Bonjour,
Depuis plusieurs semaines, je n’ai plus accès à HA depuis l’extérieur. Normalement tout est bien configuré, car j’y avais accès auparavant via mon adresse duckdns. Je n’ai touché à rien et cela ne fonctionne plus, je ne comprends pas.
Pourriez-vous m’aider ?
Cordialement
Je suis sur RPI 5 avec un SSD
Voici le journal Duckdns :
- Requesting new certificate order from CA…
- Received 1 authorizations URLs from the CA
- Handling authorization for xxxxxx.duckdns.org
- 1 pending challenge(s)
- Deploying challenge tokens…
OK + Responding to challenge for xxxxxx.duckdns.org authorization… - Cleaning challenge tokens…
OK + Challenge validation has failed
ERROR: Challenge is invalid! (returned: invalid) (result: [« type »] « dns-01 »
[« url »] « https://acme-v02.api.letsencrypt.org/acme/chall-v3/375273110337/RqXuHA »
[« status »] « invalid »
[« validated »] « 2024-07-10T19:04:17Z »
[« error »,« type »] « urn:ietf:params:acme:error:unauthorized »
[« error »,« detail »] « Incorrect TXT record "" found at _acme-challenge.xxxxxx.duckdns.org »
[« error »,« status »] 403
[« error »] {« type »:« urn:ietf:params:acme:error:unauthorized »,« detail »:« Incorrect TXT record "" found at _acme-challenge.xxxxxx.duckdns.org »,« status »:403}
[« token »] « xxxxxx »)
[09:06:07] INFO: Renew certificate for domains: xxxxxx.duckdns.org and aliases:
INFO: Using main config file /data/workdir/config
Processing xxxxxx.duckdns.org
- Checking domain name(s) of existing cert… unchanged.
- Checking expire date of existing cert…
- Valid till Aug 8 17:12:30 2024 GMT (Less than 30 days). Renewing!
- Signing domains…
- Generating private key…
- Generating signing request…
- Requesting new certificate order from CA…
- Received 1 authorizations URLs from the CA
- Handling authorization for xxxxxx.duckdns.org
- 1 pending challenge(s)
- Deploying challenge tokens…
OK + Responding to challenge for xxxxxx.duckdns.org authorization… - Cleaning challenge tokens…
OK + Challenge validation has failed
ERROR: Challenge is invalid! (returned: invalid) (result: [« type »] « dns-01 »
[« url »] « https://acme-v02.api.letsencrypt.org/acme/chall-v3/375499202447/6YWdlg »
[« status »] « invalid »
[« validated »] « 2024-07-11T07:06:15Z »
[« error »,« type »] « urn:ietf:params:acme:error:unauthorized »
[« error »,« detail »] « During secondary validation: Incorrect TXT record "" found at _acme-challenge.xxxxxx.duckdns.org »
[« error »,« status »] 403
[« error »] {« type »:« urn:ietf:params:acme:error:unauthorized »,« detail »:« During secondary validation: Incorrect TXT record "" found at _acme-challenge.xxxxxx.duckdns.org »,« status »:403}
[« token »] « xxxxxx »
[« validationRecord »,0,« hostname »] « xxxxxx.duckdns.org »
[« validationRecord »,0] {« hostname »:« xxxxxx.duckdns.org »}
[« validationRecord »] [{« hostname »:« xxxxxx.duckdns.org »}])
s6-rc: info: service s6rc-oneshot-runner: starting
s6-rc: info: service s6rc-oneshot-runner successfully started
s6-rc: info: service fix-attrs: starting
s6-rc: info: service fix-attrs successfully started
s6-rc: info: service legacy-cont-init: starting
s6-rc: info: service legacy-cont-init successfully started
s6-rc: info: service duckdns: starting
s6-rc: info: service duckdns successfully started
s6-rc: info: service legacy-services: starting
s6-rc: info: service legacy-services successfully started
INFO: Using main config file /data/workdir/config
- Account already registered!
[20:22:15] INFO: Starting DuckDNS…
[20:22:16] INFO: Renew certificate for domains: xxxxxx.duckdns.org and aliases:
INFO: Using main config file /data/workdir/config
Processing xxxxxx.duckdns.org
- Checking domain name(s) of existing cert… unchanged.
- Checking expire date of existing cert…
- Valid till Aug 8 17:12:30 2024 GMT (Less than 30 days). Renewing!
- Signing domains…
- Generating private key…
- Generating signing request…
- Requesting new certificate order from CA…
- Received 1 authorizations URLs from the CA
- Handling authorization for xxxxxx.duckdns.org
- 1 pending challenge(s)
- Deploying challenge tokens…
OK + Responding to challenge for xxxxxx.duckdns.org authorization… - Challenge is valid!
- Cleaning challenge tokens…
OK + Requesting certificate…
Warning: Will read cert request from stdin since no -in option is given - Checking certificate…
- Done!
- Creating fullchain.pem…
- Done!
[20:28:40] WARNING:
[08:25:18] INFO: Renew certificate for domains: xxxxxx.duckdns.org and aliases:
INFO: Using main config file /data/workdir/config
Processing xxxxxx.duckdns.org
- Checking domain name(s) of existing cert… unchanged.
- Checking expire date of existing cert…
- Valid till Oct 9 17:23:25 2024
Résumé
Citation
GMT (Longer than 30 days). Skipping renew!
[20:26:55] INFO: Renew certificate for domains: xxxxxx.duckdns.org and aliases:
INFO: Using main config file /data/workdir/config
Processing xxxxxx.duckdns.org
- Checking domain name(s) of existing cert… unchanged.
- Checking expire date of existing cert…
- Valid till Oct 9 17:23:25 2024 GMT (Longer than 30 days). Skipping renew!
[08:28:33] INFO: Renew certificate for domains:xxxxxx.duckdns.org and aliases:
INFO: Using main config file /data/workdir/config
Processing xxxxxx.duckdns.org
- Checking domain name(s) of existing cert… unchanged.
- Checking expire date of existing cert…
- Valid till Oct 9 17:23:25 2024 GMT (Longer than 30 days). Skipping renew!