errocode 109 on renewing Let?s encrypt certificate Alex Bonet
    errocode 109 on renewing Let?s encrypt certificate Synametrics Support

From: Alex Bonet
Date: 4/15/24 4:29 AM
Topic: errocode 109 on renewing Let?s encrypt certificate
Type: General Discussions
Post a follow up

Good morning,

I renew let´s encrypt every 90 days manually. This time I get an error on renewing the certificate:

2024-04-15 08:49:08,729 ERROR helper.W - Unable to create cert for Let's Encrypt: Unable to validate challenge. . ErrorCode: 109

 

The strange thing is that I didn´t change nothing. It´s the same version of Xeams like the last renew 8.9 build 6291. Do you have an idea why I get this error code?

 

Thank you in advance for your reply.

 

Best regards

Alex Bonet

Top

From: Synametrics Support
Date: 4/18/24 9:51 AM
Topic: errocode 109 on renewing Let?s encrypt certificate
Type: General Discussions
Post a follow up

Alex,

Is there any chance you started configuring the MTA-STS feature in Xeams but did not finish it all the way? When MTA-STS is configured, Xeams will try to issue an SSL certificate for multiple hosts, and all of them MUST resolve to your public IP. Try the following steps to confirm this theory:

  • Using Windows File Explorer or a Terminal if you're on Linux, go to $INSTALL_DIR\config folder
  • Look for a file called sslCertHosts.dat.
  • This file contains the additional host names that Xeams will try to get an SSL cert for and all of them MUST resolve to your public IP.
  • Print the contents of this file and confirm if the host names listed resolve correctly. If not, remove this file, restart Xeams, and try issuing the certificate again.
Top