Skip to content

[BUG] 无法正常申请证书 #3431

@Misaka-L

Description

@Misaka-L

联系方式

[email protected]

1Panel 版本

v1.9.2

问题描述

一直会卡在 Waiting for DNS record propagation.,即使解析早已经生效(在服务器上 nslookup 上可以查询到 DNS 对应记录)

重现步骤

  • 创建 DNSPod DNS 账号与 Let's Encrypt ACME 账号
  • 申请一个主域名泛域名,其他域名根域名的证书
  • 问题复现

期待的正确结果

正常申请证书,而不是卡在 Waiting for DNS record propagation.

相关日志输出

2023/12/24 04:52:18 开始申请证书,域名 [*.vrczh.com,vrczh.com] 申请方式 [DNS 自动] DNS 账号 [DNSPod] 厂商 [DnsPod]
2023/12/24 04:52:18 [INFO] [*.vrczh.com, vrczh.com] acme: Obtaining bundled SAN certificate
2023/12/24 04:52:18 [INFO] [*.vrczh.com] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/***
2023/12/24 04:52:18 [INFO] [vrczh.com] AuthURL: https://acme-v02.api.letsencrypt.org/acme/authz-v3/***
2023/12/24 04:52:18 [INFO] [*.vrczh.com] acme: use dns-01 solver
2023/12/24 04:52:18 [INFO] [vrczh.com] acme: Could not find solver for: tls-alpn-01
2023/12/24 04:52:18 [INFO] [vrczh.com] acme: Could not find solver for: http-01
2023/12/24 04:52:18 [INFO] [vrczh.com] acme: use dns-01 solver
2023/12/24 04:52:18 [INFO] [*.vrczh.com] acme: Preparing to solve DNS-01
2023/12/24 04:52:22 [INFO] [vrczh.com] acme: Preparing to solve DNS-01
2023/12/24 04:52:24 [INFO] [*.vrczh.com] acme: Trying to solve DNS-01
2023/12/24 04:52:24 [INFO] [*.vrczh.com] acme: Checking DNS record propagation using [1.1.1.1:53]
2023/12/24 04:52:29 [INFO] Wait for propagation [timeout: 1h0m0s, interval: 5s]
2023/12/24 04:52:30 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:35 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:40 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:45 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:51 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:53 [INFO] [prometheus.status.vrczh.org] acme: Waiting for DNS record propagation.
2023/12/24 04:52:56 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:52:59 [INFO] [prometheus.status.vrczh.org] acme: Waiting for DNS record propagation.
2023/12/24 04:53:01 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:53:04 [INFO] [prometheus.status.vrczh.org] acme: Waiting for DNS record propagation.
2023/12/24 04:53:06 [INFO] [*.vrczh.com] acme: Waiting for DNS record propagation.
2023/12/24 04:53:09 [INFO] [prometheus.status.vrczh.org] acme: Waiting for DNS record propagation.

附加信息

环境信息

  • 使用 DNSPod DNS 账号+Let's Encrypt ACME 账号申请证书
  • DNS 验证方式
  • 申请主域名:*.vrczh.com,其他域名:vrczh.com

已经尝试过的解决方案

  • 更换服务器 DNS 服务器
  • 删除 ACME 账号并重新创建账号
  • 更换手动解析方式

DNSPod 操作日志

服务器 nslookup 结果

root@***:~# nslookup
> set type=TXT
> _acme-challenge.vrczh.com
Server:     1.1.1.1
Address:    1.1.1.1#53

Non-authoritative answer:
_acme-challenge.vrczh.com   text = "z2MfMmtgBoN6euGWvkhfxif42eD7hXTuZcreYmm8ir4"
_acme-challenge.vrczh.com   text = "MA_EoGoS5SJ8CK_tWxBwOJ_AS_xtQj3zJUN9n7kTGhQ"

Authoritative answers can be found from:

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions