArCneajCq06RXnBxOexxCbxvh8KlXe-6wS0
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Tue, 30 May 2017 21:55:38 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:38 GMT
Connection: keep-alive
{
"key-change": "https://acme-staging.api.letsencrypt.org/acme/key-change",
"new-authz": "https://acme-staging.api.letsencrypt.org/acme/new-authz",
"new-cert": "https://acme-staging.api.letsencrypt.org/acme/new-cert",
"new-reg": "https://acme-staging.api.letsencrypt.org/acme/new-reg",
"revoke-cert": "https://acme-staging.api.letsencrypt.org/acme/revoke-cert",
"uGS803NK6lM": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
}
2017-05-30 21:55:38,524:INFO:certbot.main:Obtaining a new certificate
2017-05-30 21:55:38,524:DEBUG:acme.client:Requesting fresh nonce
2017-05-30 21:55:38,524:DEBUG:acme.client:Sending HEAD request to https://acme-staging.api.letsencrypt.org/acme/new-authz.
2017-05-30 21:55:38,593:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "HEAD /acme/new-authz HTTP/1.1" 405 0
2017-05-30 21:55:38,594:DEBUG:acme.client:Received response:
HTTP 405
Server: nginx
Content-Type: application/problem+json
Content-Length: 91
Allow: POST
Boulder-Request-Id: Y0hDsePfdSmT4RPoLoOhvzz_Td6koSKvPuupnQe0LOY
Replay-Nonce: SgEvf3iNe3gwimNGcWpHBfd_XUuAlhR4utl-Hd96YLo
Expires: Tue, 30 May 2017 21:55:38 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:38 GMT
Connection: keep-alive
2017-05-30 21:55:38,594:DEBUG:acme.client:Storing nonce: SgEvf3iNe3gwimNGcWpHBfd_XUuAlhR4utl-Hd96YLo
2017-05-30 21:55:38,595:DEBUG:acme.client:JWS payload:
{
"identifier": {
"type": "dns",
"value": "redirect.27a.net"
},
"resource": "new-authz"
}
2017-05-30 21:55:38,601:DEBUG:acme.client:Sending POST request to https://acme-staging.api.letsencrypt.org/acme/new-authz:
{
"header": {
"alg": "RS256",
"jwk": {
"e": "AQAB",
"kty": "RSA",
"n": "z84ktp9sKbkgwCh-D0CTUB_Dd61658jhkhX3oa1VbO3Jh_HqHbJa4401Ry2vn8co3wjalY7F2fpkrALwZaVsmm2uV-3Khg1wUWhwc5p_gFQv6QyowdfKSACJ-kleda_7VZcDWcq68fwVHDYucC2EzFb1xVeFfy7aGtE-EmWIDc6xs3SzAv5VyDqOCtWEUjSf6G7kaEy_aflETdwQSQAQIWerhyBk_cIJMfKNkujxIBnL03VmHinspIlNB2DBpdDNO1B_7gxaJrIN8vPhDhfqfB_yuP0KyLPiqRmdZ4Q1mpwrJ7zXKe70tM6M8qJhaPkQreD1kmLE6Jf5HMNpLCeufQ"
}
},
"protected": "eyJub25jZSI6ICJTZ0V2ZjNpTmUzZ3dpbU5HY1dwSEJmZF9YVXVBbGhSNHV0bC1IZDk2WUxvIn0",
"payload": "ewogICJpZGVudGlmaWVyIjogewogICAgInR5cGUiOiAiZG5zIiwgCiAgICAidmFsdWUiOiAicmVkaXJlY3QuMjdhLm5ldCIKICB9LCAKICAicmVzb3VyY2UiOiAibmV3LWF1dGh6Igp9",
"signature": "HgTe1t3_Sq1uZzTrzupuUSM5idsMAUB9pMgatlw2eMTqDHjVKgo9EpMs48KKNuT63U-UiiJXKQKGVeHCdHBHEeuoUGFLqnfmCUAIpLEgSzRZql_1Et5oBkOY6QHodw4LUrJ6po1pTGfFZx7NEA99QKVCLCxyk2-8AlImO2Jm701CMXv8Mp9bhGesgTRUTdRRuMlJ9FYpCoWAytUakG41pgdNSMlxaKQYxVlD1Y3LGbrkhfECl2RClRgdU-YXXS9VtmFnBRxHFs5XP1BSRbh5ambJjaxLSlVdHpAkNeNnmvChHV2S-KkNdyAXLEq6FdZWSnIq2kCbNj2zP8NU164-HQ"
}
2017-05-30 21:55:38,699:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "POST /acme/new-authz HTTP/1.1" 201 1010
2017-05-30 21:55:38,700:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Content-Type: application/json
Content-Length: 1010
Boulder-Request-Id: fSoOC2qNsej6TPMtJFANp8Kh0JyUScWhYW5h3XuZWMg
Boulder-Requester: 2401646
Link: <https://acme-staging.api.letsencrypt.org/acme/new-cert>;rel="next"
Location: https://acme-staging.api.letsencrypt.org/acme/authz/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM
Replay-Nonce: 7EHcw7E9hijhOzsyNf6hZNTk12FhQEHzd8u_SNzFUgQ
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Tue, 30 May 2017 21:55:38 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:38 GMT
Connection: keep-alive
{
"identifier": {
"type": "dns",
"value": "redirect.27a.net"
},
"status": "pending",
"expires": "2017-06-06T21:55:38.656882649Z",
"challenges": [
{
"type": "dns-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443418",
"token": "1R-XztXdv3xpEFJ9KLVTkJ-rbQgb76WFmsg0UN2I9bQ"
},
{
"type": "tls-sni-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443419",
"token": "Kphn3c9pwgU1VkwgjZdu8Xjjlb8N3fr6ZXZqs9VelSY"
},
{
"type": "http-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420",
"token": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q"
}
],
"combinations": [
[
0
],
[
2
],
[
1
]
]
}
2017-05-30 21:55:38,701:DEBUG:acme.client:Storing nonce: 7EHcw7E9hijhOzsyNf6hZNTk12FhQEHzd8u_SNzFUgQ
2017-05-30 21:55:38,703:INFO:certbot.auth_handler:Performing the following challenges:
2017-05-30 21:55:38,703:INFO:certbot.auth_handler:http-01 challenge for redirect.27a.net
2017-05-30 21:55:38,704:INFO:certbot.plugins.webroot:Using the webroot path /usr/share/nginx/html for all unmatched domains.
2017-05-30 21:55:38,704:DEBUG:certbot.plugins.webroot:Creating root challenges validation dir at /usr/share/nginx/html/.well-known/acme-challenge
2017-05-30 21:55:38,712:DEBUG:certbot.plugins.webroot:Attempting to save validation to /usr/share/nginx/html/.well-known/acme-challenge/5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q
2017-05-30 21:55:38,713:INFO:certbot.auth_handler:Waiting for verification...
2017-05-30 21:55:38,713:DEBUG:acme.client:JWS payload:
{
"keyAuthorization": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q.keLSC3fehY9YdXzTeRXnKRBgN4iDkqgUWKdSlRrOq8U",
"type": "http-01",
"resource": "challenge"
}
2017-05-30 21:55:38,720:DEBUG:acme.client:Sending POST request to https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420:
{
"header": {
"alg": "RS256",
"jwk": {
"e": "AQAB",
"kty": "RSA",
"n": "z84ktp9sKbkgwCh-D0CTUB_Dd61658jhkhX3oa1VbO3Jh_HqHbJa4401Ry2vn8co3wjalY7F2fpkrALwZaVsmm2uV-3Khg1wUWhwc5p_gFQv6QyowdfKSACJ-kleda_7VZcDWcq68fwVHDYucC2EzFb1xVeFfy7aGtE-EmWIDc6xs3SzAv5VyDqOCtWEUjSf6G7kaEy_aflETdwQSQAQIWerhyBk_cIJMfKNkujxIBnL03VmHinspIlNB2DBpdDNO1B_7gxaJrIN8vPhDhfqfB_yuP0KyLPiqRmdZ4Q1mpwrJ7zXKe70tM6M8qJhaPkQreD1kmLE6Jf5HMNpLCeufQ"
}
},
"protected": "eyJub25jZSI6ICI3RUhjdzdFOWhpamhPenN5TmY2aFpOVGsxMkZoUUVIemQ4dV9TTnpGVWdRIn0",
"payload": "ewogICJrZXlBdXRob3JpemF0aW9uIjogIjVkd3ZLb210dUYtVkxYV2pYWXZpT3ZJYmhEU00tSTVUaXFDeFlmb3lpMVEua2VMU0MzZmVoWTlZZFh6VGVSWG5LUkJnTjRpRGtxZ1VXS2RTbFJyT3E4VSIsIAogICJ0eXBlIjogImh0dHAtMDEiLCAKICAicmVzb3VyY2UiOiAiY2hhbGxlbmdlIgp9",
"signature": "nb20QHOKMwHPVilCwAoyOTOcWfa5Mjjg5HYtaW7mP49ZBobeLFKTHs5T-PM9IjmuKbJSRK5gUTn5nX_bovf_LdgSVdH2q5SBJw7wgfjCPgmN7jau9zl1sOec_Nuet_Xa_vBmafyRhg3W_vFM8R8Bm56lvxLSRpQlYhJO_dXyUOnASbWy4fYGX3hrjtKe1gNLDAkE9aa42yPypVTb_5jb0RFranswj2C_4d2hCzoQZcJB-XSyuzuMYjqs3sOdhyAneOi3rHgyMdraJE9PRtlqgXz0NFFEu8vGwKoOdHuYrEzLp8jxzfAWUeyEeVlNXuFXuHuHhKgORpTdpl9aY4sh6w"
}
2017-05-30 21:55:38,820:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "POST /acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420 HTTP/1.1" 202 338
2017-05-30 21:55:38,822:DEBUG:acme.client:Received response:
HTTP 202
Server: nginx
Content-Type: application/json
Content-Length: 338
Boulder-Request-Id: d9fR_NBKsOlkbwggonxhYvfIaRN_aq4zAMC10FD6nqM
Boulder-Requester: 2401646
Link: <https://acme-staging.api.letsencrypt.org/acme/authz/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM>;rel="up"
Location: https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420
Replay-Nonce: P0XGFw5WDJrwWZattAtcAQUW4Iu9S62DMaI7lLR7xoE
Expires: Tue, 30 May 2017 21:55:38 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:38 GMT
Connection: keep-alive
{
"type": "http-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420",
"token": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q",
"keyAuthorization": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q.keLSC3fehY9YdXzTeRXnKRBgN4iDkqgUWKdSlRrOq8U"
}
2017-05-30 21:55:38,822:DEBUG:acme.client:Storing nonce: P0XGFw5WDJrwWZattAtcAQUW4Iu9S62DMaI7lLR7xoE
2017-05-30 21:55:41,826:DEBUG:acme.client:Sending GET request to https://acme-staging.api.letsencrypt.org/acme/authz/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM.
2017-05-30 21:55:41,903:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "GET /acme/authz/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM HTTP/1.1" 200 1863
2017-05-30 21:55:41,905:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Content-Type: application/json
Content-Length: 1863
Boulder-Request-Id: W2srVX5gG1q8uQWJLFwIdvVYKYrhVJNU6iXl4k9VaWY
Link: <https://acme-staging.api.letsencrypt.org/acme/new-cert>;rel="next"
Replay-Nonce: 2u-50yafyInXVLLSzGu00QA9a74wnTWTBKjdK6Pa3Go
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Tue, 30 May 2017 21:55:41 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:41 GMT
Connection: keep-alive
{
"identifier": {
"type": "dns",
"value": "redirect.27a.net"
},
"status": "valid",
"expires": "2017-06-29T21:55:39Z",
"challenges": [
{
"type": "dns-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443418",
"token": "1R-XztXdv3xpEFJ9KLVTkJ-rbQgb76WFmsg0UN2I9bQ"
},
{
"type": "tls-sni-01",
"status": "pending",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443419",
"token": "Kphn3c9pwgU1VkwgjZdu8Xjjlb8N3fr6ZXZqs9VelSY"
},
{
"type": "http-01",
"status": "valid",
"uri": "https://acme-staging.api.letsencrypt.org/acme/challenge/UlHx_GqHlTO85HeWgBPSNGh6PSinJCWSC4n6Z8ihoZM/41443420",
"token": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q",
"keyAuthorization": "5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q.keLSC3fehY9YdXzTeRXnKRBgN4iDkqgUWKdSlRrOq8U",
"validationRecord": [
{
"url": "http://198.98.49.246.dnsip.xyz/.well-known/acme-challenge/5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q",
"hostname": "198.98.49.246.dnsip.xyz",
"port": "80",
"addressesResolved": [
"198.98.49.246"
],
"addressUsed": "198.98.49.246",
"addressesTried": []
},
{
"url": "http://redirect.27a.net/.well-known/acme-challenge/5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q",
"hostname": "redirect.27a.net",
"port": "80",
"addressesResolved": [
"163.172.166.61"
],
"addressUsed": "163.172.166.61",
"addressesTried": []
}
]
}
],
"combinations": [
[
0
],
[
2
],
[
1
]
]
}
2017-05-30 21:55:41,906:INFO:certbot.auth_handler:Cleaning up challenges
2017-05-30 21:55:41,907:DEBUG:certbot.plugins.webroot:Removing /usr/share/nginx/html/.well-known/acme-challenge/5dwvKomtuF-VLXWjXYviOvIbhDSM-I5TiqCxYfoyi1Q
2017-05-30 21:55:41,908:INFO:certbot.plugins.webroot:Unable to clean up challenge directory /usr/share/nginx/html/.well-known/acme-challenge
2017-05-30 21:55:41,909:DEBUG:certbot.plugins.webroot:Error was: [Errno 39] Directory not empty: '/usr/share/nginx/html/.well-known/acme-challenge'
2017-05-30 21:55:42,050:DEBUG:certbot.crypto_util:Generating key (2048 bits), not saving to file
2017-05-30 21:55:42,055:DEBUG:certbot.crypto_util:Creating CSR: not saving to file
2017-05-30 21:55:42,055:DEBUG:certbot.client:CSR: CSR(file=None, data='-----BEGIN CERTIFICATE REQUEST-----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\nsIwmjTSTSQ==\n-----END CERTIFICATE REQUEST-----\n', form='pem'), domains: [u'redirect.27a.net']
2017-05-30 21:55:42,056:DEBUG:acme.client:Requesting issuance...
2017-05-30 21:55:42,056:DEBUG:acme.client:JWS payload:
{
"resource": "new-cert",
"csr": "MIICczCCAVsCAQIwADCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJxGPtS28h6bZPuQ1bg1oJDju1Y6dgawnVCO32g4g-krCuS44VnJESrU3sIqnl50buImMv8AgEpoTYw3rdqgu-_yL_wrlmrRswiLmcfe3DY3hw8sg5upmtwJ-pqldZhtyKrOwoTI_-mvJoZzh9k4Rg4vu-_WohzG5EkycbkNHT6tX_zijQ65CMBZQW131Himz9mOo0hy0cro9Yg-Qnh9-e0M6ExxzSmxKTCOuP-d1-92xXdLs9KLifBY7MmeP2rlAgdTppnJowi6nf57WTEdwV-lmwTFiTrTjOkPFfC_-4mpfeaUBkcroCWO8QV6SbVSFeWTTCkOUofcu3sweQCHl8CAwEAAaAuMCwGCSqGSIb3DQEJDjEfMB0wGwYDVR0RBBQwEoIQcmVkaXJlY3QuMjdhLm5ldDANBgkqhkiG9w0BAQsFAAOCAQEAsO5zqvyER6wIVAq_keEAIuyOJEnSmGkvc15ddRO8mkXbnPdmSmgZXP4-8FY39JcN6ECjihRuZgDfn38bFUc9tdGmhq8JGmh1UXqqa6lwrcbHaZsW4yOldm4RKTtBt8w2fxzdnjBV2AjK4Tw7ZdXQaVLgX2JYJ91n0CLdHgKdW5pRD7W4s_UgYjakmzRKPgOnKh1OYAe74qQlhPtlPrLwRnpOzxTaZBxJXdAjyGNv4g6rT52r1o2N6iYs08Rx6TBzuM1konvaPxa_2Cy6nX3jlZUxHacwK7IqrFePiVpG5_mOBul7Jq9UUnr4oXHv6myi4XqA9BE163vwsIwmjTSTSQ"
}
2017-05-30 21:55:42,061:DEBUG:acme.client:Sending POST request to https://acme-staging.api.letsencrypt.org/acme/new-cert:
{
"header": {
"alg": "RS256",
"jwk": {
"e": "AQAB",
"kty": "RSA",
"n": "z84ktp9sKbkgwCh-D0CTUB_Dd61658jhkhX3oa1VbO3Jh_HqHbJa4401Ry2vn8co3wjalY7F2fpkrALwZaVsmm2uV-3Khg1wUWhwc5p_gFQv6QyowdfKSACJ-kleda_7VZcDWcq68fwVHDYucC2EzFb1xVeFfy7aGtE-EmWIDc6xs3SzAv5VyDqOCtWEUjSf6G7kaEy_aflETdwQSQAQIWerhyBk_cIJMfKNkujxIBnL03VmHinspIlNB2DBpdDNO1B_7gxaJrIN8vPhDhfqfB_yuP0KyLPiqRmdZ4Q1mpwrJ7zXKe70tM6M8qJhaPkQreD1kmLE6Jf5HMNpLCeufQ"
}
},
"protected": "eyJub25jZSI6ICJQMFhHRnc1V0RKcndXWmF0dEF0Y0FRVVc0SXU5UzYyRE1hSTdsTFI3eG9FIn0",
"payload": "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",
"signature": "qB-M1dOyLZE3ywDoEnqNb_jxWcfm2Lj8gZfAjgM7XGiKXjkmvtL3jkWGu-Jq2LCbQWI9LcooNgXXtIGaR7omOPi5BzAbKOZ65VtLSiwzKfBFAtGAsjnXY2A7aknM8bQmObQYPmfWzEcRDXse_XaXfOyo64rYhpYSFYtfgu2M2DqLPeUy01uDdIoEuJgvXIK1_9oj4i8HPp4Lv4M9kwxAehxptbywSkIsuKgZ_WnYNKAdr1UpYmhGbFr6Irs-StZiLjQAkFpOoJtBis8OTgs27bGSEaf-5twCEI6UFDj8IO64a9AoNVZiK2xVyKNS7rbupRL2Gs-1D9oKB8yWgAEJpw"
}
2017-05-30 21:55:42,178:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "POST /acme/new-cert HTTP/1.1" 201 1256
2017-05-30 21:55:42,186:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Content-Type: application/pkix-cert
Content-Length: 1256
Boulder-Request-Id: xcKgtsAIbfFFcPtv5RE5WvO7au-tQBwCk9vSy0jUC68
Boulder-Requester: 2401646
Link: <https://acme-staging.api.letsencrypt.org/acme/issuer-cert>;rel="up"
Location: https://acme-staging.api.letsencrypt.org/acme/cert/fa4bf14b12a5009a0113cd6f068d4110a785
Replay-Nonce: Sp1Df--ljXebfZ2Y8tnvJLF_75rEe0GoYXxTSRO3WF4
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Tue, 30 May 2017 21:55:42 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:42 GMT
Connection: keep-alive
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
2017-05-30 21:55:42,186:DEBUG:acme.client:Storing nonce: Sp1Df--ljXebfZ2Y8tnvJLF_75rEe0GoYXxTSRO3WF4
2017-05-30 21:55:42,279:DEBUG:acme.client:Sending GET request to https://acme-staging.api.letsencrypt.org/acme/issuer-cert.
2017-05-30 21:55:42,354:DEBUG:requests.packages.urllib3.connectionpool:https://acme-staging.api.letsencrypt.org:443 "GET /acme/issuer-cert HTTP/1.1" 200 1199
2017-05-30 21:55:42,357:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Content-Type: application/pkix-cert
Content-Length: 1199
Boulder-Request-Id: FKkxwe_dXRJgy4ppp06utdbx72sIjE-4HjEq8q79oVE
Replay-Nonce: JyVaYxYZyiJMWpEr91QDJ1I9ONYULPEd8BMApUoRfRo
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800
Expires: Tue, 30 May 2017 21:55:42 GMT
Cache-Control: max-age=0, no-cache, no-store
Pragma: no-cache
Date: Tue, 30 May 2017 21:55:42 GMT
Connection: keep-alive
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
2017-05-30 21:55:42,383:DEBUG:certbot.client:Dry run: Skipping creating new lineage for redirect.27a.net
2017-05-30 21:55:42,383:DEBUG:certbot.reporter:Reporting to user: The dry run was successful.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment