- Posts: 8
- Thank you received: 0
Custom Domain Name Save Problem
6 years 9 months ago #72598
by Dansome
Replied by Dansome on topic Custom Domain Name Save Problem
I waited the 24 hours as you instructed before attempting to change from our alias to the Custom Domain Name. I did the SAVE one time only. It was unsuccessful.
The topic has been locked.
6 years 9 months ago #72602
by Dansome
Replied by Dansome on topic Custom Domain Name Save Problem
I did as you instructed. Cannot SAVE rosetoasters.com in Admin Console on our website for 7881.
The topic has been locked.
6 years 9 months ago #72605
by Dansome
Replied by Dansome on topic Custom Domain Name Save Problem
I did as you asked, but with one, and only one, try to SAVE the custom domain in place of the alias, I still get the error I reported days ago.
The topic has been locked.
- SteveTheTechie
- Offline
- Administrator
-
Less
More
- Posts: 11526
- Thank you received: 3050
6 years 9 months ago - 6 years 9 months ago #72606
by SteveTheTechie
Replied by SteveTheTechie on topic Custom Domain Name Save Problem
I did some more digging, and I think I may have something new to try...
Our cert generation log shows the following:
The "300 Multiple Choices" phrase that shows up twice in the domain validation lines is interesting. So I looked for it in the Lets Encrypt support pages and ran across the following: community.letsencrypt.org/t/300-multiple-choices/35952
Essentially, it is saying that if you have an AAAA record in your DNS it will cause problems for Let's Encrypt cert generation... This is *new* information that we have not been previously aware of.
It turns out that you do have a AAAA record in your DNS per digwebinterface.com (see last line below)
Therefore, please remove any AAAA records from your DNS ... let us know when you have done that... We will have to wait a bit again. (usually a day or less)
I understand you may be a bit frustrated, but this is why we explicitly state that this is advanced stuff... there is really not a way to make it easier.
Our cert generation log shows the following:
Code:
[Fri Oct 26 13:19:46 2018 GMT] Domain List (2 domains) = rosetoasters.com www.rosetoasters.com
[Fri Oct 26 13:19:46 2018 GMT] Loaded/generated Let's Encrypt account key.
[Fri Oct 26 13:19:46 2018 GMT] Loaded/generated private key for Certificate Signing Request (CSR) and loaded/generated encrypted CSR for these domains [rosetoasters.com www.rosetoasters.com].
[Fri Oct 26 13:19:47 2018 GMT] Registered/re-registered with ACME server and accepted Terms of Service. Account ID = 14899026
[Fri Oct 26 13:19:47 2018 GMT] Created token file [/tmp/certvalidation/acme-challenge/CwVGJ_XCzByh6eBl_nzabYaPTHXkqkTFsaybK82kOaE] for domain verification.
[Fri Oct 26 13:19:47 2018 GMT] Created token file [/tmp/certvalidation/acme-challenge/HYhTPZT83FjFWghh0oRS29RweWsNihti011OfRJZ94M] for domain verification.
[Fri Oct 26 13:19:49 2018 GMT] Domain verification results for 'rosetoasters.com': error.
Invalid response from http://rosetoasters.com/.well-known/acme-challenge/CwVGJ_XCzByh6eBl_nzabYaPTHXkqkTFsaybK82kOaE: "<!DOCTYPE HTML PUBLIC \"-//IETF//DTD HTML 2.0//EN\">\n<html><head>\n<title>300 Multiple Choices</title>\n</head><body>\n<h1>Multiple C"
[Fri Oct 26 13:19:49 2018 GMT] Deleted token file [/tmp/certvalidation/acme-challenge/CwVGJ_XCzByh6eBl_nzabYaPTHXkqkTFsaybK82kOaE] used for domain verification.
[Fri Oct 26 13:19:52 2018 GMT] Domain verification results for 'www.rosetoasters.com': error.
Invalid response from http://www.rosetoasters.com/.well-known/acme-challenge/HYhTPZT83FjFWghh0oRS29RweWsNihti011OfRJZ94M: "<!DOCTYPE HTML PUBLIC \"-//IETF//DTD HTML 2.0//EN\">\n<html><head>\n<title>300 Multiple Choices</title>\n</head><body>\n<h1>Multiple C"
[Fri Oct 26 13:19:52 2018 GMT] Deleted token file [/tmp/certvalidation/acme-challenge/HYhTPZT83FjFWghh0oRS29RweWsNihti011OfRJZ94M] used for domain verification.
[Fri Oct 26 13:19:52 2018 GMT] Could not generate the certificate--request_certificate() failed: Error creating new cert :: authorizations for these names not found or expired: rosetoasters.com, www.rosetoasters.com
The "300 Multiple Choices" phrase that shows up twice in the domain validation lines is interesting. So I looked for it in the Lets Encrypt support pages and ran across the following: community.letsencrypt.org/t/300-multiple-choices/35952
Essentially, it is saying that if you have an AAAA record in your DNS it will cause problems for Let's Encrypt cert generation... This is *new* information that we have not been previously aware of.
It turns out that you do have a AAAA record in your DNS per digwebinterface.com (see last line below)
Code:
rosetoasters.com. 3599 IN A 50.19.253.65
rosetoasters.com. 21599 IN NS ns1076.ui-dns.biz.
rosetoasters.com. 21599 IN NS ns1067.ui-dns.org.
rosetoasters.com. 21599 IN NS ns1040.ui-dns.com.
rosetoasters.com. 21599 IN NS ns1091.ui-dns.de.
rosetoasters.com. 21599 IN SOA ns1067.ui-dns.org. hostmaster.1und1.com. 2017060103 28800 7200 604800 600
rosetoasters.com. 3599 IN MX 10 mail.rosetoasters.com.
rosetoasters.com. 3599 IN AAAA 2607:f1c0:100f:f000::2c3
Therefore, please remove any AAAA records from your DNS ... let us know when you have done that... We will have to wait a bit again. (usually a day or less)
I understand you may be a bit frustrated, but this is why we explicitly state that this is advanced stuff... there is really not a way to make it easier.
Last edit: 6 years 9 months ago by SteveTheTechie.
The following user(s) said Thank You: Dansome
The topic has been locked.
6 years 9 months ago #72609
by Dansome
Replied by Dansome on topic Custom Domain Name Save Problem
I removed the AAAA DNS records you asked me to. I waited 24 hours, and I still get the SAVE error when I try to specify my custom domain name of rosetoasters.com.
At 1&1 I also see two additional DNS records as follows:
Type Host Name Value Service
CNAME _domainconnect _domainconnect.1and1.com Standard Record
CNAME autodiscover adsredir.1and1.info Standard Record
Are these also screwing things up as did the two AAAA records that you had me delete?
At 1&1 I also see two additional DNS records as follows:
Type Host Name Value Service
CNAME _domainconnect _domainconnect.1and1.com Standard Record
CNAME autodiscover adsredir.1and1.info Standard Record
Are these also screwing things up as did the two AAAA records that you had me delete?
The topic has been locked.
- SteveTheTechie
- Offline
- Administrator
-
Less
More
- Posts: 11526
- Thank you received: 3050
6 years 9 months ago - 6 years 9 months ago #72613
by SteveTheTechie
Replied by SteveTheTechie on topic Custom Domain Name Save Problem
I was able to save the domain name in the admin console today (10/28/2018). Everything looks fine to me now. I am able to access the website via the custom domain name. I believe that removing the AAAA record was the key.
It looks like the cert was successfully generated on 10/26, per our admin tools. Perhaps you just did not wait long enough...
It looks like the cert was successfully generated on 10/26, per our admin tools. Perhaps you just did not wait long enough...
Code:
letsencrypt.key EXISTS.
rosetoasters.com.key EXISTS.
rosetoasters.com.csr EXISTS.
rosetoasters.com.crt EXISTS.
ssl_rosetoasters.com_tld.conf EXISTS.
Cert Expiration Date/Time: Sat Jan 26 02:01:07 2019 UTC
Last edit: 6 years 9 months ago by SteveTheTechie.
The following user(s) said Thank You: Brian
The topic has been locked.
Time to create page: 0.131 seconds
Copyright © 2025 FreeToastHost 3 Support. All Rights Reserved.