I'm having issues with SSL renewal via certbot. The script that's been working for years is now failing with a "timeout" trying to fetch the ".well-known/acme-challenge" files. I don't think anything's changed in my configuration. I've disabled any and all firewalls and a test file in that directory is retrievable. Fedora 41 and apache
Did you try to set setenforce 0 ?
I found some SELinux issues with lets encrypt certificates.
Am 06.11.2024 um 18:47 schrieb steven stern steve@sterndata.com:
I'm having issues with SSL renewal via certbot. The script that's been working for years is now failing with a "timeout" trying to fetch the ".well-known/acme-challenge" files. I don't think anything's changed in my configuration. I've disabled any and all firewalls and a test file in that directory is retrievable. Fedora 41 and apache -- _______________________________________________ users mailing list -- users@lists.fedoraproject.org To unsubscribe send an email to users-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/users@lists.fedoraproject.org Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
-- Peter Boy https://fedoraproject.org/wiki/User:Pboy PBoy@fedoraproject.org
Timezone: CET (UTC+1) / CEST (UTC+2)
Fedora Server Edition Working Group member Fedora Docs team contributor and board member Java developer and enthusiast
On 11/6/24 11:58 AM, Peter Boy Uni wrote:
Did you try to set setenforce 0 ?
I found some SELinux issues with lets encrypt certificates.
Am 06.11.2024 um 18:47 schrieb steven stern steve@sterndata.com:
I'm having issues with SSL renewal via certbot. The script that's been working for years is now failing with a "timeout" trying to fetch the ".well-known/acme-challenge" files. I don't think anything's changed in my configuration. I've disabled any and all firewalls and a test file in that directory is retrievable. Fedora 41 and apache --
Yeah, I turned off selinux via the config file and rebooted.
On Wed, Nov 6, 2024 at 12:47 PM steven stern steve@sterndata.com wrote:
I'm having issues with SSL renewal via certbot. The script that's been working for years is now failing with a "timeout" trying to fetch the ".well-known/acme-challenge" files. I don't think anything's changed in my configuration. I've disabled any and all firewalls and a test file in that directory is retrievable. Fedora 41 and apache
Maybe try relabeling the system?
Jeff