Letsencrypt giving "Self Signed SSL" every time, Please help me, I am frustrated


Every time I apply for letsencrypt SSL by Cyberpanel, it shows success message, but when I check the issued SSL, I always see that it Self a Signed SSL.

[currently, I am using Cloudflare SSL, but I do not want to use cloud Cloudflare SSL, because I need letsencrypt mail server SSL.]


managed by cloudflare

is this domain is your mail server ?
then you should to grayed out the mail.inbangla.net direct to cyberpanel server
then create mailhost ssl directly

1 Like

is this domain is your mail server ?

Yes

then you should to grayed out the mail.inbangla.net direct to cyberpanel server then create mailhost ssl directly

I am Sorry, I do not understand, can you explain more In detail

Thanks

`



Now, I removed inbangla.net and mail.inbangla.net from cloudflare. now it has only Letsencrypt issued self signed ssl through cyber panel.

Also I tried to install SSl using Terminal, but got error:-
root@server1:~# certbot certonly --webroot -d mail.inbangla.net
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator webroot, Installer None
Obtaining a new certificate
An unexpected error occurred:
There were too many requests of a given type :: Error creating new order :: too many certificates (5) already issued for this exact set of domains in the last 168 hours: mail.inbangla.net: see Rate Limits - Let's Encrypt
Please see the logfiles in /var/log/letsencrypt for more details.

(what I understand that, letsencrypt issued Self Singed SSl 5 time, thats why I got Limit, I can apply again for SSL after a Week, and there is no guarantee I will get real Mail server SSl or Self Signed!!!)


you should disable cf proxied the IN A of your mail domain

(https://domainname.tld:8090/manageSSL/sslForMailServer)

image

LE Cert limit 5x issue every 1 week
you should wait next wednesday to re-issue

ok, I am waiting.

but question in my mind, why cyberpanel + letsencrypt issued Self Signed SSL again and again,

and after limit reistriction is removed in future, it can give me Self Signed SSL again,

How can I get rid of from this letsencrypt issued Self Signed SSL!

and how can I get a real letsencrypt Mail server SSL

Thank you very much MyIDKaTePe for helping me.

ok,


As you said, I disabled cf proxy in A of my mail domain.

1 Like

i will guide you later after limited issue are end…

1 Like

just remind me to guide you if not wednesday then you should wait 1 week
i still have no accurate info about “limitation per week” for LE cert
that mean every wednesday
or 1 week after limit reach…
but just PM/Inbox me to remind me… i will help you
but not at PM, i will help at public thread so if it solved. other ppl will learn about same thing

I tried today to install a Mail Server SSL

TODAY SHOWS UP A DIFFERENT ERROR:

Cannot issue SSL. Error message: [Fri 08 Apr 2022 03:19:55 PM UTC] Registering account: https://acme.zerossl.com/v2/DV90 [Fri 08 Apr 2022 03:20:00 PM UTC] Already registered [Fri 08 Apr 2022 03:20:00 PM UTC] ACCOUNT_THUMBPRINT=‘xzMP82VyoCUtdYq-zeUBS3L2JeB-9l9F8RPYXocmLcw’ [Fri 08 Apr 2022 03:20:09 PM UTC] www.mail.inbangla.net:Verify error:DNS problem: NXDOMAIN looking up A for www.mail.inbangla.net - check that a DNS record exists for this domain; DNS problem: NXDOMAIN looking up AAAA for www.mail.inbangla.net - check that a DNS record exists for this domain [Fri 08 Apr 2022 03:20:09 PM UTC] Please add ‘–debug’ or ‘–log’ to check more details. [Fri 08 Apr 2022 03:20:09 PM UTC] See: How to debug acme.sh · acmesh-official/acme.sh Wiki · GitHub 0,[Errno 2] No such file or directory: ‘/etc/dovecot/dovecot.conf’

What should I do? install dovecot?

After I installed Dovecot and apply for mail server SSL and got mail server SSL successfully.

This topic was automatically closed 3 hours after the last reply. New replies are no longer allowed.