HSTS域上的SSL证书

时间:2019-03-01 09:37:34

标签: ssl apache2 certbot hsts

我在.dev TLD中有一个新域,据我所知,这是强制HSTS,因此我不能仅通过HTTP而是仅通过HTTPS访问它。

我试图像在ubuntu / apache2上使用certbot之前一样设置100次SSL证书。

现在我的问题是,当certbot尝试进行身份验证时,它不起作用,因为acme-challenge试图通过HTTP访问.well-known中的文件,而不适用于HSTS域。 >

您通常如何处理,到目前为止,我找不到任何有用的信息。

certbot的错误消息:

Failed authorization procedure. example.dev (http-01): urn:ietf:params:acme:error:unauthorized :: The client lacks sufficient authorization :: Invalid response from http://example.dev/.well-known/acme-challenge/t6qvuntJAoDTAwoMnjQnA5R4vZ-IdWptb_yakexutp4 [2001:8d8:100f:f000::259]: 204

IMPORTANT NOTES:
 - The following errors were reported by the server:

   Domain: example.dev
   Type:   unauthorized
   Detail: Invalid response from
   http://example.dev/.well-known/acme-challenge/t6qvuntJAoDTAwoMnjQnA5R4vZ-IdWptb_yakexutp4
   [2001:8d8:100f:f000::259]: 204

   To fix these errors, please make sure that your domain name was
   entered correctly and the DNS A/AAAA record(s) for that domain
   contain(s) the right IP address.

0 个答案:

没有答案