VPS侦探论坛

 找回密码
 注册
查看: 3243|回复: 3

【求助】lnmp ssl 无法更新

[复制链接]
发表于 2017-11-2 23:06:58 | 显示全部楼层 |阅读模式

安装完LNMP后,网站开启了SSL,刚检查发现过几天SSL到期,无法更新。
1. 输入官网解决方案无效:自动更新命令:wget -O - http://soft.vpser.net/lnmp/ext/fix_renewssl.sh|bash

2.按照其他帖子解决方案也不行:
输入:/bin/certbot renew --force-renewal --disable-hook-validation --renew-hook "/etc/init.d/nginx reload"

我看着提示是DNS解析错误,
A记录没问题(网站一直可访问),AAAA记录没填。
请问我该如何操作呢?(新手,如果方便的话请尽量告知具体命令,不胜感激)

以下为提示输入代码后提示内容:
  1. [root@2016071346856 ~]# /bin/certbot renew --force-renewal --disable-hook-validation --renew-hook "/etc/init.d/nginx reload"
  2. /opt/eff.org/certbot/venv/lib/python2.6/site-packages/cryptography/__init__.py:26: DeprecationWarning: Python 2.6 is no longer supported by the Python core team, please upgrade your Python. A future version of cryptography will drop support for Python 2.6
  3.   DeprecationWarning
  4. Saving debug log to /var/log/letsencrypt/letsencrypt.log

  5. -------------------------------------------------------------------------------
  6. Processing /etc/letsencrypt/renewal/www.mydomain.com.conf
  7. -------------------------------------------------------------------------------
  8. Plugins selected: Authenticator webroot, Installer None
  9. Renewing an existing certificate
  10. /opt/eff.org/certbot/venv/lib/python2.6/site-packages/acme/jose/jwa.py:110: DeprecationWarning: signer and verifier have been deprecated. Please use sign and verify instead.
  11.   signer = key.signer(self.padding, self.hash)
  12. Performing the following challenges:
  13. http-01 challenge for www.mydomain.com
  14. http-01 challenge for mydomain.com
  15. Waiting for verification...
  16. Cleaning up challenges
  17. Attempting to renew cert (www.mydomain.com) from /etc/letsencrypt/renewal/www.mydomain.com.conf produced an unexpected error: Failed authorization procedure. mydomain.com (http-01): urn:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from http://mydomain.com/.well-known/acme-challenge/0cLkpwKiPfHsQKgoDefkjUEK-97Yv8MINwz8BU2LM4Q: "
  18. 403 Forbidden

  19. 403 Forbidden
  20. ", www.mydomain.com (http-01): urn:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from http://www.mydomain.com/.well-known/acme-challenge/4NpS5boY7wKxQdpGCmagXcfrGlXBZAxuMAa1lSK6RCc: "
  21. 403 Forbidden

  22. 403 Forbidden
  23. ". Skipping.
  24. All renewal attempts failed. The following certs could not be renewed:
  25.   /etc/letsencrypt/live/www.mydomain.com/fullchain.pem (failure)

  26. -------------------------------------------------------------------------------

  27. All renewal attempts failed. The following certs could not be renewed:
  28.   /etc/letsencrypt/live/www.mydomain.com/fullchain.pem (failure)
  29. -------------------------------------------------------------------------------
  30. 1 renew failure(s), 0 parse failure(s)

  31. IMPORTANT NOTES:
  32. - The following errors were reported by the server:

  33.    Domain: mydomain.com
  34.    Type:   unauthorized
  35.    Detail: Invalid response from
  36.    http://mydomain.com/.well-known/acme-challenge/0cLkpwKiPfHsQKgoDefkjUEK-97Yv8MINwz8BU2LM4Q:
  37.    "
  38.    403 Forbidden
  39.    
  40.    403 Forbidden
  41.    "

  42.    Domain: www.mydomain.com
  43.    Type:   unauthorized
  44.    Detail: Invalid response from
  45.    http://www.mydomain.com/.well-known/acme-challenge/4NpS5boY7wKxQdpGCmagXcfrGlXBZAxuMAa1lSK6RCc:
  46.    "
  47.    403 Forbidden
  48.    
  49.    403 Forbidden
  50.    "

  51.    To fix these errors, please make sure that your domain name was
  52.    entered correctly and the DNS A/AAAA record(s) for that domain
  53.    contain(s) the right IP address.
复制代码

美国VPS推荐: 遨游主机LinodeLOCVPS主机云搬瓦工80VPSVultr美国VPS主机中国VPS推荐: 阿里云腾讯云。LNMP付费服务(代装/问题排查)QQ 503228080
发表于 2017-11-3 12:09:50 | 显示全部楼层


之前生成证书正常,续期返回403错误应该是该虚拟主机上又添加了deny规则,贴一下你的配置看一下
Linux下Nginx+MySQL+PHP自动安装工具:https://lnmp.org
 楼主| 发表于 2017-11-21 10:06:01 | 显示全部楼层

回复 2# 的帖子


CPU:1核

内存:1GB

系统盘:50GB

国际带宽:2mbps独享
美国VPS推荐: 遨游主机LinodeLOCVPS主机云搬瓦工80VPSVultr美国VPS主机中国VPS推荐: 阿里云腾讯云。LNMP付费服务(代装/问题排查)QQ 503228080
发表于 2017-11-21 15:06:01 | 显示全部楼层

回复 3# 的帖子




该域名的虚拟主机配置文件不是vps配置
Linux下Nginx+MySQL+PHP自动安装工具:https://lnmp.org
您需要登录后才可以回帖 登录 | 注册

本版积分规则

小黑屋|手机版|Archiver|VPS侦探 ( 鲁ICP备16040043号-1 )

GMT+8, 2024-9-25 01:24 , Processed in 0.025704 second(s), 17 queries .

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表