Skip to content

Challenge sometimes fails, because: Incorrect TXT record #3

@mc3

Description

@mc3

Issue Letsencrypt certs fails sometimes with
Challenge failed, because: Incorrect TXT record
Debug log shows:
acme.verify_order_challenge returned "invalid"
Looking closer, shows that server does not accept the challenge in use with
other altname of this cert. Authorization of other altname succeeds, while fails
with this altname. Both TXT RR show same hash in DNS.

This error happens always if NewOreder.contents shows a 2nd (historical)
Authorization.

Metadata

Metadata

Assignees

Labels

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions