解决lnmp更新ssl证书时报错It seems the CA server is busy now, let's wait and retry
摘要:今天发现该站点ssl证书失效了,这个站点使用的是lnmp自带的ssl证书生成功能。可是我明明设置了自动更新啊,之前都能正常工作。于是手动排查问题。首先想到的是既然定时更新没成功,那就手动更新下试试吧。
今天发现该站点ssl证书失效了,这个站点使用的是lnmp自带的ssl证书生成功能。可是我明明设置了自动更新啊,之前都能正常工作。于是手动排查问题。首先想到的是既然定时更新没成功,那就手动更新下试试吧。
查看已有的定时任务
# crontab -l 1 0 * * * "/usr/local/acme.sh"/acme.sh --cron --home "/usr/local/acme.sh" > /dev/null
手动执行定时任务中的命令(注意带"")
# "/usr/local/acme.sh"/acme.sh --cron --home "/usr/local/acme.sh" [Thu Aug 20 09:39:00 CST 2020] ===Starting cron=== [Thu Aug 20 09:39:00 CST 2020] Renew: 'www.caogenjava.com' [Thu Aug 20 09:39:03 CST 2020] Multi domain='DNS:www.caogenjava.com,DNS:caogenjava.com' [Thu Aug 20 09:39:03 CST 2020] Getting domain auth token for each domain [Thu Aug 20 09:44:03 CST 2020] It seems the CA server is busy now, let's wait and retry. Sleeping 1 seconds.
咦?卡住了,从报错上看,这应该是跟证书服务器通讯失败了。于是上网查了一下,原来是acme.sh升级了。
升级acme.sh
# cd /usr/local/acme.sh # acme.sh --upgrade [Thu Aug 20 09:46:19 CST 2020] Installing from online archive. [Thu Aug 20 09:46:19 CST 2020] Downloading https://github.com/Neilpang/acme.sh/archive/master.tar.gz [Thu Aug 20 09:46:26 CST 2020] Extracting master.tar.gz [Thu Aug 20 09:46:26 CST 2020] It is recommended to install socat first. [Thu Aug 20 09:46:26 CST 2020] We use socat for standalone server if you use standalone mode. [Thu Aug 20 09:46:26 CST 2020] If you don't use standalone mode, just ignore this warning. [Thu Aug 20 09:46:26 CST 2020] Installing to /usr/local/acme.sh [Thu Aug 20 09:46:26 CST 2020] Installed to /usr/local/acme.sh/acme.sh [Thu Aug 20 09:46:26 CST 2020] Good, bash is found, so change the shebang to use bash as preferred. [Thu Aug 20 09:46:27 CST 2020] OK [Thu Aug 20 09:46:27 CST 2020] Install success! [Thu Aug 20 09:46:27 CST 2020] Upgrade success!
然后重新执行上面的更新命令,搞定!
其他说明
上面的命令是更新nginx下的所有ssl站点,也可以针对性的更新某个站点,命令如下:
# cd /usr/local/acme.sh # acme.sh --renew -d 域名
除非注明,文章均为草根java原创,转载请注明本文地址:
https://www.caogenjava.com/detail/113.html
上一篇:解决pgAdmin4打开后页面不能正常显示的问题
下一篇:解决/dev/mapper/centos-root 100%问题
相关链接
-
1微信开发errcode:45015,errmsg:response out of time limit之完美解决
-
2archive is not a ZIP archive之解决
-
3火狐每次启动都弹出迅雷提示下载openh264之解决
-
4Eclipse中提示Could not find the main class之解决
-
5以小米6为例图说安卓手机如何安装谷歌四件套
-
6在微信中调用外部浏览器实现文件下载之解决
-
7java web项目代码不报错但是项目左上角有个红叉之解决
-
8Eclipse中svn资源库中文路径乱码解决
-
9万能方法用指定浏览器打开桌面上的网页快捷方式
-
10论坛注册:用户名包含被系统屏蔽的字符之完美解决
热门排行榜
-
1微信开发errcode:45015,errmsg:response out of time limit之完美解决
-
2archive is not a ZIP archive之解决
-
3火狐每次启动都弹出迅雷提示下载openh264之解决
-
4Eclipse中提示Could not find the main class之解决
-
5XML document structures must start and end within the same entity报错解决
-
6以小米6为例图说安卓手机如何安装谷歌四件套
-
7在微信中调用外部浏览器实现文件下载之解决
-
8U盘安装CentOS 7终极方案,简单有效
-
9POI合并单元格时CellRangeAddress类提示过时之解决
-
10java web项目代码不报错但是项目左上角有个红叉之解决