Let's encrypt certificate can't renew
BMPCreated with Sketch.BMPZIPCreated with Sketch.ZIPXLSCreated with Sketch.XLSTXTCreated with Sketch.TXTPPTCreated with Sketch.PPTPNGCreated with Sketch.PNGPDFCreated with Sketch.PDFJPGCreated with Sketch.JPGGIFCreated with Sketch.GIFDOCCreated with Sketch.DOC Error Created with Sketch.
Question

Let's encrypt certificate can't renew

by
Community Deleted user
Created on 2021-03-21 09:35:59 (edited on 2024-09-04 14:24:51) in Virtual Private Servers

Ubuntu 20.04 VPS, nginx, let's encrypt certificate installed on January (not wildcard), automated by certbot version 1.13.0 .
"sudo certbot renew --dry-run" doesn't work anymore, it returns:

> Failed to renew certificate mydomain.com with error: Error determining zone identifier for mydomain.com: 403 Client Error: Forbidden for url: https:/
> /eu.api.ovh.com/1.0/domain/zone/. (Are your Application Key and Consumer Key values correct?)

The renewal is done by the dns-ovh certbot plugin.
File /etc/letsencrypt/renewal/mydomain.com.conf has the same credentials used when I created the certificate.

How can I check if my credentials are valid?
Could this issue be related to the recent OVH incident?


11 Replies ( Latest reply on 2022-01-07 07:55:21 by
Adren
)

From the error message, it looks like your API key has expired.

Maybe you should generate new tokens at the following URL:
https://api.ovh.com/createToken/
- Application Key
- Application Secret
- Consumer Key