Heray-Was-Here
Server : nginx/1.14.1
System : Linux hwsrv-1092325.hostwindsdns.com 4.18.0-553.5.1.el8.x86_64 #1 SMP Tue May 21 05:46:01 UTC 2024 x86_64
User : nginx ( 993)
PHP Version : 7.4.33
Disable Function : NONE
Directory :  /proc/thread-self/root/var/log/letsencrypt/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : //proc/thread-self/root/var/log/letsencrypt/letsencrypt.log.183
2026-03-22 16:53:40,579:DEBUG:certbot._internal.main:certbot version: 1.22.0
2026-03-22 16:53:40,581:DEBUG:certbot._internal.main:Location of certbot entry point: /usr/bin/certbot
2026-03-22 16:53:40,581:DEBUG:certbot._internal.main:Arguments: ['--noninteractive', '--no-random-sleep-on-renew']
2026-03-22 16:53:40,582:DEBUG:certbot._internal.main:Discovered plugins: PluginsRegistry(PluginEntryPoint#manual,PluginEntryPoint#nginx,PluginEntryPoint#null,PluginEntryPoint#standalone,PluginEntryPoint#webroot)
2026-03-22 16:53:40,654:DEBUG:certbot._internal.log:Root logging level set at 30
2026-03-22 16:53:40,658:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/aranoinvestmentsgroup.com.conf
2026-03-22 16:53:40,693:DEBUG:certbot._internal.plugins.selection:Requested authenticator <certbot._internal.cli.cli_utils._Default object at 0x7f365ac9f3c8> and installer <certbot._internal.cli.cli_utils._Default object at 0x7f365ac9f3c8>
2026-03-22 16:53:40,731:INFO:certbot.ocsp:Cannot extract OCSP URI from /etc/letsencrypt/archive/aranoinvestmentsgroup.com/cert13.pem
2026-03-22 16:53:40,736:DEBUG:certbot._internal.display.obj:Notifying user: Certificate not yet due for renewal
2026-03-22 16:53:40,737:DEBUG:certbot._internal.plugins.selection:Requested authenticator nginx and installer nginx
2026-03-22 16:53:40,743:DEBUG:certbot._internal.plugins.selection:Selecting plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac4ce80>
2026-03-22 16:53:40,744:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/aranotinsurance.com.conf
2026-03-22 16:53:40,775:INFO:certbot.ocsp:Cannot extract OCSP URI from /etc/letsencrypt/archive/aranotinsurance.com/cert14.pem
2026-03-22 16:53:40,777:DEBUG:certbot._internal.display.obj:Notifying user: Certificate not yet due for renewal
2026-03-22 16:53:40,778:DEBUG:certbot._internal.plugins.selection:Requested authenticator nginx and installer nginx
2026-03-22 16:53:40,783:DEBUG:certbot._internal.plugins.selection:Selecting plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac4cba8>
2026-03-22 16:53:40,784:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/frontlineconstructionga.com.conf
2026-03-22 16:53:40,815:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2024-12-28 08:14:01 UTC.
2026-03-22 16:53:40,816:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
2026-03-22 16:53:40,816:DEBUG:certbot._internal.plugins.selection:Requested authenticator nginx and installer nginx
2026-03-22 16:53:41,280:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365b9c8860>
Prep: True
2026-03-22 16:53:41,280:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365b9c8860>
Prep: True
2026-03-22 16:53:41,281:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365b9c8860> and installer <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365b9c8860>
2026-03-22 16:53:41,281:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator nginx, Installer nginx
2026-03-22 16:53:41,295:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/1496881526', new_authzr_uri=None, terms_of_service=None), 6eef7b6e72a83da2cef2f162ab0fae14, Meta(creation_dt=datetime.datetime(2024, 1, 3, 5, 42, 22, tzinfo=<UTC>), creation_host='hwsrv-1092325.hostwindsdns.com', register_to_eff=None))>
2026-03-22 16:53:41,298:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
2026-03-22 16:53:41,302:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:443
2026-03-22 16:53:41,421:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 1033
2026-03-22 16:53:41,422:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:41 GMT
Content-Type: application/json
Content-Length: 1033
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "c2AUNBWNbL8": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  "meta": {
    "caaIdentities": [
      "letsencrypt.org"
    ],
    "profiles": {
      "classic": "https://letsencrypt.org/docs/profiles#classic",
      "shortlived": "https://letsencrypt.org/docs/profiles#shortlived",
      "tlsclient": "https://letsencrypt.org/docs/profiles#tlsclient",
      "tlsserver": "https://letsencrypt.org/docs/profiles#tlsserver"
    },
    "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.6-August-18-2025.pdf",
    "website": "https://letsencrypt.org"
  },
  "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  "renewalInfo": "https://acme-v02.api.letsencrypt.org/acme/renewal-info",
  "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
}
2026-03-22 16:53:41,425:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for frontlineconstructionga.com
2026-03-22 16:53:41,526:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/2321_key-certbot.pem
2026-03-22 16:53:41,581:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/2321_csr-certbot.pem
2026-03-22 16:53:41,582:DEBUG:acme.client:Requesting fresh nonce
2026-03-22 16:53:41,582:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
2026-03-22 16:53:41,620:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
2026-03-22 16:53:41,621:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:41 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: YrllWrIAOfoXvLjeEoFIa0GWP73bjYGy8YqMMlnm31YUdn47toY
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800


2026-03-22 16:53:41,622:DEBUG:acme.client:Storing nonce: YrllWrIAOfoXvLjeEoFIa0GWP73bjYGy8YqMMlnm31YUdn47toY
2026-03-22 16:53:41,622:DEBUG:acme.client:JWS payload:
b'{\n  "identifiers": [\n    {\n      "type": "dns",\n      "value": "frontlineconstructionga.com"\n    }\n  ]\n}'
2026-03-22 16:53:41,627:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJZcmxsV3JJQU9mb1h2TGplRW9GSWEwR1dQNzNiallHeThZcU1NbG5tMzFZVWRuNDd0b1kiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL25ldy1vcmRlciJ9",
  "signature": "BWLdQNrye4A7kiYakOiAqWgqX-C2MM5N5TjQ1LwJR7MIukn3PFbZKlTn3iToYPRapqUEQejP8bbciLqP8CPESmKEDkE4xQnhpQJ4DWHHaO1IUyX4GMscJ5Vs1FNLBqbLTXBI5aLzB3n07UdK2R6NcC2pxPGXJE5oCAh9lu8DkEnZjBFfjaLFI4HxK8VYy8WQBQp2fp1-a9UuJIu2nCFcn_Jl_S9xEU2KZAEuxY2JXfohJNxltOS4AeAl-tkfBVEPROBRviYWySCbZo5_lpJA2q08LuAICmGXukNDb2bEFlDaH3yODsI5-sGYYruKWWHppZX2tFM_cuRFJPC7pvkKmg",
  "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImZyb250bGluZWNvbnN0cnVjdGlvbmdhLmNvbSIKICAgIH0KICBdCn0"
}
2026-03-22 16:53:41,818:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 361
2026-03-22 16:53:41,819:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Sun, 22 Mar 2026 16:53:41 GMT
Content-Type: application/json
Content-Length: 361
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Location: https://acme-v02.api.letsencrypt.org/acme/order/1496881526/493188477371
Replay-Nonce: O7NrciM45sxIvNiEWVxXKI9aBMszRqvWVnZUfAZ0YLAg9xQJUDo
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "status": "pending",
  "expires": "2026-03-29T16:53:41Z",
  "identifiers": [
    {
      "type": "dns",
      "value": "frontlineconstructionga.com"
    }
  ],
  "authorizations": [
    "https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025315561"
  ],
  "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/1496881526/493188477371"
}
2026-03-22 16:53:41,819:DEBUG:acme.client:Storing nonce: O7NrciM45sxIvNiEWVxXKI9aBMszRqvWVnZUfAZ0YLAg9xQJUDo
2026-03-22 16:53:41,819:DEBUG:acme.client:JWS payload:
b''
2026-03-22 16:53:41,822:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025315561:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJPN05yY2lNNDVzeEl2TmlFV1Z4WEtJOWFCTXN6UnF2V1ZuWlVmQVowWUxBZzl4UUpVRG8iLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzE0OTY4ODE1MjYvNjc3MDI1MzE1NTYxIn0",
  "signature": "hPl9Yixwbkus9XqUxGr_L0lHJSXOBRPLhB-ymfh7P2lLYtN1_YEJHntrKjwQ3oC5yuKKrlB0_petm7eiFbyGMamQL3x2IWMYCOKnDSZ3yQMDGYLfWRJBNAtL-RxcOvohbVt1KwFtNDsJ9kU53cUMRocZZilWQJ6GqFP8iPgbY_MFPLgmxd0yAFuaEmpxosOXFYofGr7IQHZhZZn_d2SxNjoKFxB4DPMJ15rptFfll6hPSW7OiPcvz_eAnfSVTXwmToyPQ3Lmqrv9WGa4pRIl0Sm0I1yUz3Y_qTi-tRvs17dcpnWUnBbjINnzi7ekBuWvlnEdRa7OXaG5xghja5ISnw",
  "payload": ""
}
2026-03-22 16:53:41,862:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/1496881526/677025315561 HTTP/1.1" 200 835
2026-03-22 16:53:41,864:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:41 GMT
Content-Type: application/json
Content-Length: 835
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: O7NrciM4qkk7Sd3TRRgdXcbGY7pDFjuKpSripT0byq5dQtRPMfs
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "frontlineconstructionga.com"
  },
  "status": "pending",
  "expires": "2026-03-29T16:53:41Z",
  "challenges": [
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/SzRFEg",
      "status": "pending",
      "token": "quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/q1a4Gg",
      "status": "pending",
      "token": "quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/GtnQzA",
      "status": "pending",
      "token": "quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s"
    }
  ]
}
2026-03-22 16:53:41,864:DEBUG:acme.client:Storing nonce: O7NrciM4qkk7Sd3TRRgdXcbGY7pDFjuKpSripT0byq5dQtRPMfs
2026-03-22 16:53:41,865:INFO:certbot._internal.auth_handler:Performing the following challenges:
2026-03-22 16:53:41,865:INFO:certbot._internal.auth_handler:http-01 challenge for frontlineconstructionga.com
2026-03-22 16:53:41,932:DEBUG:certbot_nginx._internal.http_01:Generated server block:
[]
2026-03-22 16:53:41,934:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-mail.conf
2026-03-22 16:53:41,935:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/frontlineconstructionga.com.conf
2026-03-22 16:53:41,935:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/php-fpm.conf
2026-03-22 16:53:41,935:DEBUG:certbot.reverter:Creating backup of /etc/nginx/mime.types
2026-03-22 16:53:41,936:DEBUG:certbot.reverter:Creating backup of /etc/nginx/nginx.conf
2026-03-22 16:53:41,936:DEBUG:certbot.reverter:Creating backup of /etc/letsencrypt/options-ssl-nginx.conf
2026-03-22 16:53:41,937:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-perl.conf
2026-03-22 16:53:41,937:DEBUG:certbot.reverter:Creating backup of /etc/nginx/default.d/php.conf
2026-03-22 16:53:41,937:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-xslt-filter.conf
2026-03-22 16:53:41,938:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-image-filter.conf
2026-03-22 16:53:41,938:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/aranoinvestmentsgroup.com.conf
2026-03-22 16:53:41,939:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/aranotinsurance.com.conf
2026-03-22 16:53:41,939:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-stream.conf
2026-03-22 16:53:41,941:DEBUG:certbot_nginx._internal.parser:Writing nginx conf tree to /etc/nginx/nginx.conf:
# For more information on configuration, see:
#   * Official English Documentation: http://nginx.org/en/docs/
#   * Official Russian Documentation: http://nginx.org/ru/docs/

user nginx;
worker_processes auto;
error_log /var/log/nginx/error.log;
pid /run/nginx.pid;

# Load dynamic modules. See /usr/share/doc/nginx/README.dynamic.
include /usr/share/nginx/modules/*.conf;

events {
    worker_connections 1024;
}

http {
include /etc/letsencrypt/le_http_01_cert_challenge.conf;
server_names_hash_bucket_size 128;
    log_format  main  '$remote_addr - $remote_user [$time_local] "$request" '
                      '$status $body_bytes_sent "$http_referer" '
                      '"$http_user_agent" "$http_x_forwarded_for"';

    access_log  /var/log/nginx/access.log  main;

    sendfile            on;
    tcp_nopush          on;
    tcp_nodelay         on;
    keepalive_timeout   65;
    types_hash_max_size 2048;

    include             /etc/nginx/mime.types;
    default_type        application/octet-stream;

    # Load modular configuration files from the /etc/nginx/conf.d directory.
    # See http://nginx.org/en/docs/ngx_core_module.html#include
    # for more information.
    include /etc/nginx/conf.d/*.conf;

    server {
        listen       80 default_server;
        listen       [::]:80 default_server;
        server_name  _;
        root         /usr/share/nginx/html;

        # Load configuration files for the default server block.
        include /etc/nginx/default.d/*.conf;

        location / {
        }

        error_page 404 /404.html;
            location = /40x.html {
        }

        error_page 500 502 503 504 /50x.html;
            location = /50x.html {
        }
    }

# Settings for a TLS enabled server.
#
#    server {
#        listen       443 ssl http2 default_server;
#        listen       [::]:443 ssl http2 default_server;
#        server_name  _;
#        root         /usr/share/nginx/html;
#
#        ssl_certificate "/etc/pki/nginx/server.crt";
#        ssl_certificate_key "/etc/pki/nginx/private/server.key";
#        ssl_session_cache shared:SSL:1m;
#        ssl_session_timeout  10m;
#        ssl_ciphers PROFILE=SYSTEM;
#        ssl_prefer_server_ciphers on;
#
#        # Load configuration files for the default server block.
#        include /etc/nginx/default.d/*.conf;
#
#        location / {
#        }
#
#        error_page 404 /404.html;
#            location = /40x.html {
#        }
#
#        error_page 500 502 503 504 /50x.html;
#            location = /50x.html {
#        }
#    }

}


2026-03-22 16:53:41,943:DEBUG:certbot_nginx._internal.parser:Writing nginx conf tree to /etc/nginx/conf.d/frontlineconstructionga.com.conf:
server {rewrite ^(/.well-known/acme-challenge/.*) $1 break; # managed by Certbot


	server_name frontlineconstructionga.com;

        root /var/www/frontlineconstructionga.com/public_html;
        index index.php index.html index.htm index.nginx-debian.html;

	client_max_body_size 110M;
	client_header_buffer_size 1024k;
	large_client_header_buffers 16 1024k;
        
	location / {
                try_files $uri $uri/ /index.php$is_args$args;
        }

	error_page 404 /404.html;
	error_page 500 502 503 504 /50x.html;
	location = /50x.html {
		root /usr/share/nginx/html;
	}

	location ~ \.php$ {
		try_files $uri =404;
		fastcgi_pass unix:/var/run/php-fpm/www.sock;
		fastcgi_index index.php;
		fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
		include fastcgi_params;
		fastcgi_connect_timeout 300s;
		fastcgi_read_timeout 300s;
		fastcgi_send_timeout 300s;
	}

        location ~ /\.ht {
                deny all;
        }

	location = /favicon.ico { log_not_found off; access_log off; }
	location = /robots.txt { log_not_found off; access_log off; allow all; }
	location ~* \.(css|gif|ico|jpeg|jpg|js|png)$ {
        expires max;
        log_not_found off;
    }


    listen 443 ssl; # managed by Certbot
    ssl_certificate /etc/letsencrypt/live/frontlineconstructionga.com/fullchain.pem; # managed by Certbot
    ssl_certificate_key /etc/letsencrypt/live/frontlineconstructionga.com/privkey.pem; # managed by Certbot
    include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
    ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot

location = /.well-known/acme-challenge/quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s{default_type text/plain;return 200 quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s.bgYKXwAkgLP4FMH56-69uX6dxSaULhqWhsRvoPpjip4;} # managed by Certbot

}
server {rewrite ^(/.well-known/acme-challenge/.*) $1 break; # managed by Certbot


    if ($host = frontlineconstructionga.com) {
        return 301 https://$host$request_uri;
    } # managed by Certbot


	server_name frontlineconstructionga.com;
    listen 80;
    return 404; # managed by Certbot


location = /.well-known/acme-challenge/quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s{default_type text/plain;return 200 quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s.bgYKXwAkgLP4FMH56-69uX6dxSaULhqWhsRvoPpjip4;} # managed by Certbot

}
2026-03-22 16:53:42,983:DEBUG:acme.client:JWS payload:
b'{}'
2026-03-22 16:53:42,989:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/q1a4Gg:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJPN05yY2lNNHFrazdTZDNUUlJnZFhjYkdZN3BERmp1S3BTcmlwVDBieXE1ZFF0UlBNZnMiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLzE0OTY4ODE1MjYvNjc3MDI1MzE1NTYxL3ExYTRHZyJ9",
  "signature": "ujaGooclc91G0UDY0b6nVKiZoMwTuB7SBkI1SBpVnyH1CVRk6yjn3Iutaeu086ZusSaMOBScePoFYSRMATcZncHJ52JN9H-Mu0MIlmwsI6VUJPhHdwz3CLZlY3nKv_hOqfBKtGN4-x-yLjD8w_aZ4-kDg4lxMq2AxwPT3spQNv9uYO2wo3vJ92fuOQK-mePKe-HigJaJAJGlxZ1iXrwngKJ5rO22gM2C0nBK9WJKoRq7OXM1u1cU11dEbe4IrvG27t3N5acFWqiF_Vka2b_zQv9hFIlXf8X7VXTJYGm4YQoswHcYFqDTzE4H6zbVnpSnsNz03y8FZL7FzAJwYk7wgQ",
  "payload": "e30"
}
2026-03-22 16:53:43,036:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall/1496881526/677025315561/q1a4Gg HTTP/1.1" 200 195
2026-03-22 16:53:43,038:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:43 GMT
Content-Type: application/json
Content-Length: 195
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025315561>;rel="up"
Location: https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/q1a4Gg
Replay-Nonce: YrllWrIArroEbqTE4lET0AIM-fM7goat8hnxwOURZXrBaF1eL5w
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "type": "http-01",
  "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/q1a4Gg",
  "status": "pending",
  "token": "quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s"
}
2026-03-22 16:53:43,039:DEBUG:acme.client:Storing nonce: YrllWrIArroEbqTE4lET0AIM-fM7goat8hnxwOURZXrBaF1eL5w
2026-03-22 16:53:43,040:INFO:certbot._internal.auth_handler:Waiting for verification...
2026-03-22 16:53:44,041:DEBUG:acme.client:JWS payload:
b''
2026-03-22 16:53:44,044:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025315561:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJZcmxsV3JJQXJyb0VicVRFNGxFVDBBSU0tZk03Z29hdDhobnh3T1VSWlhyQmFGMWVMNXciLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzE0OTY4ODE1MjYvNjc3MDI1MzE1NTYxIn0",
  "signature": "htIWD7eo_zD7mocma9mDFKruf1_qpCPFA0bhVtdyWChfhaaxxfsaJW0Tt8NpvTdBAVNUrLQD3QnWYWNfF7SPZ5ZrZUQ3wih7iiTL6-VJFk8OT5oFZGwBDcmSLisIJ48H7d0hoY4A39Uzi233nGZkKQNLMSkHOhwIjcnyeDA6bljLKH2AhI45q2ZzqWgtyUZirbIDxXdOf18GhknsdEfnMdqwt5W-yiEc_fvGqzMrMUXaL6qH5T1JIpAqN-82RXfAltCzfdZBzswtWJMMgfkUwSmAy58oJ5bdYldXJwvhcC0FYOeNZBAGmWgu4EA3FcbYdznTUnsk6U3ZRojiabL6gQ",
  "payload": ""
}
2026-03-22 16:53:44,084:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/1496881526/677025315561 HTTP/1.1" 200 1084
2026-03-22 16:53:44,085:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:44 GMT
Content-Type: application/json
Content-Length: 1084
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: YrllWrIA8_k_uNnLVhIQg8yRexEA9481ux28KOcOAGa0zy7BTVA
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "frontlineconstructionga.com"
  },
  "status": "invalid",
  "expires": "2026-03-29T16:53:41Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025315561/q1a4Gg",
      "status": "invalid",
      "validated": "2026-03-22T16:53:43Z",
      "error": {
        "type": "urn:ietf:params:acme:error:unauthorized",
        "detail": "65.109.65.153: Invalid response from http://frontlineconstructionga.com/.well-known/acme-challenge/quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s: 404",
        "status": 403
      },
      "token": "quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s",
      "validationRecord": [
        {
          "url": "http://frontlineconstructionga.com/.well-known/acme-challenge/quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s",
          "hostname": "frontlineconstructionga.com",
          "port": "80",
          "addressesResolved": [
            "65.109.65.153"
          ],
          "addressUsed": "65.109.65.153"
        }
      ]
    }
  ]
}
2026-03-22 16:53:44,085:DEBUG:acme.client:Storing nonce: YrllWrIA8_k_uNnLVhIQg8yRexEA9481ux28KOcOAGa0zy7BTVA
2026-03-22 16:53:44,086:INFO:certbot._internal.auth_handler:Challenge failed for domain frontlineconstructionga.com
2026-03-22 16:53:44,086:INFO:certbot._internal.auth_handler:http-01 challenge for frontlineconstructionga.com
2026-03-22 16:53:44,087:DEBUG:certbot._internal.display.obj:Notifying user: 
Certbot failed to authenticate some domains (authenticator: nginx). The Certificate Authority reported these problems:
  Domain: frontlineconstructionga.com
  Type:   unauthorized
  Detail: 65.109.65.153: Invalid response from http://frontlineconstructionga.com/.well-known/acme-challenge/quF-JV3DBSEk-687eOaku2LCZPrMtkdyZj7Tj74LK2s: 404

Hint: The Certificate Authority failed to verify the temporary nginx configuration changes made by Certbot. Ensure the listed domains point to this nginx server and that it is accessible from the internet.

2026-03-22 16:53:44,090:DEBUG:certbot._internal.error_handler:Encountered exception:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-03-22 16:53:44,090:DEBUG:certbot._internal.error_handler:Calling registered functions
2026-03-22 16:53:44,090:INFO:certbot._internal.auth_handler:Cleaning up challenges
2026-03-22 16:53:45,532:ERROR:certbot._internal.renewal:Failed to renew certificate frontlineconstructionga.com with error: Some challenges have failed.
2026-03-22 16:53:45,537:DEBUG:certbot._internal.renewal:Traceback was:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/renewal.py", line 485, in handle_renewal_request
    main.renew_cert(lineage_config, plugins, renewal_candidate)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1441, in renew_cert
    renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 127, in _get_and_save_cert
    renewal.renew_cert(config, domains, le_client, lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/renewal.py", line 345, in renew_cert
    new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 424, in obtain_certificate
    orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 476, in _get_order_and_authorizations
    authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-03-22 16:53:45,537:DEBUG:certbot._internal.display.obj:Notifying user: Processing /etc/letsencrypt/renewal/somospueblo.com.conf
2026-03-22 16:53:45,571:DEBUG:certbot._internal.storage:Should renew, less than 30 days before certificate expiry 2024-05-01 12:57:39 UTC.
2026-03-22 16:53:45,571:INFO:certbot._internal.renewal:Certificate is due for renewal, auto-renewing...
2026-03-22 16:53:45,571:DEBUG:certbot._internal.plugins.selection:Requested authenticator nginx and installer nginx
2026-03-22 16:53:45,975:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac7e8d0>
Prep: True
2026-03-22 16:53:45,976:DEBUG:certbot._internal.plugins.selection:Single candidate plugin: * nginx
Description: Nginx Web Server plugin
Interfaces: Installer, Authenticator, Plugin
Entry point: nginx = certbot_nginx._internal.configurator:NginxConfigurator
Initialized: <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac7e8d0>
Prep: True
2026-03-22 16:53:45,976:DEBUG:certbot._internal.plugins.selection:Selected authenticator <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac7e8d0> and installer <certbot_nginx._internal.configurator.NginxConfigurator object at 0x7f365ac7e8d0>
2026-03-22 16:53:45,976:INFO:certbot._internal.plugins.selection:Plugins selected: Authenticator nginx, Installer nginx
2026-03-22 16:53:45,987:DEBUG:certbot._internal.main:Picked account: <Account(RegistrationResource(body=Registration(key=None, contact=(), agreement=None, status=None, terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://acme-v02.api.letsencrypt.org/acme/acct/1496881526', new_authzr_uri=None, terms_of_service=None), 6eef7b6e72a83da2cef2f162ab0fae14, Meta(creation_dt=datetime.datetime(2024, 1, 3, 5, 42, 22, tzinfo=<UTC>), creation_host='hwsrv-1092325.hostwindsdns.com', register_to_eff=None))>
2026-03-22 16:53:45,989:DEBUG:acme.client:Sending GET request to https://acme-v02.api.letsencrypt.org/directory.
2026-03-22 16:53:45,991:DEBUG:urllib3.connectionpool:Starting new HTTPS connection (1): acme-v02.api.letsencrypt.org:443
2026-03-22 16:53:46,058:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "GET /directory HTTP/1.1" 200 1033
2026-03-22 16:53:46,059:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:46 GMT
Content-Type: application/json
Content-Length: 1033
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "Ga9Z7gO5jtk": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
  "keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
  "meta": {
    "caaIdentities": [
      "letsencrypt.org"
    ],
    "profiles": {
      "classic": "https://letsencrypt.org/docs/profiles#classic",
      "shortlived": "https://letsencrypt.org/docs/profiles#shortlived",
      "tlsclient": "https://letsencrypt.org/docs/profiles#tlsclient",
      "tlsserver": "https://letsencrypt.org/docs/profiles#tlsserver"
    },
    "termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.6-August-18-2025.pdf",
    "website": "https://letsencrypt.org"
  },
  "newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
  "newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
  "newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
  "renewalInfo": "https://acme-v02.api.letsencrypt.org/acme/renewal-info",
  "revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
}
2026-03-22 16:53:46,060:DEBUG:certbot._internal.display.obj:Notifying user: Renewing an existing certificate for somospueblo.com
2026-03-22 16:53:46,235:DEBUG:certbot.crypto_util:Generating RSA key (2048 bits): /etc/letsencrypt/keys/2322_key-certbot.pem
2026-03-22 16:53:46,288:DEBUG:certbot.crypto_util:Creating CSR: /etc/letsencrypt/csr/2322_csr-certbot.pem
2026-03-22 16:53:46,289:DEBUG:acme.client:Requesting fresh nonce
2026-03-22 16:53:46,290:DEBUG:acme.client:Sending HEAD request to https://acme-v02.api.letsencrypt.org/acme/new-nonce.
2026-03-22 16:53:46,311:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "HEAD /acme/new-nonce HTTP/1.1" 200 0
2026-03-22 16:53:46,311:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:46 GMT
Connection: keep-alive
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: tWo_Kf9RCtn6BAq7Z2u2IsCzXkbFpZtOhiaw-Cv9NevixfkIHz0
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800


2026-03-22 16:53:46,312:DEBUG:acme.client:Storing nonce: tWo_Kf9RCtn6BAq7Z2u2IsCzXkbFpZtOhiaw-Cv9NevixfkIHz0
2026-03-22 16:53:46,312:DEBUG:acme.client:JWS payload:
b'{\n  "identifiers": [\n    {\n      "type": "dns",\n      "value": "somospueblo.com"\n    }\n  ]\n}'
2026-03-22 16:53:46,315:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/new-order:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJ0V29fS2Y5UkN0bjZCQXE3WjJ1MklzQ3pYa2JGcFp0T2hpYXctQ3Y5TmV2aXhma0lIejAiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL25ldy1vcmRlciJ9",
  "signature": "aliFLPkBzBkG15hDHXuEkRhMyS6c_VV612738jzpX4-Ee1PXQ0AWqv_sA4lERUbQcX0GCzmLODRM0paWng3NH7HPxI0GYhLIQ6n62xywyHY36lDt13ND-gXon3EuMQLasKi08ZPLPAiy3wGNQJYfP9-245C5KcfTbHGsYwyeFItiWdQ6Q3QrxrHfMTC-sKHjzMbc6uUpZ8ao7DIXRJwCVT5tZ7gs0uUko4dyr5mfH4r6WTcnXfDsFNZycyI4v-wPbBgxQZfXHqKktDFl9tUaOKvqmSeHSDSwedhg3u57f28CFnQT5JhNAvGxBdKlztfUMz_eRM_LIutJigacFTqc-w",
  "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogInNvbW9zcHVlYmxvLmNvbSIKICAgIH0KICBdCn0"
}
2026-03-22 16:53:46,393:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/new-order HTTP/1.1" 201 349
2026-03-22 16:53:46,395:DEBUG:acme.client:Received response:
HTTP 201
Server: nginx
Date: Sun, 22 Mar 2026 16:53:46 GMT
Content-Type: application/json
Content-Length: 349
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Location: https://acme-v02.api.letsencrypt.org/acme/order/1496881526/493188494141
Replay-Nonce: tWo_Kf9RNo3xcYo7bT9_an-QW-B4xUVQTT9cQrp5_njMkmAoND8
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "status": "pending",
  "expires": "2026-03-29T16:53:46Z",
  "identifiers": [
    {
      "type": "dns",
      "value": "somospueblo.com"
    }
  ],
  "authorizations": [
    "https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025339561"
  ],
  "finalize": "https://acme-v02.api.letsencrypt.org/acme/finalize/1496881526/493188494141"
}
2026-03-22 16:53:46,395:DEBUG:acme.client:Storing nonce: tWo_Kf9RNo3xcYo7bT9_an-QW-B4xUVQTT9cQrp5_njMkmAoND8
2026-03-22 16:53:46,395:DEBUG:acme.client:JWS payload:
b''
2026-03-22 16:53:46,398:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025339561:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJ0V29fS2Y5Uk5vM3hjWW83YlQ5X2FuLVFXLUI0eFVWUVRUOWNRcnA1X25qTWttQW9ORDgiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzE0OTY4ODE1MjYvNjc3MDI1MzM5NTYxIn0",
  "signature": "T_LnSUXrzMo2L59BWGEUHnk1gD-mgy9g3jZVwUmK721Y99vJTEM9c1pmgjSHeMWUOOjDxT3s2wp7m4Vx-pPBXRT35a8x-Yy8MITaLiGik-jroqG74Unfupq5W3GcY-oZWNY8M2aPLOLhKuTq90AN_seruAvjzxi74bjTf5OqR2OWqXnlykThgW_O3offJkHicXm5a_p64u-zq8Us6IEGJDqXVMQIXTjIZ8Cv5v1eGnIbkMGLTpYToZN7d-3O1QTRGQ_WIQ37grcy68VG1f8ThMoc5bhtg0Ar02ivwSJblrejb6wNjW4g2iDG_F0wIWxSDy88wnUd011JWsCvkITQhg",
  "payload": ""
}
2026-03-22 16:53:46,421:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/1496881526/677025339561 HTTP/1.1" 200 823
2026-03-22 16:53:46,422:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:46 GMT
Content-Type: application/json
Content-Length: 823
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: tWo_Kf9RNXYVgZmRYUtJfVp8qjljBq5OrgjovsZvnnCx5yxBU70
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "somospueblo.com"
  },
  "status": "pending",
  "expires": "2026-03-29T16:53:46Z",
  "challenges": [
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/B3iVGg",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/XaokqA",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    }
  ]
}
2026-03-22 16:53:46,423:DEBUG:acme.client:Storing nonce: tWo_Kf9RNXYVgZmRYUtJfVp8qjljBq5OrgjovsZvnnCx5yxBU70
2026-03-22 16:53:46,424:INFO:certbot._internal.auth_handler:Performing the following challenges:
2026-03-22 16:53:46,424:INFO:certbot._internal.auth_handler:http-01 challenge for somospueblo.com
2026-03-22 16:53:46,501:DEBUG:certbot_nginx._internal.http_01:Generated server block:
[]
2026-03-22 16:53:46,502:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-mail.conf
2026-03-22 16:53:46,502:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/frontlineconstructionga.com.conf
2026-03-22 16:53:46,503:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/php-fpm.conf
2026-03-22 16:53:46,503:DEBUG:certbot.reverter:Creating backup of /etc/nginx/mime.types
2026-03-22 16:53:46,504:DEBUG:certbot.reverter:Creating backup of /etc/nginx/nginx.conf
2026-03-22 16:53:46,504:DEBUG:certbot.reverter:Creating backup of /etc/letsencrypt/options-ssl-nginx.conf
2026-03-22 16:53:46,505:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-perl.conf
2026-03-22 16:53:46,505:DEBUG:certbot.reverter:Creating backup of /etc/nginx/default.d/php.conf
2026-03-22 16:53:46,506:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-xslt-filter.conf
2026-03-22 16:53:46,506:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-http-image-filter.conf
2026-03-22 16:53:46,506:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/aranoinvestmentsgroup.com.conf
2026-03-22 16:53:46,507:DEBUG:certbot.reverter:Creating backup of /etc/nginx/conf.d/aranotinsurance.com.conf
2026-03-22 16:53:46,507:DEBUG:certbot.reverter:Creating backup of /usr/share/nginx/modules/mod-stream.conf
2026-03-22 16:53:46,510:DEBUG:certbot_nginx._internal.parser:Writing nginx conf tree to /etc/nginx/nginx.conf:
# For more information on configuration, see:
#   * Official English Documentation: http://nginx.org/en/docs/
#   * Official Russian Documentation: http://nginx.org/ru/docs/

user nginx;
worker_processes auto;
error_log /var/log/nginx/error.log;
pid /run/nginx.pid;

# Load dynamic modules. See /usr/share/doc/nginx/README.dynamic.
include /usr/share/nginx/modules/*.conf;

events {
    worker_connections 1024;
}

http {
include /etc/letsencrypt/le_http_01_cert_challenge.conf;
server_names_hash_bucket_size 128;
    log_format  main  '$remote_addr - $remote_user [$time_local] "$request" '
                      '$status $body_bytes_sent "$http_referer" '
                      '"$http_user_agent" "$http_x_forwarded_for"';

    access_log  /var/log/nginx/access.log  main;

    sendfile            on;
    tcp_nopush          on;
    tcp_nodelay         on;
    keepalive_timeout   65;
    types_hash_max_size 2048;

    include             /etc/nginx/mime.types;
    default_type        application/octet-stream;

    # Load modular configuration files from the /etc/nginx/conf.d directory.
    # See http://nginx.org/en/docs/ngx_core_module.html#include
    # for more information.
    include /etc/nginx/conf.d/*.conf;

    server {
        listen       80 default_server;
        listen       [::]:80 default_server;
        server_name  _;
        root         /usr/share/nginx/html;

        # Load configuration files for the default server block.
        include /etc/nginx/default.d/*.conf;

        location / {
        }

        error_page 404 /404.html;
            location = /40x.html {
        }

        error_page 500 502 503 504 /50x.html;
            location = /50x.html {
        }
    }

# Settings for a TLS enabled server.
#
#    server {
#        listen       443 ssl http2 default_server;
#        listen       [::]:443 ssl http2 default_server;
#        server_name  _;
#        root         /usr/share/nginx/html;
#
#        ssl_certificate "/etc/pki/nginx/server.crt";
#        ssl_certificate_key "/etc/pki/nginx/private/server.key";
#        ssl_session_cache shared:SSL:1m;
#        ssl_session_timeout  10m;
#        ssl_ciphers PROFILE=SYSTEM;
#        ssl_prefer_server_ciphers on;
#
#        # Load configuration files for the default server block.
#        include /etc/nginx/default.d/*.conf;
#
#        location / {
#        }
#
#        error_page 404 /404.html;
#            location = /40x.html {
#        }
#
#        error_page 500 502 503 504 /50x.html;
#            location = /50x.html {
#        }
#    }



    server {rewrite ^(/.well-known/acme-challenge/.*) $1 break; # managed by Certbot


        listen       80 ;
        listen       [::]:80 ;
    server_name somospueblo.com; # managed by Certbot
        root         /usr/share/nginx/html;

        # Load configuration files for the default server block.
        include /etc/nginx/default.d/*.conf;

        location / {
        }

        error_page 404 /404.html;
            location = /40x.html {
        }

        error_page 500 502 503 504 /50x.html;
            location = /50x.html {
        }
    
location = /.well-known/acme-challenge/k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo{default_type text/plain;return 200 k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo.bgYKXwAkgLP4FMH56-69uX6dxSaULhqWhsRvoPpjip4;} # managed by Certbot

}}


2026-03-22 16:53:47,548:DEBUG:acme.client:JWS payload:
b'{}'
2026-03-22 16:53:47,554:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJ0V29fS2Y5Uk5YWVZnWm1SWVV0SmZWcDhxamxqQnE1T3Jnam92c1p2bm5DeDV5eEJVNzAiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2NoYWxsLzE0OTY4ODE1MjYvNjc3MDI1MzM5NTYxL0NlNmtqdyJ9",
  "signature": "KK9KxG1WRxCwQkyYKEk8fKuYgsWcnO0ZWIFApyuKRfLyP4KesC41KsFci466AvOc6sqhAXVkAR4qRc5Id_uCwaz6IkYVga_siooouDSdRHN7-v16SVO4UiYfVRHGxeWmvFXJCQiWuCSc5UBK4BMb3Myz4g1Q8gcTjUBRA10b2r1jApPspA7hWjLMXGERx15_0fZvAxSIRQRcffXT-n06JL2Rp6rIW-hsTg12SCdF0mMwtPmMTsDyxfkBkwf3n9r8PXGvD14ISoYktGDsDxA7tWJkJnSB078Q-ZXNRLTrpF7Ggx0cdmjwyh3-U3jCvYG4fg4DmSfQ56qD3RmcsWQarQ",
  "payload": "e30"
}
2026-03-22 16:53:47,583:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/chall/1496881526/677025339561/Ce6kjw HTTP/1.1" 200 195
2026-03-22 16:53:47,584:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:47 GMT
Content-Type: application/json
Content-Length: 195
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index", <https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025339561>;rel="up"
Location: https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw
Replay-Nonce: tWo_Kf9RkgYMZILjfkDAgNE7hP0WaQp7PgyNQ90oxtPVzIR5Rvc
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "type": "http-01",
  "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw",
  "status": "pending",
  "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
}
2026-03-22 16:53:47,585:DEBUG:acme.client:Storing nonce: tWo_Kf9RkgYMZILjfkDAgNE7hP0WaQp7PgyNQ90oxtPVzIR5Rvc
2026-03-22 16:53:47,585:INFO:certbot._internal.auth_handler:Waiting for verification...
2026-03-22 16:53:48,587:DEBUG:acme.client:JWS payload:
b''
2026-03-22 16:53:48,590:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025339561:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJ0V29fS2Y5UmtnWU1aSUxqZmtEQWdORTdoUDBXYVFwN1BneU5ROTBveHRQVnpJUjVSdmMiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzE0OTY4ODE1MjYvNjc3MDI1MzM5NTYxIn0",
  "signature": "OE_jDSzWRwoFsD5h9Yb3Mof5edqHmlRii-UhW5trEQysSKtN-MGGb7VZgOOthNlLCs2kwhj6VsMQyR6HNr3BJhNQDHh5vT09TkjvNFQQY3lSJggN04F9pD1BVzNQRQFr6C8wjZ1HNI0aQR1jjuG6u2M7sV729hJLYf0QczEvDah0CdfrkjtvCoSXf2eOEdd2a84eRevwx6sYtGN6NQWL8GNzo8NI1kw_QRhaIjK5wMKiVZk6nQzBx9NuceSZcJWh8hzgS8NVbGiPGDmWOsXPl6XIPlGBYii7YSfFuzw_T29dm9_yzgYxeJas0fzI7P6TO9hbEDT8t3FwrVQ-PGTddQ",
  "payload": ""
}
2026-03-22 16:53:48,661:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/1496881526/677025339561 HTTP/1.1" 200 823
2026-03-22 16:53:48,662:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:48 GMT
Content-Type: application/json
Content-Length: 823
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: tWo_Kf9REVR4QOSAaVLrM2Vez177z1RbgWNbdJsSo4wuI_D-K4Q
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "somospueblo.com"
  },
  "status": "pending",
  "expires": "2026-03-29T16:53:46Z",
  "challenges": [
    {
      "type": "tls-alpn-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/B3iVGg",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    },
    {
      "type": "dns-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/XaokqA",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    },
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw",
      "status": "pending",
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo"
    }
  ]
}
2026-03-22 16:53:48,662:DEBUG:acme.client:Storing nonce: tWo_Kf9REVR4QOSAaVLrM2Vez177z1RbgWNbdJsSo4wuI_D-K4Q
2026-03-22 16:53:51,666:DEBUG:acme.client:JWS payload:
b''
2026-03-22 16:53:51,671:DEBUG:acme.client:Sending POST request to https://acme-v02.api.letsencrypt.org/acme/authz/1496881526/677025339561:
{
  "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2FjY3QvMTQ5Njg4MTUyNiIsICJub25jZSI6ICJ0V29fS2Y5UkVWUjRRT1NBYVZMck0yVmV6MTc3ejFSYmdXTmJkSnNTbzR3dUlfRC1LNFEiLCAidXJsIjogImh0dHBzOi8vYWNtZS12MDIuYXBpLmxldHNlbmNyeXB0Lm9yZy9hY21lL2F1dGh6LzE0OTY4ODE1MjYvNjc3MDI1MzM5NTYxIn0",
  "signature": "nHlrYQTSCgBPPgvAgDQeGm5-fVE64hqsbUHb74TWiGb8bpCW8ct3OLPEfH4xoMcLGHGobpioZa1Ya5XN2aisflI4YxdaD-KtkMyor_rjKplpP3RwzwmEGOsoLGebU63JxSexDowV8_Ch9AiMEXnLPmNcIPKnTUB-x0-nIHGJdHs05bvHxlaStlEZneBgzs1K9-Ct5kpzIDxOgMJN7yuKEXEuS3NWYNecCki_FQGNA_xYGHPLxcOBxvU26PMKpBuyojlUtXrjSrgeeavmONhdUk0AmnYPUZeNgJEXp8DPBnGjs6UaOHGmmc-BFJSCcJLBVAuZMMMg6JZMJGf3SvmHoQ",
  "payload": ""
}
2026-03-22 16:53:51,706:DEBUG:urllib3.connectionpool:https://acme-v02.api.letsencrypt.org:443 "POST /acme/authz/1496881526/677025339561 HTTP/1.1" 200 1364
2026-03-22 16:53:51,707:DEBUG:acme.client:Received response:
HTTP 200
Server: nginx
Date: Sun, 22 Mar 2026 16:53:51 GMT
Content-Type: application/json
Content-Length: 1364
Connection: keep-alive
Boulder-Requester: 1496881526
Cache-Control: public, max-age=0, no-cache
Link: <https://acme-v02.api.letsencrypt.org/directory>;rel="index"
Replay-Nonce: tWo_Kf9RRU3EQz8LDOXbOzTvqvo9eIgdPCQ6kldfgtjm_jp_24Q
X-Frame-Options: DENY
Strict-Transport-Security: max-age=604800

{
  "identifier": {
    "type": "dns",
    "value": "somospueblo.com"
  },
  "status": "invalid",
  "expires": "2026-03-29T16:53:46Z",
  "challenges": [
    {
      "type": "http-01",
      "url": "https://acme-v02.api.letsencrypt.org/acme/chall/1496881526/677025339561/Ce6kjw",
      "status": "invalid",
      "validated": "2026-03-22T16:53:47Z",
      "error": {
        "type": "urn:ietf:params:acme:error:unauthorized",
        "detail": "146.190.135.150: Invalid response from https://somospueblo.com/.well-known/acme-challenge/k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo: 404",
        "status": 403
      },
      "token": "k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo",
      "validationRecord": [
        {
          "url": "http://somospueblo.com/.well-known/acme-challenge/k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo",
          "hostname": "somospueblo.com",
          "port": "80",
          "addressesResolved": [
            "146.190.135.150"
          ],
          "addressUsed": "146.190.135.150"
        },
        {
          "url": "https://somospueblo.com/.well-known/acme-challenge/k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo",
          "hostname": "somospueblo.com",
          "port": "443",
          "addressesResolved": [
            "146.190.135.150"
          ],
          "addressUsed": "146.190.135.150"
        }
      ]
    }
  ]
}
2026-03-22 16:53:51,708:DEBUG:acme.client:Storing nonce: tWo_Kf9RRU3EQz8LDOXbOzTvqvo9eIgdPCQ6kldfgtjm_jp_24Q
2026-03-22 16:53:51,709:INFO:certbot._internal.auth_handler:Challenge failed for domain somospueblo.com
2026-03-22 16:53:51,709:INFO:certbot._internal.auth_handler:http-01 challenge for somospueblo.com
2026-03-22 16:53:51,709:DEBUG:certbot._internal.display.obj:Notifying user: 
Certbot failed to authenticate some domains (authenticator: nginx). The Certificate Authority reported these problems:
  Domain: somospueblo.com
  Type:   unauthorized
  Detail: 146.190.135.150: Invalid response from https://somospueblo.com/.well-known/acme-challenge/k0WPS1XpNT0pfpMdTupXwCkTxsC-oBVhAStS15EtJMo: 404

Hint: The Certificate Authority failed to verify the temporary nginx configuration changes made by Certbot. Ensure the listed domains point to this nginx server and that it is accessible from the internet.

2026-03-22 16:53:51,710:DEBUG:certbot._internal.error_handler:Encountered exception:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-03-22 16:53:51,710:DEBUG:certbot._internal.error_handler:Calling registered functions
2026-03-22 16:53:51,710:INFO:certbot._internal.auth_handler:Cleaning up challenges
2026-03-22 16:53:53,187:ERROR:certbot._internal.renewal:Failed to renew certificate somospueblo.com with error: Some challenges have failed.
2026-03-22 16:53:53,188:DEBUG:certbot._internal.renewal:Traceback was:
Traceback (most recent call last):
  File "/usr/lib/python3.6/site-packages/certbot/_internal/renewal.py", line 485, in handle_renewal_request
    main.renew_cert(lineage_config, plugins, renewal_candidate)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1441, in renew_cert
    renewed_lineage = _get_and_save_cert(le_client, config, lineage=lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 127, in _get_and_save_cert
    renewal.renew_cert(config, domains, le_client, lineage)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/renewal.py", line 345, in renew_cert
    new_cert, new_chain, new_key, _ = le_client.obtain_certificate(domains, new_key)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 424, in obtain_certificate
    orderr = self._get_order_and_authorizations(csr.data, self.config.allow_subset_of_names)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/client.py", line 476, in _get_order_and_authorizations
    authzr = self.auth_handler.handle_authorizations(orderr, self.config, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 105, in handle_authorizations
    self._poll_authorizations(authzrs, max_retries, best_effort)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/auth_handler.py", line 205, in _poll_authorizations
    raise errors.AuthorizationError('Some challenges have failed.')
certbot.errors.AuthorizationError: Some challenges have failed.

2026-03-22 16:53:53,189:DEBUG:certbot._internal.display.obj:Notifying user: 
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
2026-03-22 16:53:53,189:DEBUG:certbot._internal.display.obj:Notifying user: The following certificates are not due for renewal yet:
2026-03-22 16:53:53,189:DEBUG:certbot._internal.display.obj:Notifying user:   /etc/letsencrypt/live/aranoinvestmentsgroup.com/fullchain.pem expires on 2026-05-06 (skipped)
  /etc/letsencrypt/live/aranotinsurance.com/fullchain.pem expires on 2026-04-28 (skipped)
2026-03-22 16:53:53,189:ERROR:certbot._internal.renewal:All renewals failed. The following certificates could not be renewed:
2026-03-22 16:53:53,190:ERROR:certbot._internal.renewal:  /etc/letsencrypt/live/frontlineconstructionga.com/fullchain.pem (failure)
  /etc/letsencrypt/live/somospueblo.com/fullchain.pem (failure)
2026-03-22 16:53:53,190:DEBUG:certbot._internal.display.obj:Notifying user: - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
2026-03-22 16:53:53,190:DEBUG:certbot._internal.log:Exiting abnormally:
Traceback (most recent call last):
  File "/usr/bin/certbot", line 11, in <module>
    load_entry_point('certbot==1.22.0', 'console_scripts', 'certbot')()
  File "/usr/lib/python3.6/site-packages/certbot/main.py", line 19, in main
    return internal_main.main(cli_args)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1632, in main
    return config.func(config, plugins)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/main.py", line 1518, in renew
    renewal.handle_renewal_request(config)
  File "/usr/lib/python3.6/site-packages/certbot/_internal/renewal.py", line 512, in handle_renewal_request
    len(renew_failures), len(parse_failures)))
certbot.errors.Error: 2 renew failure(s), 0 parse failure(s)
2026-03-22 16:53:53,192:ERROR:certbot._internal.log:2 renew failure(s), 0 parse failure(s)

Hry