# Lets encrypt cert will not renew

**URL:** https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823
**Category:** Installation Issues
**Created:** [June 8, 2020, 11:16pm UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823 "2020-06-08T23:16:09Z")
**Posts on this page:** 5
**Page:** 1

<div class="post-metadata">

### Author: ![tomtomlincs](https://avatars.discourse-cdn.com/v4/letter/t/9fc348/32.png) [@tomtomlincs](https://community.passbolt.com/u/tomtomlincs)
#### Post date: [June 8, 2020, 11:16pm UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823/1 "2020-06-08T23:16:09Z")

</div>

getting the following error when using certbot renew

I would of thought the automatic mode in the installer would add a cron job to autorenew

> The following errors were reported by the server:
> 
> Domain: [passbolt.rocksolid-it.co.uk](http://passbolt.rocksolid-it.co.uk)  
> Type: unauthorized  
> Detail: Invalid response from  
> [http://passbolt.rocksolid-it.co.uk/.well-known/acme-challenge/rLJp7ZvqtR38IamQosJ\_PvaS7wyvnK6VK7nC1Tw1wpk](http://passbolt.rocksolid-it.co.uk/.well-known/acme-challenge/rLJp7ZvqtR38IamQosJ_PvaS7wyvnK6VK7nC1Tw1wpk)  
> [104.248.173.100]: “\n\<html class="passbolt no-js  
> no-passboltplugin version" lang="en"\>\n\n \<meta  
> charset="utf-8"/\>\n ”
> 
> To fix these errors, please make sure that your domain name was  
> entered correctly and the DNS A/AAAA record(s) for that domain  
> contain(s) the right IP address.
> 
> - Your account credentials have been saved in your Certbot  
> configuration directory at /etc/letsencrypt. You should make a  
> secure backup of this folder now. This configuration directory will  
> also contain certificates and private keys obtained by Certbot so  
> making regular backups of this folder is ideal.

---

<div class="post-metadata">

### Author: ![diego](https://yyz1.discourse-cdn.com/flex031/user_avatar/community.passbolt.com/diego/32/16_2.png) [@diego](https://community.passbolt.com/u/diego)
#### Post date: [June 9, 2020, 6:39am UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823/2 "2020-06-09T06:39:23Z")

</div>

Yes you are right about the cronjob I’ll add it to the backlog in order to add it to the scripts.

The error you are facing can be workaround using DNS auth instead of webauth in lets encrypt. I think it will lead to less problems if we switch the scripts to DNS auth method by default, will investigate it too.

---

<div class="post-metadata">

### Author: ![tomtomlincs](https://avatars.discourse-cdn.com/v4/letter/t/9fc348/32.png) [@tomtomlincs](https://community.passbolt.com/u/tomtomlincs)
#### Post date: [June 9, 2020, 2:36pm UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823/3 "2020-06-09T14:36:56Z")

</div>

Im abit simple when It comes to lets encrypt how do I auth using DNS, do I need to add a txt record or somthing?

---

<div class="post-metadata">

### Author: ![diego](https://yyz1.discourse-cdn.com/flex031/user_avatar/community.passbolt.com/diego/32/16_2.png) [@diego](https://community.passbolt.com/u/diego)
#### Post date: [June 9, 2020, 2:49pm UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823/4 "2020-06-09T14:49:28Z")

</div>

Yes, sorry @tomtomlincs I haven’t posted any info regarding the let’s encrypt setup. Yeah you need to add a DNS record. Here more information: [https://letsencrypt.org/docs/challenge-types/#dns-01-challenge](https://letsencrypt.org/docs/challenge-types/#dns-01-challenge)

---

<div class="post-metadata">

### Author: ![system](https://canada1.discourse-cdn.com/flex031/uploads/passbolt/original/2X/b/bee7d3f9329f668000d46e9fcb2e5db1e9d31348.svg) [@system](https://community.passbolt.com/u/system)
#### Post date: [June 14, 2020, 2:49pm UTC](https://community.passbolt.com/t/lets-encrypt-cert-will-not-renew/2823/5 "2020-06-14T14:49:35Z")

</div>

This topic was automatically closed 5 days after the last reply. New replies are no longer allowed.
