Website URL
https://baukompetenzzentrum.org/ratgeber-feuchte-kellerwand.html
Error Message
Visitor: 502 Bad Gateway / openresty.
Separate cloud-browser HTTPS checks: 502 — Certificate verify failed: unable to get local issuer certificate.
Google Ads destination rejection: Unknown DNS error, platform iOS (Google test time unknown).
Other Information
Website: https://baukompetenzzentrum.org/ratgeber-feuchte-kellerwand.html
Server IP shown in the hosting panel: 185.27.134.153
On 6 October 2026, a visitor using Firefox Private Mode observed:
- Around 17:59 UTC (19:59 Vienna): the page loaded successfully; the address ended in ?i=1.
- Around 18:01 UTC (20:01 Vienna): the original URL without a query parameter returned “502 Bad Gateway” / “openresty”.
We cannot establish that the parameter caused this difference. We also cannot establish that the browser and external test failures share the same cause.
Checks in the hosting panel:
- Account Active; domain directory baukompetenzzentrum.org/htdocs; Health Check reports “No issues found”.
- The exact static HTML target exists (14.49 KB). No PHP execution is required for this HTML page.
- Disk usage 146 MB / 5 GB; inode usage 9829 / 80000; today’s hits 402 / 50000. Available daily charts do not cover the incident time and cannot rule out a temporary resource spike.
- SSL is Active and installed: Let’s Encrypt, expires 30 December 2026.
- The root .htaccess has HTTPS forwarding and W3 Total Cache rules. However, wp-content/cache/page_enhanced contains only a .htaccess and no cached pages. The WordPress fallback excludes existing files.
- An independent SSLShopper check resolves the domain to the correct IP and confirms the hostname, but warns that the certificate is not trusted by all browsers / may require an intermediate chain. A separate external HTTPS request reports “Certificate verify failed: unable to get local issuer certificate”.
- Google Ads rejected this landing page with “Unknown DNS error”, platform iOS. Google’s test time is unknown, so we cannot correlate it with the browser failure.
Could you investigate the recurring openresty 502 for this static page and advise whether an upstream/server issue, a temporary account limit, or HTTPS-chain compatibility is involved? Which diagnostics should we collect at the next occurrence? No DNS, SSL or .htaccess changes were made during this investigation.
Thank you.
Update, 7 October 2026:
- Hosting SSL/TLS panel freshly confirms Live: Active and Installed: SSL certificate is installed; Let’s Encrypt, expiry 2026-12-30.
- SSLShopper again reports IP 185.27.134.153, server openresty, correct hostname, validity 2026-10-01 to 2026-12-30, issuer YR2, and an untrusted-chain warning. SSLShopper may cache results for up to a day.
- Seven additional static guides, index and sitemap have now been uploaded and all nine files independently downloaded and byte-compared: identical.
- Cloud-browser checks of the homepage and a newly uploaded guide still return 502 with the explicit message: Certificate verify failed: unable to get local issuer certificate. We do not assume that this is the same failure as the visitor’s plain openresty 502.
- Your documentation states that CA-chain installation is unsupported on Free Hosting. What supported solution can provide a verifiable HTTPS chain for automated visitors and Google Ads destination checks on this existing account? Please distinguish this from the recurring visitor-facing 502.
- No certificate replacement, DNS change, security bypass or Ads modification was performed.