SSL certificate renewal failing

Website URL

honoringhomer.net (and my other websites as well)

Error Message

SSL certificate error: The provider encountered an error verifying the DNS settings of your domain name. Please verify your DNS settings and try again later.

Error detail: DNS problem: NXDOMAIN looking up TXT for _acme-challenge.honoringhomer.net - check that a DNS record exists for this domain

Other Information

There is no TXT record in the DNS settings and it’s not an option in the dropdown menu for “add record.” The domain is using InfinityFree nameservers.

The DNS settings shown are: A CNAME MX

Please help me renew this and other SSL certificates — all my websites are receiving the same error message when I try to renew!

Please follow the instructions on the SSL page, you need to create a CNAME record on your domain.

6 Likes

Please reply with the link to the SSL instruction page you mention. The DNS panel already shows a CNAME record. Do I need to make another one?

Thanks for your previous reply.

I did find a page with instructions at How to create the CNAME records for free SSL, plus a video at “Add CNAME records with InfinityFree”.

However, the various instructions seem to conflict. When I follow one set of them, I get

_acme-challenge.honoringhomer.net.honoringhomer.net.

to put into the record box. If I put

_acme-challenge.honoringhomer.net.

the error message returns that it’s a duplicate — of course, since I’m renewing.
(The periods should be removed when entering info into the entry boxes.)

Is
_acme-challenge.honoringhomer.net.honoringhomer.net the correct entry into the “Source” box on the CNAME records page? The response to my request for an SSL certificate is taking a long time.

If you get the duplicate warning change the existing record, or delete it then add the new one.

No that is wrong.

5 Likes

You’re using our nameservers, so the easiest way to setup the CNAME record is to just use the automatic setup button.

If you do want to set it up yourself, just put the Record Name from the client area in the Record Name field in the control panel. We deliberately use the same structure and the same field naming to make it as simple as possible. So don’t overthink it and add your domain name to the record name field because you think that it should be.


But the fact that you got that error message means the CNAME record was setup correctly, but issuing the SSL certificate simply failed due to a DNS error. Like the error says:

Please verify your DNS settings and try again later.

The idea is to check your DNS records. It doesn’t mean that there is anything wrong with them, and it doesn’t mean that you should removing, re-adding or change the record in any way. If you have confirmed the record is correct, just try again later.

5 Likes

This topic was automatically closed 7 days after the last reply. New replies are no longer allowed.