SSL Renewal Failure

Status
Not open for further replies.

CPS_JG

Free User
Basic Certified
Joined
Jan 13, 2021
Messages
11
Reaction score
6
This is attempt 2 and it keeps failing. Any suggestions on a fix?

The SSL Certificate renewal for *url* failed - Error:
IpUpdater.FqdnGenerationException: Error creating FQDN: LetsEncrypt failed to validate domain. Please try again in 5 minutes.
at PostInstall.CertificateGenerator.ProcessCertificatesDirectory(String directory, Boolean temporaryCertificateGenerated, Int32 regenerateNotSelfSignedCertificatesFrom, Int32 regenerateNotSelfSignedCertificatesTo, CloudServerStatus statuses, Int32 regenerateCertificateExiredInDays, String appBin, UInt16 sipPort, UInt16 tunnelPort, Nullable`1 httpPort, Nullable`1 httpsPort, Boolean isPassiveFailoverMode)
at PostInstall.CertificateGenerator.RenewCertificates(String appBin, String nginxConfigFolder, String configurationPath)

A communication error occurred between the DNS Servers and LetsEncrypt. This rarely happens and is usually resolved on the second attempt. 3CX will try again.
 
Anything change network-wise in the last 2-3 months?
 
Instance created in December
 
Is there a chance that someone has released the FQDN from the License Key?
Try something, restart all the 3CX Services, then wait another 24 hours so the Certificate Renewal process tries again.

If that still fails, send me the first 8 digits of your License Key in a PM so I can check.
 
Hi, any news on the issue?
I'm getting this error as of today.
Did restarting the 3CX services fix the problem?
Thanks in advance.
 
Are you having the same problem? If yes paste the exception you are getting in the email, but also make sure you are on the latest service pack.
 
Yes, same problem.

"HTTPS Certificate renewal Failed - Error:
IpUpdater.FqdnGenerationException: Error creating FQDN: LetsEncrypt failed to validate domain. Please try again in 5 minutes.
at PostInstall.CertificateHelper.ProcessCertificatesDirectory(String directory, Boolean temporaryCertificateGenerated, Int32 regenerateNotSelfSignedCertificatesFrom, Int32 regenerateNotSelfSignedCertificatesTo, CloudServerStatus statuses, Int32 regenerateCertificateExiredInDays, String appBin, UInt16 sipPort, UInt16 tunnelPort, Boolean isPassiveFailoverMode)
at PostInstall.CertificateHelper.RenewCertificates(String appBin, String nginxConfigFolder, String configurationPath)

Sometimes there is a communication problem between DNS Servers and LetsEncrypt which results in this exception. This happens rarely. In most cases, the second attempt will work. 3CX PBX will try again."

Latest version installed: v16.0.7.1078

The issue resolved itself overnight: SSL certificate was automatically renewed for the next 90 days!

Thanks.
 
  • Like
Reactions: NickD_3CX
Status
Not open for further replies.

Forum statistics

Threads
111,986
Messages
590,148
Members
164,917
Latest member
Oliver Hastedt