2026-05-16 10:00:04,177:DEBUG:certbot._internal.main:certbot version: 1.22.0
2026-05-16 10:00:04,180:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/letsencrypt
2026-05-16 10:00:04,180:DEBUG:certbot._internal.main:Arguments: ['--webroot', '-w', '/var/www/html', '--agree-tos', '-n', '--email', 'root@srv.hosttick.net', '-d', 'srv.hosttick.net']
2026-05-16 10:00:04,181:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2026-05-16 10:00:04,233:DEBUG:certbot._internal.log:Root logging level set at 30
2026-05-16 10:00:04,237:DEBUG:certbot._internal.plugins.selection:Requested authenticator webroot and installer None
2026-05-16 10:00:04,243:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * webroot
Description: Place files in webroot directory
Interfaces: Authenticator, Plugin
Entry point: webroot = certbot._internal.plugins.webroot:Authenticator
Initialized: <certbot._internal.plugins.webroot.Authenticator object at 0x7fe5e5b8f2b0>
Prep: True
2026-05-16 10:00:04,244:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot._internal.plugins.webroot.Authenticator object at 0x7fe5e5b8f2b0> and installer None
2026-05-16 10:00:04,244:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator webroot, Installer None
2026-05-16 10:00:04,263:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/3264761711', new_authzr_uri=None, terms_of_service=None), adc831809a9116ff175d58e1e5ae4096, Meta(creation_dt=datetime.datetime(2026, 4, 22, 14, 0, 6, tzinfo=<UTC>), creation_host='srv.hosttick.net', register_to_eff=None))>
2026-05-16 10:00:04,265:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
2026-05-16 10:00:04,271:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:443
2026-05-16 10:00:05,018:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 1033
2026-05-16 10:00:05,020:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:05 GMT
Content-Type: application/json
Content-Length: 1033
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  "meta": {
    "caaIdentities": [
      "letsencrypt.org"
    ],
    "profiles": {
      "classic": "https://letsencrypt.org/docs/profiles#classic",
      "shortlived": "https://letsencrypt.org/docs/profiles#shortlived",
      "tlsclient": "https://letsencrypt.org/docs/profiles#tlsclient",
      "tlsserver": "https://letsencrypt.org/docs/profiles#tlsserver"
    },
    "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.6-August-18-2025.pdf",
    "website": "https://letsencrypt.org"
  },
  "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  "renewalInfo": "https://acme-v02.api.letsencrypt.org/acme/renewal-info",
  "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert",
  "s4aZuz7ed0w": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417"
}
2026-05-16 10:00:05,022:DEBUG:certbot._internal.display.obj:Notifying user: Requesting a certificate for srv.hosttick.net
2026-05-16 10:00:05,218:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0006_key-certbot.pem
2026-05-16 10:00:05,226:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0006_csr-certbot.pem
2026-05-16 10:00:05,228:DEBUG:acme.client:Requesting fresh nonce
2026-05-16 10:00:05,228:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
2026-05-16 10:00:05,472:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
2026-05-16 10:00:05,473:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:06 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: Xyb1-VAdXb8lgPs9Wrsh7LSZnfZKnQYnORGNUEnhSUzB-kzYw10
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800


2026-05-16 10:00:05,474:DEBUG:acme.client:Storing nonce: Xyb1-VAdXb8lgPs9Wrsh7LSZnfZKnQYnORGNUEnhSUzB-kzYw10
2026-05-16 10:00:05,475:DEBUG:acme.client:JWS payload:
b'{\n  "identifiers": [\n    {\n      "type": "dns",\n      "value": "srv.hosttick.net"\n    }\n  ]\n}'
2026-05-16 10:00:05,481:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJYeWIxLVZBZFhiOGxnUHM5V3JzaDdMU1puZlpLblFZbk9SR05VRW5oU1V6Qi1rell3MTAiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL25ldy1vcmRlciJ9",
  "signature": "aBiKE3c0xv6cR3v4Y_BrNYZBCT3v7_j3mXMfVb_hztwXUwgX8Svd57kqox8OwrFvQsiV8V1nkpO2hXo0tOIk5mFUnyn3pnm7-H7sEZsMD0oeHbfa9ZE7Fpy_Yb3heqABSPgVY_WOo2BIvnv0sgUUcvcTnXrToMRUxnu4ICqRkcaF2ms_3TNK_9nSZ3YjSTyPOKPmM-xkHwBOThO2QnUodO7hEgALpVgOT75oNUeKusBciicx5Ojd7IeMUPpa4W92SXl4slU8zvrFC6y53RIIvAxJSzaImUZyfp7I15b4KdPg-Byh81YY27ZYIvr_rCEwJLE__NYukM3ST0NpHJfeyQ",
  "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogInNydi5ob3N0dGljay5uZXQiCiAgICB9CiAgXQp9"
}
2026-05-16 10:00:06,436:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 350
2026-05-16 10:00:06,438:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Sat, 16 May 2026 14:00:07 GMT
Content-Type: application/json
Content-Length: 350
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Location: https://acme-v02.api.letsencrypt.org/acme/order/3264761711/511487034186
Replay-Nonce: VhC6f1Lr5deL1CBmwHPRJfFeD2ATb9lb8BUc8DnKsn7saQjTPKU
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "status": "pending",
  "expires": "2026-05-23T14:00:06Z",
  "identifiers": [
    {
      "type": "dns",
      "value": "srv.hosttick.net"
    }
  ],
  "authorizations": [
    "https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386"
  ],
  "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/3264761711/511487034186"
}
2026-05-16 10:00:06,438:DEBUG:acme.client:Storing nonce: VhC6f1Lr5deL1CBmwHPRJfFeD2ATb9lb8BUc8DnKsn7saQjTPKU
2026-05-16 10:00:06,439:DEBUG:acme.client:JWS payload:
b''
2026-05-16 10:00:06,442:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJWaEM2ZjFMcjVkZUwxQ0Jtd0hQUkpmRmVEMkFUYjlsYjhCVWM4RG5Lc243c2FRalRQS1UiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2In0",
  "signature": "u9k3Abrmyo6P0jMLIpbkUkcKptAzR7AlMDHF4QvcuMfTx1lmp4u4xGXKw1dgKJb-y0DGn5zJq9-67cfp7-wfAKmcGk7dn6LOtTk3Wt-sVzhig3OH68ugN-jbGwbk3ka1r4bfByXEmljK5KzuOI6svGQMaO9zvY3V3NQyUB5TV-ln254GFyngJZt0kXCT7_M33ov6Yp4DNK-UbZ00ypfX6etgpmZvMku9JeocpS5K3eJ0oLMPBo4LrIOiaTMJr-TiARBqj8w9W1bgvggY53xL1B_2tTpRhVk8rs8X2aX2v7vwuLufkiiDEAnJ3mG9SLJbckOxKggoqvbxheu-iYCvKg",
  "payload": ""
}
2026-05-16 10:00:06,701:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/705224757386 HTTP/1.1" 200 824
2026-05-16 10:00:06,702:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:07 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: Xyb1-VAdRDgwin0RfhkpU_UXTFUfMyuJ-77HYYd8fVfgkk1yPjU
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-23T14:00:06Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/6q5stQ",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/M6A3nw",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    }
  ]
}
2026-05-16 10:00:06,703:DEBUG:acme.client:Storing nonce: Xyb1-VAdRDgwin0RfhkpU_UXTFUfMyuJ-77HYYd8fVfgkk1yPjU
2026-05-16 10:00:06,704:INFO:certbot._internal.auth_handler:Performing the following challenges:
2026-05-16 10:00:06,704:INFO:certbot._internal.auth_handler:http-01 challenge for srv.hosttick.net
2026-05-16 10:00:06,705:INFO:certbot._internal.plugins.webroot:Using the webroot path /var/www/html for all unmatched domains.
2026-05-16 10:00:06,705:DEBUG:certbot._internal.plugins.webroot:Creating root challenges validation dir at /var/www/html/.well-known/acme-challenge
2026-05-16 10:00:06,709:DEBUG:certbot._internal.plugins.webroot:Attempting to save validation to /var/www/html/.well-known/acme-challenge/GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc
2026-05-16 10:00:06,710:DEBUG:acme.client:JWS payload:
b'{}'
2026-05-16 10:00:06,713:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJYeWIxLVZBZFJEZ3dpbjBSZmhrcFVfVVhURlVmTXl1Si03N0hZWWQ4ZlZmZ2trMXlQalUiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2LzlnclQ1ZyJ9",
  "signature": "O3DZCbzvJHqns9oKfYvpN81qaEr0520mXsSkTBi-Vt0C1p49XOWAknWUW7fxlwgdqG2WZ4S3ZRB82VZB56cgK6nyHDZxR4ebMFjgADtd9p0E8gIIbsanC-QONsfK-s-uTmvsmbJAJidSsTX7DxRDAnGQFqWt2AsaowzZhuZGglKA57F1viOMgnJbVDYmaVO53vGUkNp_t9r53SdfE0Ou6K83zq5NtXCBUeTGNOHtDIIXKX1kkdLpa24jHN49FsuKlYH4YjNau9PKIwU-UMjE8cQnEQmewi113nMRcekiew2zMVp6s41w47UgOWYkQ1I7yu7gfxiBYkW5ssBChRd7KA",
  "payload": "e30"
}
2026-05-16 10:00:06,959:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall/3264761711/705224757386/9grT5g HTTP/1.1" 200 195
2026-05-16 10:00:06,960:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:07 GMT
Content-Type: application/json
Content-Length: 195
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386>;rel="up"
Location: https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g
Replay-Nonce: VhC6f1LrB8O-IM6qnqKKHEKP9OHAg1X2cMVTra7BAhcTKXlrf58
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "type": "http-01",
  "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
  "status": "pending",
  "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
}
2026-05-16 10:00:06,961:DEBUG:acme.client:Storing nonce: VhC6f1LrB8O-IM6qnqKKHEKP9OHAg1X2cMVTra7BAhcTKXlrf58
2026-05-16 10:00:06,962:INFO:certbot._internal.auth_handler:Waiting for verification...
2026-05-16 10:00:07,964:DEBUG:acme.client:JWS payload:
b''
2026-05-16 10:00:07,968:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJWaEM2ZjFMckI4Ty1JTTZxbnFLS0hFS1A5T0hBZzFYMmNNVlRyYTdCQWhjVEtYbHJmNTgiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2In0",
  "signature": "jfbqFU_cML5VT4AkDXSrAU4NsNozUVVJojI2Rx4yxHzChJ148YWTfDVVfVDTLmhPOSGP4f7tlo721lypGXKa5oHvI2rkoHz943Omug6hrHckNofA9NKz5q3og3xQnwFgETTGux_R8VZHRNR3_QmEHiH-isZon3KQjEHQCFtePp0cHG6ZrcP_WvssbOdd-K2jeyeaqIUoPLtuzPsehFzj8nBYrd8YLBlubf1rrCS9mivvtCHhBNzjBf5Aap2dYt7gY3y6Vlfo1yaBQSFhMfNBwAsDIeAxIlitR8NowNaYIQrxgFdGBO0n7r-AHCdEQUSo3G_ZG0SGP7hJGuf1EXWFGQ",
  "payload": ""
}
2026-05-16 10:00:08,213:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/705224757386 HTTP/1.1" 200 824
2026-05-16 10:00:08,215:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:08 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: VhC6f1LryToq_MduhehtXKcfvpwzR3vclSXTiBsWepIRrhX5fmE
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-23T14:00:06Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/M6A3nw",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/6q5stQ",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    }
  ]
}
2026-05-16 10:00:08,215:DEBUG:acme.client:Storing nonce: VhC6f1LryToq_MduhehtXKcfvpwzR3vclSXTiBsWepIRrhX5fmE
2026-05-16 10:00:11,219:DEBUG:acme.client:JWS payload:
b''
2026-05-16 10:00:11,222:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJWaEM2ZjFMcnlUb3FfTWR1aGVodFhLY2Z2cHd6UjN2Y2xTWFRpQnNXZXBJUnJoWDVmbUUiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2In0",
  "signature": "AZ9HFUFB6PlZN8m-JPierdre7RNRKcwE6Uiez2qIZCW6vWpeHfChToX-qN5yijIve0ndiciXhPs0iBInM367jfOtYrJxaUXcHXn9FCHe84tku3pAN_PWLWjzQCA-VcB_v-Dynr1A3CaMtHBIsM5Rt4kWNi2aJwmlQtcQlZtIlRHHozRHno3zGvngr_CtORrEyniYtwHcIJOH27_HlRvWimfHucefMM3QMS6UW5F3wAlM9oCbz62V2BvEf3FskcmdK2Wgva7YeXacHKc2muIpHkDcWACzK70-bkf70Q1ZuKDaIFdRkmjCSfnxdPzFh0D51jERB5arYgzEikAiVkHSaQ",
  "payload": ""
}
2026-05-16 10:00:11,467:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/705224757386 HTTP/1.1" 200 824
2026-05-16 10:00:11,469:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:12 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: Xyb1-VAdkSxosFaEJFaES8k1feW66pAbRhnh6BO3lH6jlXNrbOc
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-23T14:00:06Z",
  "challenges": [
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/6q5stQ",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/M6A3nw",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    }
  ]
}
2026-05-16 10:00:11,469:DEBUG:acme.client:Storing nonce: Xyb1-VAdkSxosFaEJFaES8k1feW66pAbRhnh6BO3lH6jlXNrbOc
2026-05-16 10:00:14,473:DEBUG:acme.client:JWS payload:
b''
2026-05-16 10:00:14,477:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJYeWIxLVZBZGtTeG9zRmFFSkZhRVM4azFmZVc2NnBBYlJobmg2Qk8zbEg2amxYTnJiT2MiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2In0",
  "signature": "d--PWgsqziJeT-CFmrdnGvGjUMVPiroO6_rF8z_XC-rPaIxYBPVe0RGm7m4HmOOBaq2tVAKC9zorV8tVVOGawc8J88pcs9oURvQi3HqBPaDHluUx4R6VQiAMpiVpwK_OC1mdXpQxyI_gH_8BXBXdqXWMhQ2EiCmJIPnvsY8CjCoV3N4D9T-uelIJM1VxJQ1MSDSmHhH0h-8lJChv2gmF87ysqCVtRSNMdZuHpuO_bM38D642ZX5orK8qR-_nAKNLMDTAYmJ1q_MHWcVQgQmCdV_MsCwCvZGZsUAZaLZC8S2ZwkmtstN8zktaEolcXA06Ev3gflu1miECLjG0iEDk-Q",
  "payload": ""
}
2026-05-16 10:00:14,723:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/705224757386 HTTP/1.1" 200 824
2026-05-16 10:00:14,724:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:15 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: VhC6f1Lr2eDp7xojmwt0Lh9b6cDIe_BAyywiyjzWbfOElKaZJH8
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-23T14:00:06Z",
  "challenges": [
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/6q5stQ",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/M6A3nw",
      "status": "pending",
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc"
    }
  ]
}
2026-05-16 10:00:14,725:DEBUG:acme.client:Storing nonce: VhC6f1Lr2eDp7xojmwt0Lh9b6cDIe_BAyywiyjzWbfOElKaZJH8
2026-05-16 10:00:17,730:DEBUG:acme.client:JWS payload:
b''
2026-05-16 10:00:17,733:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/705224757386:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJWaEM2ZjFMcjJlRHA3eG9qbXd0MExoOWI2Y0RJZV9CQXl5d2l5anpXYmZPRWxLYVpKSDgiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzA1MjI0NzU3Mzg2In0",
  "signature": "vlrWJJ40tijCN7RqEgse7YcBsAl-bJ3sSawurlF5nbcI1A1pGGuxXNo4XhNGp13a5EdgBMr971M7O7s7-9qMFIvnFB2gJmtMVAaD0bL7WTRFdP3KwGFUGVYx4hDDcLBAyNU7SeUYWqw6K0ngmfzyp5VlJf4gR_aSHW3XnxdlFImxYeZ3EGbd4eJ3GsYjMJ2814SvqrQDwVSfZRNopZQlbt8GJGfxePl3Y7S_G0xbvYoHXza7P7TpWTfXHNp7fNvAAKIbe98okjBjs-slMFPFjEEQsv0S6F2YveXNDJXmSR1dG7Opk7OI3MRBNAag9dMTbJLT8biDqP6CUVOpmMHH0g",
  "payload": ""
}
2026-05-16 10:00:18,097:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/705224757386 HTTP/1.1" 200 1061
2026-05-16 10:00:18,099:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sat, 16 May 2026 14:00:18 GMT
Content-Type: application/json
Content-Length: 1061
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: Xyb1-VAdozMgqQHgzR_ysiVZ6KNIWhfRSgGNxVy_gbFDdeDtIoY
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "invalid",
  "expires": "2026-05-23T14:00:06Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/705224757386/9grT5g",
      "status": "invalid",
      "validated": "2026-05-16T14:00:07Z",
      "error": {
        "type": "urn:ietf:params:acme:error:connection",
        "detail": "5.10.249.4: Fetching http://srv.hosttick.net/.well-known/acme-challenge/GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc: Timeout during connect (likely firewall problem)",
        "status": 400
      },
      "token": "GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc",
      "validationRecord": [
        {
          "url": "http://srv.hosttick.net/.well-known/acme-challenge/GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc",
          "hostname": "srv.hosttick.net",
          "port": "80",
          "addressesResolved": [
            "5.10.249.4"
          ],
          "addressUsed": "5.10.249.4"
        }
      ]
    }
  ]
}
2026-05-16 10:00:18,099:DEBUG:acme.client:Storing nonce: Xyb1-VAdozMgqQHgzR_ysiVZ6KNIWhfRSgGNxVy_gbFDdeDtIoY
2026-05-16 10:00:18,100:INFO:certbot._internal.auth_handler:Challenge failed for domain srv.hosttick.net
2026-05-16 10:00:18,100:INFO:certbot._internal.auth_handler:http-01 challenge for srv.hosttick.net
2026-05-16 10:00:18,101:DEBUG:certbot._internal.display.obj:Notifying user: 
Certbot failed to authenticate some domains (authenticator: webroot). The Certificate Authority reported these problems:
  Domain: srv.hosttick.net
  Type:   connection
  Detail: 5.10.249.4: Fetching http://srv.hosttick.net/.well-known/acme-challenge/GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc: Timeout during connect (likely firewall problem)

Hint: The Certificate Authority failed to download the temporary challenge files created by Certbot. Ensure that the listed domains serve their content from the provided --webroot-path/-w and that files created there can be downloaded from the internet.

2026-05-16 10:00:18,104:DEBUG:certbot._internal.error_handler:Encountered exception:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-05-16 10:00:18,104:DEBUG:certbot._internal.error_handler:Calling registered functions
2026-05-16 10:00:18,104:INFO:certbot._internal.auth_handler:Cleaning up challenges
2026-05-16 10:00:18,105:DEBUG:certbot._internal.plugins.webroot:Removing /var/www/html/.well-known/acme-challenge/GxscjDU1lPNZd0mfxaoyUbB31EJleISuTse4EO78usc
2026-05-16 10:00:18,105:DEBUG:certbot._internal.plugins.webroot:All challenges cleaned up
2026-05-16 10:00:18,106:DEBUG:certbot._internal.log:Exiting abnormally:
Traceback (most recent call last):
  File "/usr/bin/letsencrypt", line 11, in <module>
    load_entry_point('certbot==1.22.0', 'console_scripts', 'certbot')()
  File "/usr/lib/python3.6/site-packages/certbot/main.py", line 19, in main
    return internal_main.main(cli_args)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1632, in main
    return config.func(config, plugins)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1491, in certonly
    lineage = _get_and_save_cert(le_client, config, domains, certname, lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 139, in _get_and_save_cert
    lineage = le_client.obtain_and_enroll_certificate(domains, certname)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 496, in obtain_and_enroll_certificate
    cert, chain, key, _ = self.obtain_certificate(domains)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 424, in obtain_certificate
    orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 476, in _get_order_and_authorizations
    authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.
2026-05-16 10:00:18,113:ERROR:certbot._internal.log:Some challenges have failed.
