2026-05-13 10:00:03,947:DEBUG:certbot._internal.main:certbot version: 1.22.0
2026-05-13 10:00:03,949:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/letsencrypt
2026-05-13 10:00:03,949:DEBUG:certbot._internal.main:Arguments: ['--webroot', '-w', '/var/www/html', '--agree-tos', '-n', '--email', 'root@srv.hosttick.net', '-d', 'srv.hosttick.net']
2026-05-13 10:00:03,950:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#manual,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2026-05-13 10:00:03,997:DEBUG:certbot._internal.log:Root logging level set at 30
2026-05-13 10:00:04,001:DEBUG:certbot._internal.plugins.selection:Requested authenticator webroot and installer None
2026-05-13 10:00:04,007:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * webroot
Description: Place files in webroot directory
Interfaces: Authenticator, Plugin
Entry point: webroot = certbot._internal.plugins.webroot:Authenticator
Initialized: <certbot._internal.plugins.webroot.Authenticator object at 0x7f1796c57278>
Prep: True
2026-05-13 10:00:04,008:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot._internal.plugins.webroot.Authenticator object at 0x7f1796c57278> and installer None
2026-05-13 10:00:04,008:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator webroot, Installer None
2026-05-13 10:00:04,025:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/3264761711', new_authzr_uri=None, terms_of_service=None), adc831809a9116ff175d58e1e5ae4096, Meta(creation_dt=datetime.datetime(2026, 4, 22, 14, 0, 6, tzinfo=<UTC>), creation_host='srv.hosttick.net', register_to_eff=None))>
2026-05-13 10:00:04,027:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
2026-05-13 10:00:04,030:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:443
2026-05-13 10:00:05,003:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 1033
2026-05-13 10:00:05,005:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:04 GMT
Content-Type: application/json
Content-Length: 1033
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "T8JRy_MNslo": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  "meta": {
    "caaIdentities": [
      "letsencrypt.org"
    ],
    "profiles": {
      "classic": "https://letsencrypt.org/docs/profiles#classic",
      "shortlived": "https://letsencrypt.org/docs/profiles#shortlived",
      "tlsclient": "https://letsencrypt.org/docs/profiles#tlsclient",
      "tlsserver": "https://letsencrypt.org/docs/profiles#tlsserver"
    },
    "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.6-August-18-2025.pdf",
    "website": "https://letsencrypt.org"
  },
  "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  "renewalInfo": "https://acme-v02.api.letsencrypt.org/acme/renewal-info",
  "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
}
2026-05-13 10:00:05,006:DEBUG:certbot._internal.display.obj:Notifying user: Requesting a certificate for srv.hosttick.net
2026-05-13 10:00:05,132:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/0005_key-certbot.pem
2026-05-13 10:00:05,140:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/0005_csr-certbot.pem
2026-05-13 10:00:05,141:DEBUG:acme.client:Requesting fresh nonce
2026-05-13 10:00:05,142:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
2026-05-13 10:00:05,389:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
2026-05-13 10:00:05,391:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:05 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: CqJAX5X945LnJ-Fb84tHhe1E5ezYrQIOrvpfefWy7nV2ENYAd3Y
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800


2026-05-13 10:00:05,392:DEBUG:acme.client:Storing nonce: CqJAX5X945LnJ-Fb84tHhe1E5ezYrQIOrvpfefWy7nV2ENYAd3Y
2026-05-13 10:00:05,393:DEBUG:acme.client:JWS payload:
b'{\n  "identifiers": [\n    {\n      "type": "dns",\n      "value": "srv.hosttick.net"\n    }\n  ]\n}'
2026-05-13 10:00:05,400:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJDcUpBWDVYOTQ1TG5KLUZiODR0SGhlMUU1ZXpZclFJT3J2cGZlZld5N25WMkVOWUFkM1kiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL25ldy1vcmRlciJ9",
  "signature": "IYXGoywI6bFJ8IaYhdptgg7-E-eH4nRjve4QS8SL5dJr98P9gY1bueUjptybK9OIuTI_bh6UzSGyfgW4A2WnnWydTL8UrklBF6MaLFrMl9iX0RVaQ5TB8l48jwCu9v5P3arZ9kbKfn_1NUqcPuMwVQewPYxSSDFzMXIADpS4d45TNTWDgMPFzCeaEhv-uZA64esMCMZcQnjQTkPi9zZaDJzR1Zvc9T0Qh8JcPlU9RvdhnZKKGbiGvu2kFsdzM96dMSTG5cW7cW2A_hZqQon57db0Abm_h2rXnyzksuz098uAbsnDeNTLIYzqlD60hBfoqn5yh9xSA9D1_0VQ0e_66g",
  "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogInNydi5ob3N0dGljay5uZXQiCiAgICB9CiAgXQp9"
}
2026-05-13 10:00:05,697:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 350
2026-05-13 10:00:05,698:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Wed, 13 May 2026 14:00:05 GMT
Content-Type: application/json
Content-Length: 350
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Location: https://acme-v02.api.letsencrypt.org/acme/order/3264761711/510410249546
Replay-Nonce: CqJAX5X9oyUp8JcTnBZchxUkH3D4acrNR3hpjzuMGAjKAZPhFig
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "status": "pending",
  "expires": "2026-05-20T14:00:05Z",
  "identifiers": [
    {
      "type": "dns",
      "value": "srv.hosttick.net"
    }
  ],
  "authorizations": [
    "https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326"
  ],
  "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/3264761711/510410249546"
}
2026-05-13 10:00:05,699:DEBUG:acme.client:Storing nonce: CqJAX5X9oyUp8JcTnBZchxUkH3D4acrNR3hpjzuMGAjKAZPhFig
2026-05-13 10:00:05,699:DEBUG:acme.client:JWS payload:
b''
2026-05-13 10:00:05,702:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJDcUpBWDVYOW95VXA4SmNUbkJaY2h4VWtIM0Q0YWNyTlIzaHBqenVNR0FqS0FaUGhGaWciLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2In0",
  "signature": "chnsf12tUXpZowaKe4tSoW_k78tF6EMsSWnaARhyYS9HnTzUdn6hh5vkhGZbxDp2amvT0sz78CUXB_bn4vxNzNASfbY4i8hJivon-zJp0N0Nk3mlRkmwJk6rOhtI0_fEQmfycTodt53aluTm0oBhfhZyPvdTXp8o7IKZ5CxChcGkhTBp0eIhV-Ui72bRyMIRnZZkPzcrtPrFjpw0FehBTmCKfE842eo1D3E1KKcG47I5k8L3GZryRPt2GXu0FBAOCQ8QdDfOT7DocnoAKczN7RubJ6cAc8u1Nda0Qfhjellg1UpfI8tz2U1wr8qf9834XWla2BTcSjqrO_uw5KV7nA",
  "payload": ""
}
2026-05-13 10:00:05,952:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/703473619326 HTTP/1.1" 200 824
2026-05-13 10:00:05,954:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:05 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: xoZfuRf-Cq-L4wiL-cUSJnFlDZ1PfRstNemTyFDlNsbW1ID7D8w
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-20T14:00:05Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/tFBQeA",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/M_awUg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    }
  ]
}
2026-05-13 10:00:05,954:DEBUG:acme.client:Storing nonce: xoZfuRf-Cq-L4wiL-cUSJnFlDZ1PfRstNemTyFDlNsbW1ID7D8w
2026-05-13 10:00:05,955:INFO:certbot._internal.auth_handler:Performing the following challenges:
2026-05-13 10:00:05,955:INFO:certbot._internal.auth_handler:http-01 challenge for srv.hosttick.net
2026-05-13 10:00:05,956:INFO:certbot._internal.plugins.webroot:Using the webroot path /var/www/html for all unmatched domains.
2026-05-13 10:00:05,956:DEBUG:certbot._internal.plugins.webroot:Creating root challenges validation dir at /var/www/html/.well-known/acme-challenge
2026-05-13 10:00:05,959:DEBUG:certbot._internal.plugins.webroot:Attempting to save validation to /var/www/html/.well-known/acme-challenge/mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk
2026-05-13 10:00:05,961:DEBUG:acme.client:JWS payload:
b'{}'
2026-05-13 10:00:05,963:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJ4b1pmdVJmLUNxLUw0d2lMLWNVU0puRmxEWjFQZlJzdE5lbVR5RkRsTnNiVzFJRDdEOHciLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2L1ZJMnlsZyJ9",
  "signature": "O_7SHZD5Y9fp1rKGG1qvGJqMCpsNPvHu9TWXDjM0TI43k_RDs10exC8yd05I3spsiLpEXfegmg417cgXllfMjUOk-GBCOWbyy49nKpHzKU2zaenck4Ep57cPr6XdYmUPjo7UUg4aWu1FHjJfQvrDlVlaPZ49HHQGgyrCJm0Gv70G9DdIeHMUDMPf4x6wA2Df-IiCndwHBfdiGFeVN-t16Edkedlijms-yJb0gZQQxgb78bUscX-TQedb6Zsmpk5KPkx3_bp1FzmswSN-GygOC7a-ZiOz2U3v14gH5PIDakBB_yG8itdFaVRmfAJAAojpeyz1BJDYJ9cKVt7dpwFRyg",
  "payload": "e30"
}
2026-05-13 10:00:06,215:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall/3264761711/703473619326/VI2ylg HTTP/1.1" 200 195
2026-05-13 10:00:06,216:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:06 GMT
Content-Type: application/json
Content-Length: 195
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326>;rel="up"
Location: https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg
Replay-Nonce: CqJAX5X9x8PgwPkSfOWsBHNNKNVQ9gs5mG3pHSmHL2rGfJ01Wls
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "type": "http-01",
  "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
  "status": "pending",
  "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
}
2026-05-13 10:00:06,217:DEBUG:acme.client:Storing nonce: CqJAX5X9x8PgwPkSfOWsBHNNKNVQ9gs5mG3pHSmHL2rGfJ01Wls
2026-05-13 10:00:06,218:INFO:certbot._internal.auth_handler:Waiting for verification...
2026-05-13 10:00:07,219:DEBUG:acme.client:JWS payload:
b''
2026-05-13 10:00:07,223:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJDcUpBWDVYOXg4UGd3UGtTZk9Xc0JITk5LTlZROWdzNW1HM3BIU21ITDJyR2ZKMDFXbHMiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2In0",
  "signature": "Un9M_MQj99OEhtd1lacSwH78pnOr4n1XoBl4AbYqR5x7gFQ0Mm_dMiNpytdfpya5g6Emap4xxAimguQtwTPDlCwVs6Q_7QkQ0Wi2aTfcMyHK42oOMaa2xx07m_kk5xpBMgLl4B7wswPYzorQtZYS_8TXHs3yH3BAKEzHwvWBe7zW-a062S0K3KgQr-XE9IcbRGfwZnktSQ8evOtEG4ATco1vdgsJuLnI5a5GTkFBdn4T-qhAiScFgA4advRSSKOn7fsofJk-uu_vb3jd556AnQzyIqtCSC1Xs1DkiVpzOEYjLKSMj2bG-NxenOqIm4tlWYX4eaAiu5H_8xpuZMJ0lg",
  "payload": ""
}
2026-05-13 10:00:07,476:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/703473619326 HTTP/1.1" 200 824
2026-05-13 10:00:07,477:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:07 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: xoZfuRf-A3lmeHs_nBTa6n-wejrmpZYOee0oVOyB902R6r9jBoU
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-20T14:00:05Z",
  "challenges": [
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/M_awUg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/tFBQeA",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    }
  ]
}
2026-05-13 10:00:07,477:DEBUG:acme.client:Storing nonce: xoZfuRf-A3lmeHs_nBTa6n-wejrmpZYOee0oVOyB902R6r9jBoU
2026-05-13 10:00:10,482:DEBUG:acme.client:JWS payload:
b''
2026-05-13 10:00:10,486:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJ4b1pmdVJmLUEzbG1lSHNfbkJUYTZuLXdlanJtcFpZT2VlMG9WT3lCOTAyUjZyOWpCb1UiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2In0",
  "signature": "iaWxzbcxK_k1Pf9TQapA7qAz7cnlU5avR7mQqY51XJZj8YjUGnboZ6Zble_1jNQrChvNAEVFGVocyqqbDsXWMC3dnRs32Q0yQ911z2zYHooZjGs_r5jNj6qJEHhRVygq79g16QaNbeN-sXYp2m77ZiEayTcRvQsWfelLan2ovqAOJyZZ2YlPlL5PkDr8mjBV3alOH4PQTihc-VAxp8qqhu2CRIMoAZnImA_62oXgH4-pzVHsrGONpVu573k52jjTqXO0tTJQroHKJwhOD0bfrjqunbKW-6gvlYPyvr8sNU71hKXeMRspu2VeUZLWXYj_PyMqxK8zd738xH6AcZcJVw",
  "payload": ""
}
2026-05-13 10:00:10,735:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/703473619326 HTTP/1.1" 200 824
2026-05-13 10:00:10,736:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:10 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: xoZfuRf-AJVY_bb1GYrDnWFtWseG5EIojBCHToXTwoUHuaZ8upQ
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-20T14:00:05Z",
  "challenges": [
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/tFBQeA",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/M_awUg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    }
  ]
}
2026-05-13 10:00:10,737:DEBUG:acme.client:Storing nonce: xoZfuRf-AJVY_bb1GYrDnWFtWseG5EIojBCHToXTwoUHuaZ8upQ
2026-05-13 10:00:13,742:DEBUG:acme.client:JWS payload:
b''
2026-05-13 10:00:13,745:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJ4b1pmdVJmLUFKVllfYmIxR1lyRG5XRnRXc2VHNUVJb2pCQ0hUb1hUd29VSHVhWjh1cFEiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2In0",
  "signature": "SeQ6Ur0uFY2Bn_BKisWvTHJ0jZ4WFztUClGlqyoNuxnZJjDV2tE42jjTURgJ0GGySdNq9OnqXJA9ReZ1cmX7KEkNYcB-NVbgxdRC1UHJxS6HQ8om3uLeL3hW-0RBBy-vNTe0tMpJXBQhm7qGT-LL1Pa8_G4A0UyVX4wCaIZ4fpY1Or9gxGHOI3t7qUmOxhL-VsBHpI7PtNecAS84TaD728L8kfpRIxzZGLkh0jR4m8YcS0fql1QG6J_nJdnj1t-atJdQdxJkf8h8f-FFYT2sFfV6IXfWwAnQxpWvMpnsEuqWTcbB1mvoqHaT6HOou7p-FG8GMp6dg-lhiVwHCZsYgw",
  "payload": ""
}
2026-05-13 10:00:13,996:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/703473619326 HTTP/1.1" 200 824
2026-05-13 10:00:13,997:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:13 GMT
Content-Type: application/json
Content-Length: 824
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: CqJAX5X9bTSPYIQQO9iiwdO-J1S3unDOW8SAUwd6jLbT1u4ZaMM
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "pending",
  "expires": "2026-05-20T14:00:05Z",
  "challenges": [
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/M_awUg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/tFBQeA",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
      "status": "pending",
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk"
    }
  ]
}
2026-05-13 10:00:13,997:DEBUG:acme.client:Storing nonce: CqJAX5X9bTSPYIQQO9iiwdO-J1S3unDOW8SAUwd6jLbT1u4ZaMM
2026-05-13 10:00:17,002:DEBUG:acme.client:JWS payload:
b''
2026-05-13 10:00:17,005:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/3264761711/703473619326:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMzI2NDc2MTcxMSIsICJub25jZSI6ICJDcUpBWDVYOWJUU1BZSVFRTzlpaXdkTy1KMVMzdW5ET1c4U0FVd2Q2akxiVDF1NFphTU0iLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzMyNjQ3NjE3MTEvNzAzNDczNjE5MzI2In0",
  "signature": "MmH0dLaPkYK4tPv8f-DRq1xMgemqhR5zS0501-UGk6f84thEhnQKAW37bRl1gBRef5yab7dKYenUBxJu2-glJBhyPCj9UjuV0fmlIf7p0MVsuzimzLutdp0NivA22bfJBof5cXnLSyoG893t5eWnErIV3iiYYFcfpdCRdjhAlmr-UnnKe_kiVslWR40CdXco3sZSI8T6_YHA0NteQwyetScCexdwIMv_3l7jOLzA1m8FiDPG0192FgGP6nvSBSaVlqRY2wWa_mQSarreWXt__ZMXSGfSZXn9DnyyjXJGo-9SEelF5Hjx6Rvz44o90JzP9DXzWhw1Ia2KtLPFFBHNVw",
  "payload": ""
}
2026-05-13 10:00:17,256:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/3264761711/703473619326 HTTP/1.1" 200 1061
2026-05-13 10:00:17,257:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Wed, 13 May 2026 14:00:17 GMT
Content-Type: application/json
Content-Length: 1061
Connection: keep-alive
Boulder-Requester: 3264761711
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: CqJAX5X9YgkQFVhyHMzBwUyy3CeBQncV620xShk7D8LB9itRZm0
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "srv.hosttick.net"
  },
  "status": "invalid",
  "expires": "2026-05-20T14:00:05Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/3264761711/703473619326/VI2ylg",
      "status": "invalid",
      "validated": "2026-05-13T14:00:06Z",
      "error": {
        "type": "urn:ietf:params:acme:error:connection",
        "detail": "5.10.249.4: Fetching http://srv.hosttick.net/.well-known/acme-challenge/mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk: Timeout during connect (likely firewall problem)",
        "status": 400
      },
      "token": "mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk",
      "validationRecord": [
        {
          "url": "http://srv.hosttick.net/.well-known/acme-challenge/mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk",
          "hostname": "srv.hosttick.net",
          "port": "80",
          "addressesResolved": [
            "5.10.249.4"
          ],
          "addressUsed": "5.10.249.4"
        }
      ]
    }
  ]
}
2026-05-13 10:00:17,257:DEBUG:acme.client:Storing nonce: CqJAX5X9YgkQFVhyHMzBwUyy3CeBQncV620xShk7D8LB9itRZm0
2026-05-13 10:00:17,258:INFO:certbot._internal.auth_handler:Challenge failed for domain srv.hosttick.net
2026-05-13 10:00:17,258:INFO:certbot._internal.auth_handler:http-01 challenge for srv.hosttick.net
2026-05-13 10:00:17,259:DEBUG:certbot._internal.display.obj:Notifying user: 
Certbot failed to authenticate some domains (authenticator: webroot). The Certificate Authority reported these problems:
  Domain: srv.hosttick.net
  Type:   connection
  Detail: 5.10.249.4: Fetching http://srv.hosttick.net/.well-known/acme-challenge/mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk: Timeout during connect (likely firewall problem)

Hint: The Certificate Authority failed to download the temporary challenge files created by Certbot. Ensure that the listed domains serve their content from the provided --webroot-path/-w and that files created there can be downloaded from the internet.

2026-05-13 10:00:17,265:DEBUG:certbot._internal.error_handler:Encountered exception:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-05-13 10:00:17,265:DEBUG:certbot._internal.error_handler:Calling registered functions
2026-05-13 10:00:17,266:INFO:certbot._internal.auth_handler:Cleaning up challenges
2026-05-13 10:00:17,266:DEBUG:certbot._internal.plugins.webroot:Removing /var/www/html/.well-known/acme-challenge/mGt46XqQRTHxMRo--1FBknok9GgQxD76WkGtthfaOlk
2026-05-13 10:00:17,267:DEBUG:certbot._internal.plugins.webroot:All challenges cleaned up
2026-05-13 10:00:17,267:DEBUG:certbot._internal.log:Exiting abnormally:
Traceback (most recent call last):
  File "/usr/bin/letsencrypt", line 11, in <module>
    load_entry_point('certbot==1.22.0', 'console_scripts', 'certbot')()
  File "/usr/lib/python3.6/site-packages/certbot/main.py", line 19, in main
    return internal_main.main(cli_args)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1632, in main
    return config.func(config, plugins)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1491, in certonly
    lineage = _get_and_save_cert(le_client, config, domains, certname, lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 139, in _get_and_save_cert
    lineage = le_client.obtain_and_enroll_certificate(domains, certname)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 496, in obtain_and_enroll_certificate
    cert, chain, key, _ = self.obtain_certificate(domains)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 424, in obtain_certificate
    orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 476, in _get_order_and_authorizations
    authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.
2026-05-13 10:00:17,270:ERROR:certbot._internal.log:Some challenges have failed.
