We are happy to announce that Vesta is back under active development as of 25 February 2024. We are working on v1 candidate and expect to engage more with the community over the coming months. We are committed to open source, and we encourage contributors to help us build the future of Vesta.
LetsEncrypt not working correctly.
LetsEncrypt not working correctly.
Hi Guys,
I put an SSL certificate on all my domains a few months ago, and they was all working perfectly fine.
However the vps.domain.co.uk certification expired, this must have updated as the SSL is still working here, and I got emails from LetsEncrypt saying it was going to expire.
My other domains SSL have since stopped working, the SSL certificates are still there and they are valid when checked.
But chrome is giving me an error saying "This server could not prove that it is http://www.domain-two.co.uk; its security certificate is from vps.domain-one.co.uk. This may be caused by a misconfiguration or an attacker intercepting your connection."
The shttpd.conf file does have the correct certificate configured in it and this certificate is the one mentioned in the vestaCP control panel.
So I am lost as to why my SSL certificates have stopped working.
Thanks,
I put an SSL certificate on all my domains a few months ago, and they was all working perfectly fine.
However the vps.domain.co.uk certification expired, this must have updated as the SSL is still working here, and I got emails from LetsEncrypt saying it was going to expire.
My other domains SSL have since stopped working, the SSL certificates are still there and they are valid when checked.
But chrome is giving me an error saying "This server could not prove that it is http://www.domain-two.co.uk; its security certificate is from vps.domain-one.co.uk. This may be caused by a misconfiguration or an attacker intercepting your connection."
The shttpd.conf file does have the correct certificate configured in it and this certificate is the one mentioned in the vestaCP control panel.
So I am lost as to why my SSL certificates have stopped working.
Thanks,
Re: LetsEncrypt not working correctly.
Please add a little more info.
> Operating System (OS/VERSION):
Type here, e.g. CentOS 6
> VestaCP Version:
Type here, e.g. 0.9.8-17
> Installed Software (what you got with the installer):
Type here, e.g. php-fpm, apache, nginx, mysql
> Steps to Reproduce:
Type here, e.g. install vesta and type cat /etc/issue
> Related Issues/Forum Threads:
Found anything that might be related to this? It might help us find the cause.
> Other Notes:
Anything else? May be logs?
> Operating System (OS/VERSION):
Type here, e.g. CentOS 6
> VestaCP Version:
Type here, e.g. 0.9.8-17
> Installed Software (what you got with the installer):
Type here, e.g. php-fpm, apache, nginx, mysql
> Steps to Reproduce:
Type here, e.g. install vesta and type cat /etc/issue
> Related Issues/Forum Threads:
Found anything that might be related to this? It might help us find the cause.
> Other Notes:
Anything else? May be logs?
Re: LetsEncrypt not working correctly.
Thank you very much for responding to my forum post.
> Operating System (OS/VERSION):
CentOS Linux release 7.3.1611
> VestaCP Version:
Version: 0.9.8 (x86_64) - Release:17
> Installed Software (what you got with the installer):
apache, nginx, vsftpd, named, mysql, postgresql, exim, dovecot, clamav, spamassassin, iptables, fail2ban, quota
> Steps to Reproduce:
This part is hard to explain, but I'll list what I did in the order I did them.
1. Install Vesta CP.
2. Create new user.
3. Add domains to the new user, and tick the box for lets encrypt.
4. Test in a browser to see if the SSL is working.
5. SSL working correctly as it should with the certificate from lets encrypt.
-----
6. SSL Certificate expires, I guess Vesta CP updated the certificate somehow.
7. SSL now not working, as Google Chrome says the certificate is from a different domain.
> Related Issues/Forum Threads:
I've googled the problem and have been unable to find anything, what's strange is that the certificates that are shown in the control panel are the same certificates that are referenced in the shttpd.conf files.
But something has gone wrong somewhere, but unsure where.
> Other Notes:
I've trawled through the logs and can't find anything to do with lets encrypt.
[root@vps ~]# uname -a
Linux vps 2.6.32-042stab112.15 #1 SMP Tue Oct 20 17:22:56 MSK 2015 x86_64 x86_64 x86_64 GNU/Linux
[root@vps ~]# cat /proc/version
Linux version 2.6.32-042stab112.15 ([email protected]) (gcc version 4.4.6 20120305 (Red Hat 4.4.6-4) (GCC) ) #1 SMP Tue Oct 20 17:22:56 MSK 2015
[root@vps ~]# cat /etc/*release
CentOS Linux release 7.3.1611 (Core)
NAME="CentOS Linux"
VERSION="7 (Core)"
ID="centos"
ID_LIKE="rhel fedora"
VERSION_ID="7"
PRETTY_NAME="CentOS Linux 7 (Core)"
ANSI_COLOR="0;31"
CPE_NAME="cpe:/o:centos:centos:7"
HOME_URL="https://www.centos.org/"
BUG_REPORT_URL="https://bugs.centos.org/"
CENTOS_MANTISBT_PROJECT="CentOS-7"
CENTOS_MANTISBT_PROJECT_VERSION="7"
REDHAT_SUPPORT_PRODUCT="centos"
REDHAT_SUPPORT_PRODUCT_VERSION="7"
CentOS Linux release 7.3.1611 (Core)
CentOS Linux release 7.3.1611 (Core)
> Operating System (OS/VERSION):
CentOS Linux release 7.3.1611
> VestaCP Version:
Version: 0.9.8 (x86_64) - Release:17
> Installed Software (what you got with the installer):
apache, nginx, vsftpd, named, mysql, postgresql, exim, dovecot, clamav, spamassassin, iptables, fail2ban, quota
> Steps to Reproduce:
This part is hard to explain, but I'll list what I did in the order I did them.
1. Install Vesta CP.
2. Create new user.
3. Add domains to the new user, and tick the box for lets encrypt.
4. Test in a browser to see if the SSL is working.
5. SSL working correctly as it should with the certificate from lets encrypt.
-----
6. SSL Certificate expires, I guess Vesta CP updated the certificate somehow.
7. SSL now not working, as Google Chrome says the certificate is from a different domain.
> Related Issues/Forum Threads:
I've googled the problem and have been unable to find anything, what's strange is that the certificates that are shown in the control panel are the same certificates that are referenced in the shttpd.conf files.
But something has gone wrong somewhere, but unsure where.
> Other Notes:
I've trawled through the logs and can't find anything to do with lets encrypt.
[root@vps ~]# uname -a
Linux vps 2.6.32-042stab112.15 #1 SMP Tue Oct 20 17:22:56 MSK 2015 x86_64 x86_64 x86_64 GNU/Linux
[root@vps ~]# cat /proc/version
Linux version 2.6.32-042stab112.15 ([email protected]) (gcc version 4.4.6 20120305 (Red Hat 4.4.6-4) (GCC) ) #1 SMP Tue Oct 20 17:22:56 MSK 2015
[root@vps ~]# cat /etc/*release
CentOS Linux release 7.3.1611 (Core)
NAME="CentOS Linux"
VERSION="7 (Core)"
ID="centos"
ID_LIKE="rhel fedora"
VERSION_ID="7"
PRETTY_NAME="CentOS Linux 7 (Core)"
ANSI_COLOR="0;31"
CPE_NAME="cpe:/o:centos:centos:7"
HOME_URL="https://www.centos.org/"
BUG_REPORT_URL="https://bugs.centos.org/"
CENTOS_MANTISBT_PROJECT="CentOS-7"
CENTOS_MANTISBT_PROJECT_VERSION="7"
REDHAT_SUPPORT_PRODUCT="centos"
REDHAT_SUPPORT_PRODUCT_VERSION="7"
CentOS Linux release 7.3.1611 (Core)
CentOS Linux release 7.3.1611 (Core)