1 (edytowany przez WoT 2019-01-09 12:55:33)

Temat: Openwrt, Let's Encrypt i https

Witajcie

Postanowiłem u-bezpieczyć stronę korzystając z poradnika: https://eko.one.pl/?p=openwrt-letsencrypt

Strona na moim routerze z LEDE 18.06 z dostępem do  sh
Zainstalowałem acme, skonfigurowałem, uruchomiłem.

Niestety po bardzo długim logu, zawierającym m.in. helpa komendy socat, wyrzuca błąd:
daemon.err acme: Issuing cert for stronatest.pl failed i przerzuca co zrobił do katalogu failed.

Co poradzicie?

Poniżej podaję całego loga.
W nim nie znalazłem nic istotnego poza: "Verify error:Invalid response from (link strony)" co nie wydaje się istotne bo skrypt pracuje dalej po tym błędzie.

Sprawdzałem dla dwóch swoich przekierowanych domen i jednej obcej. Zawsze kończy się tak samo.

Wed Jan  9 12:19:55 2019 daemon.info acme: Running pre checks for stronatest.pl.
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: Running pre checks for stronatest.pl.
Wed Jan  9 12:19:55 2019 daemon.debug acme: port80 listens:
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: port80 listens:
Wed Jan  9 12:19:55 2019 daemon.debug acme: Nothing listening on port 80.
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: Nothing listening on port 80.
Wed Jan  9 12:19:55 2019 daemon.debug acme: v4 input_rule: Chain input_rule (1 references)  pkts bytes target     prot opt in     out     source               destination              0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: v4 input_rule: Chain input_rule (1 references)
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:  pkts bytes target     prot opt in     out     source               destination
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.debug acme: v6 input_rule: Chain input_rule (1 references)  pkts bytes target     prot opt in     out     source               destination              0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: v6 input_rule: Chain input_rule (1 references)
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:  pkts bytes target     prot opt in     out     source               destination
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.info acme: Running ACME for stronatest.pl
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: Running ACME for stronatest.pl
Wed Jan  9 12:19:56 2019 daemon.info acme: Using standalone mode
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: Using standalone mode
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Lets find script dir.
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _SCRIPT_='/usr/lib/acme/acme.sh'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _script='/usr/lib/acme/acme.sh'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _script_home='/usr/lib/acme'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: https://github.com/Neilpang/acme.sh
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: v2.7.8
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _main_domain='stronatest.pl'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _alt_domains='no'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: Using stage ACME_DIRECTORY: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: ACME_DIRECTORY='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: DOMAIN_PATH='/etc/acme/stronatest.pl'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using ACME_DIRECTORY: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _init api for server: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_KEY_CHANGE='https://acme-staging.api.letsencrypt.org/acme/key-change'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_AUTHZ='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_ORDER='https://acme-staging.api.letsencrypt.org/acme/new-cert'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_ACCOUNT='https://acme-staging.api.letsencrypt.org/acme/new-reg'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_REVOKE_CERT='https://acme-staging.api.letsencrypt.org/acme/revoke-cert'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_NONCE
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_VERSION
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _on_before_issue
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _chk_main_domain='stronatest.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _chk_alt_domains
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Le_LocalAddress
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: d='stronatest.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Check for domain='stronatest.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:19:57 2019 daemon.info run-acme[7842]: Standalone mode.
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _checkport='80'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _checkaddr
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using: netstat
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: d
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _saved_account_key_hash is not changed, skip register account.
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Read key length:
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_DIRECTORY='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:57 2019 daemon.info run-acme[7842]: Creating domain key
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Use length 2048
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using RSA: 2048
Wed Jan  9 12:19:59 2019 daemon.info run-acme[7842]: The domain key is here: /etc/acme/stronatest.pl/stronatest.pl.key
Wed Jan  9 12:19:59 2019 daemon.info run-acme[7842]: Single domain='stronatest.pl'
Wed Jan  9 12:19:59 2019 daemon.err run-acme[7842]: _createcsr
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting domain auth token for each domain
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: d='stronatest.pl'
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting webroot for domain='stronatest.pl'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _w='no'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting new-authz for domain='stronatest.pl'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _init api for server: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: Try new-authz for the 0 time.
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: payload='{"resource": "new-authz", "identifier": {"type": "dns", "value": "stronatest.pl"}}'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: RSA key
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:01 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:03 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: code='201'
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: The new-authz request is ok.
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: entry='"type":"http-01","status":"pending","uri":"https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017","token":"b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0"'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: token='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: uri='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: keyauthorization='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: dvlist='stronatest.pl#b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw#https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017#http-01#no'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: vlist='stronatest.pl#b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw#https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017#http-01#no,'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d='stronatest.pl'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: ok, let's start to verify
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: Verifying:stronatest.pl
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d='stronatest.pl'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: keyauthorization='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: uri='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: Standalone mode server
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: ncaddr
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: startserver: 7895
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_HTTPPort='80'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_Listen_V4
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_Listen_V6
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: _NC='socat TCP-LISTEN:80,crlf,reuseaddr,fork'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: serverproc='8402'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: payload='{"resource": "challenge", "keyAuthorization": "b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw"}'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: code='202'
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: sleep 2 secs to verify
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: checking
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: stronatest.pl:Verify error:Invalid response from http://stronatest.pl/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0:
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: Debug: get token url.
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: url='http://stronatest.pl/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: timeout=1
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g  --connect-timeout 1'
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <html>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <head>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <title></title>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <meta name="viewport" content="width=device-width,initial-scale=1">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: </head>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- This site "stronatest.pl" is using the free URL redirection service at http://freedns.afraid.org/ -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- The real (cloaked URL) site can be found directly at http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0 -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- Please report any abuse of this free service -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <frameset frameborder="0" border="0" rows="*,100%" cols="100%" marginwidth="0" marginheight="0">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <frame target="random_name_not_taken1" name="random_name_not_taken1" marginwidth="0" marginheight="0" border="0" noresize scrolling="no">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <frame target="random_name_not_taken2" name="random_name_not_taken2" src="http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0" border="0" noresize>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <noframes>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:         <a href="http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0">NOFRAMES: Click here to visit the actual site</a>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     </noframes>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: </frameset>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: Skip for removelevel:
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: pid='8402'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: No need to restore nginx, skip.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: _clearupdns
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: skip dns.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: _on_issue_err
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: Please add '--debug' or '--log' to check more details.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: See: https://github.com/Neilpang/acme.sh/wiki/How-to-debug-acme.sh
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: payload='{"resource": "challenge", "keyAuthorization": "b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw"}'
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: code='400'
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: Diagnosis versions:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: openssl:openssl
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: OpenSSL 1.0.2p  14 Aug 2018
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: apache:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: apache doesn't exists.
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: nginx:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: nginx doesn't exists.
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat by Gerhard Rieger and contributors - see www.dest-unreach.org
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: Usage:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat [options] <bi-address> <bi-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    options:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -V     print version and feature information to stdout, and exit
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -h|-?  print a help text describing command line options and addresses
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -hh    like -h, plus a list of all common address option names
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -hhh   like -hh, plus a list of all available address option names
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -d     increase verbosity (use up to 4 times; 2 are recommended)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -D     analyze file descriptors before loop
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -ly[facility]  log to syslog, using facility (default is daemon)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lf<logfile>   log to file
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -ls            log to stderr (default if no other log)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lm[facility]  mixed log mode (stderr during initialization, then syslog)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lp<progname>  set the program name used for logging
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lu            use microseconds for logging timestamps
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lh            add hostname to log messages
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -v     verbose data traffic, text
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -x     verbose data traffic, hexadecimal
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -b<size_t>     set data buffer size (8192)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -s     sloppy (continue on error)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -t<timeout>    wait seconds before closing second channel
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -T<timeout>    total inactivity timeout in seconds
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -u     unidirectional mode (left to right)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -U     unidirectional mode (right to left)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -g     do not check option groups
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -L <lockfile>  try to obtain lock, or fail
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -W <lockfile>  try to obtain lock, or wait
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -4     prefer IPv4 if version is not explicitly specified
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -6     prefer IPv6 if version is not explicitly specified
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    bi-address:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pipe[,<opts>]    groups=FD,FIFO
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <single-address>!!<single-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <single-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    single-address:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <address-head>[,<opts>]
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    address-head:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-client:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-connect:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-listen:<filename>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-recv:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-recvfrom:<filename>    groups=FD,SOCKET,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-sendto:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       create:<filename>    groups=FD,REG,NAMED
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       exec:<command-line>    groups=FD,FIFO,SOCKET,EXEC,FORK,TERMIOS,PTY,PARENT,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       fd:<num>    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       gopen:<filename>    groups=FD,FIFO,CHR,BLK,REG,SOCKET,NAMED,OPEN,TERMIOS,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       interface:<interface>    groups=FD,SOCKET
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-recv:<protocol>    groups=FD,SOCKET,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-sendto:<host>:<protocol>    groups=FD,SOCKET,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-recv:<protocol>    groups=FD,SOCKET,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-sendto:<host>:<protocol>    groups=FD,SOCKET,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-recv:<protocol>    groups=FD,SOCKET,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-sendto:<host>:<protocol>    groups=FD,SOCKET,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       open:<filename>    groups=FD,FIFO,CHR,BLK,REG,NAMED,OPEN,TERMIOS
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pipe:<filename>    groups=FD,FIFO,NAMED,OPEN
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       proxy:<proxy-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,HTTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pty    groups=FD,NAMED,TERMIOS,PTY
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp4-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp6-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-connect:<domain>:<protocol>:<remote-address>    groups=FD,SOCKET,CHILD,RETRY
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-datagram:<domain>:<type>:<protocol>:<remote-address>    groups=FD,SOCKET,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-listen:<domain>:<protocol>:<local-address>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-recv:<domain>:<type>:<protocol>:<local-address>    groups=FD,SOCKET,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-recvfrom:<domain>:<type>:<protocol>:<local-address>    groups=FD,SOCKET,CHILD,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-sendto:<domain>:<type>:<protocol>:<remote-address>    groups=FD,SOCKET
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socks4:<socks-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,SOCKS4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socks4a:<socks-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,SOCKS4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stderr    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdin    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdio    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdout    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       system:<shell-command>    groups=FD,FIFO,SOCKET,EXEC,FORK,TERMIOS,PTY,PARENT,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp4-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp6-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tun[:<ip-addr>/<bits>]    groups=FD,CHR,NAMED,OPEN,INTERFACE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-connect:<host>:<port>    groups=FD,SOCKET,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-datagram:<host>:<port>    groups=FD,SOCKET,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-recv:<port>    groups=FD,SOCKET,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-recvfrom:<port>    groups=FD,SOCKET,CHILD,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-sendto:<host>:<port>    groups=FD,SOCKET,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-connect:<host>:<port>    groups=FD,SOCKET,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-datagram:<remote-address>:<port>    groups=FD,SOCKET,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-recv:<port>    groups=FD,SOCKET,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-recvfrom:<host>:<port>    groups=FD,SOCKET,CHILD,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-sendto:<host>:<port>    groups=FD,SOCKET,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-connect:<host>:<port>    groups=FD,SOCKET,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-datagram:<host>:<port>    groups=FD,SOCKET,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-recv:<port>    groups=FD,SOCKET,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-recvfrom:<port>    groups=FD,SOCKET,CHILD,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-sendto:<host>:<port>    groups=FD,SOCKET,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-client:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-connect:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-listen:<filename>    groups=FD,SOCKET,NAMED,LISTEN,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-recv:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-recvfrom:<filename>    groups=FD,SOCKET,NAMED,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-sendto:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err acme: Issuing cert for stronatest.pl failed. Moving state to /etc/acme/stronatest.pl.failed-1547032812
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: acme: Issuing cert for stronatest.pl failed. Moving state to /etc/acme/stronatest.pl.failed-1547032812

2 (edytowany przez Cezary 2019-01-09 13:26:56)

Odp: Openwrt, Let's Encrypt i https

A stronatest.pl to twoja? Ta ze sklepem ? Hostowana jest na routerze?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

3

Odp: Openwrt, Let's Encrypt i https

Nie, podmieniłem własną domenę na stronatest.pl na cele tego posta. nawet nie wiedziałem ze taka strona istnieje smile

4

Odp: Openwrt, Let's Encrypt i https

1. I co to miało na celu? Wstydzisz się własnej domeny? Zaciemniasz w ten sposób logi i wcale to nie pomaga w rozwiązaniu problemu.
2. Domena musi być hostowana na routerze i dostępna z internetu. Jest?
3. pokaż

opkg list-installed
uci show acme
uci show network

i tym razem już nie zamieniaj swoich domen na inne.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

5 (edytowany przez WoT 2019-01-09 14:12:50)

Odp: Openwrt, Let's Encrypt i https

Powyrzucałem też parę innych rzeczy z logu które się uruchomiły w trakcie przetwarzania acme i zaciemiały log, no ale skoro potrzeba to:

Wed Jan  9 12:19:55 2019 daemon.info acme: Running pre checks for stronatest.ivi.pl.
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: Running pre checks for stronatest.ivi.pl.
Wed Jan  9 12:19:55 2019 daemon.debug acme: port80 listens:
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: port80 listens:
Wed Jan  9 12:19:55 2019 daemon.debug acme: Nothing listening on port 80.
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: Nothing listening on port 80.
Wed Jan  9 12:19:55 2019 daemon.debug acme: v4 input_rule: Chain input_rule (1 references)  pkts bytes target     prot opt in     out     source               destination              0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]: acme: v4 input_rule: Chain input_rule (1 references)
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:  pkts bytes target     prot opt in     out     source               destination
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:55 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.debug acme: v6 input_rule: Chain input_rule (1 references)  pkts bytes target     prot opt in     out     source               destination              0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: v6 input_rule: Chain input_rule (1 references)
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:  pkts bytes target     prot opt in     out     source               destination
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]:     0     0 ACCEPT     tcp      *      *       ::/0                 ::/0                 tcp dpt:80 /* ACME */
Wed Jan  9 12:19:56 2019 daemon.info acme: Running ACME for stronatest.ivi.pl
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: Running ACME for stronatest.ivi.pl
Wed Jan  9 12:19:56 2019 daemon.info acme: Using standalone mode
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: acme: Using standalone mode
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Lets find script dir.
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _SCRIPT_='/usr/lib/acme/acme.sh'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _script='/usr/lib/acme/acme.sh'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _script_home='/usr/lib/acme'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: https://github.com/Neilpang/acme.sh
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: v2.7.8
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _main_domain='stronatest.ivi.pl'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _alt_domains='no'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:56 2019 daemon.info run-acme[7842]: Using stage ACME_DIRECTORY: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: ACME_DIRECTORY='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: DOMAIN_PATH='/etc/acme/stronatest.ivi.pl'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: Using ACME_DIRECTORY: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _init api for server: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:19:56 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_KEY_CHANGE='https://acme-staging.api.letsencrypt.org/acme/key-change'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_AUTHZ='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_ORDER='https://acme-staging.api.letsencrypt.org/acme/new-cert'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_ACCOUNT='https://acme-staging.api.letsencrypt.org/acme/new-reg'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_REVOKE_CERT='https://acme-staging.api.letsencrypt.org/acme/revoke-cert'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_AGREEMENT='https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_NEW_NONCE
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_VERSION
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _on_before_issue
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _chk_main_domain='stronatest.ivi.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _chk_alt_domains
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Le_LocalAddress
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: d='stronatest.ivi.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Check for domain='stronatest.ivi.pl'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:19:57 2019 daemon.info run-acme[7842]: Standalone mode.
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _checkport='80'
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _checkaddr
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using: netstat
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: d
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: _saved_account_key_hash is not changed, skip register account.
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Read key length:
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using config home:/etc/acme
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: ACME_DIRECTORY='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:19:57 2019 daemon.info run-acme[7842]: Creating domain key
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Use length 2048
Wed Jan  9 12:19:57 2019 daemon.err run-acme[7842]: Using RSA: 2048
Wed Jan  9 12:19:59 2019 daemon.info run-acme[7842]: The domain key is here: /etc/acme/stronatest.ivi.pl/stronatest.ivi.pl.key
Wed Jan  9 12:19:59 2019 daemon.info run-acme[7842]: Single domain='stronatest.ivi.pl'
Wed Jan  9 12:19:59 2019 daemon.err run-acme[7842]: _createcsr
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting domain auth token for each domain
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: d='stronatest.ivi.pl'
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting webroot for domain='stronatest.ivi.pl'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _w='no'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:20:00 2019 daemon.info run-acme[7842]: Getting new-authz for domain='stronatest.ivi.pl'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _init api for server: https://acme-staging.api.letsencrypt.org/directory
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: Try new-authz for the 0 time.
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: payload='{"resource": "new-authz", "identifier": {"type": "dns", "value": "stronatest.ivi.pl"}}'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: RSA key
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/directory'
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:20:00 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:01 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/new-authz'
Wed Jan  9 12:20:02 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:03 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: code='201'
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: The new-authz request is ok.
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: entry='"type":"http-01","status":"pending","uri":"https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017","token":"b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0"'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: token='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: uri='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: keyauthorization='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: dvlist='stronatest.ivi.pl#b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw#https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017#http-01#no'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: vlist='stronatest.ivi.pl#b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw#https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017#http-01#no,'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d='stronatest.ivi.pl'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: ok, let's start to verify
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: Verifying:stronatest.ivi.pl
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: d='stronatest.ivi.pl'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: keyauthorization='b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: uri='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: _currentRoot='no'
Wed Jan  9 12:20:04 2019 daemon.info run-acme[7842]: Standalone mode server
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: ncaddr
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: startserver: 7895
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_HTTPPort='80'
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_Listen_V4
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: Le_Listen_V6
Wed Jan  9 12:20:04 2019 daemon.err run-acme[7842]: _NC='socat TCP-LISTEN:80,crlf,reuseaddr,fork'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: serverproc='8402'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: payload='{"resource": "challenge", "keyAuthorization": "b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw"}'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:05 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: code='202'
Wed Jan  9 12:20:06 2019 daemon.err run-acme[7842]: sleep 2 secs to verify
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: checking
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: timeout=
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: stronatest.ivi.pl:Verify error:Invalid response from http://stronatest.ivi.pl/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0:
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: Debug: get token url.
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: GET
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: url='http://stronatest.ivi.pl/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0'
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: timeout=1
Wed Jan  9 12:20:09 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g  --connect-timeout 1'
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <html>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <head>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <title></title>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <meta name="viewport" content="width=device-width,initial-scale=1">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: </head>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- This site "stronatest.ivi.pl" is using the free URL redirection service at http://freedns.afraid.org/ -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- The real (cloaked URL) site can be found directly at http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0 -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <!-- Please report any abuse of this free service -->
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: <frameset frameborder="0" border="0" rows="*,100%" cols="100%" marginwidth="0" marginheight="0">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <frame target="random_name_not_taken1" name="random_name_not_taken1" marginwidth="0" marginheight="0" border="0" noresize scrolling="no">
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <frame target="random_name_not_taken2" name="random_name_not_taken2" src="http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0" border="0" noresize>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     <noframes>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:         <a href="http://(tu ip:port)/.well-known/acme-challenge/b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0">NOFRAMES: Click here to visit the actual site</a>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:     </noframes>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]: </frameset>
Wed Jan  9 12:20:10 2019 daemon.info run-acme[7842]:
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: ret='0'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: Skip for removelevel:
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: pid='8402'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: No need to restore nginx, skip.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: _clearupdns
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: skip dns.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: _on_issue_err
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: Please add '--debug' or '--log' to check more details.
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: See: https://github.com/Neilpang/acme.sh/wiki/How-to-debug-acme.sh
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:10 2019 daemon.err run-acme[7842]: payload='{"resource": "challenge", "keyAuthorization": "b_-iDjQ03tmGscj-_3tqZ3oXyBOv91EA-2gfMR5pwD0.o-hE1vKc4QJJ4hIo9P4Vt7LnBzReWDGhC0FNbHB8snw"}'
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: POST
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: _post_url='https://acme-staging.api.letsencrypt.org/acme/challenge/tP0tCaGUoKXxpplZfdDBCWRQU1HCFtHuoVW04iyPxcc/220069017'
Wed Jan  9 12:20:11 2019 daemon.err run-acme[7842]: _CURL='curl -L --silent --dump-header /etc/acme/http.header  -g '
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: _ret='0'
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: code='400'
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: Diagnosis versions:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: openssl:openssl
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: OpenSSL 1.0.2p  14 Aug 2018
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: apache:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: apache doesn't exists.
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: nginx:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: nginx doesn't exists.
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat by Gerhard Rieger and contributors - see www.dest-unreach.org
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: Usage:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: socat [options] <bi-address> <bi-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    options:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -V     print version and feature information to stdout, and exit
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -h|-?  print a help text describing command line options and addresses
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -hh    like -h, plus a list of all common address option names
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -hhh   like -hh, plus a list of all available address option names
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -d     increase verbosity (use up to 4 times; 2 are recommended)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -D     analyze file descriptors before loop
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -ly[facility]  log to syslog, using facility (default is daemon)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lf<logfile>   log to file
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -ls            log to stderr (default if no other log)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lm[facility]  mixed log mode (stderr during initialization, then syslog)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lp<progname>  set the program name used for logging
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lu            use microseconds for logging timestamps
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -lh            add hostname to log messages
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -v     verbose data traffic, text
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -x     verbose data traffic, hexadecimal
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -b<size_t>     set data buffer size (8192)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -s     sloppy (continue on error)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -t<timeout>    wait seconds before closing second channel
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -T<timeout>    total inactivity timeout in seconds
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -u     unidirectional mode (left to right)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -U     unidirectional mode (right to left)
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -g     do not check option groups
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -L <lockfile>  try to obtain lock, or fail
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -W <lockfile>  try to obtain lock, or wait
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -4     prefer IPv4 if version is not explicitly specified
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       -6     prefer IPv6 if version is not explicitly specified
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    bi-address:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pipe[,<opts>]    groups=FD,FIFO
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <single-address>!!<single-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <single-address>
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    single-address:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       <address-head>[,<opts>]
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:    address-head:
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-client:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-connect:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-listen:<filename>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-recv:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-recvfrom:<filename>    groups=FD,SOCKET,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       abstract-sendto:<filename>    groups=FD,SOCKET,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       create:<filename>    groups=FD,REG,NAMED
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       exec:<command-line>    groups=FD,FIFO,SOCKET,EXEC,FORK,TERMIOS,PTY,PARENT,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       fd:<num>    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       gopen:<filename>    groups=FD,FIFO,CHR,BLK,REG,SOCKET,NAMED,OPEN,TERMIOS,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       interface:<interface>    groups=FD,SOCKET
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-recv:<protocol>    groups=FD,SOCKET,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip-sendto:<host>:<protocol>    groups=FD,SOCKET,IP4,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-recv:<protocol>    groups=FD,SOCKET,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip4-sendto:<host>:<protocol>    groups=FD,SOCKET,IP4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-datagram:<host>:<protocol>    groups=FD,SOCKET,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-recv:<protocol>    groups=FD,SOCKET,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-recvfrom:<protocol>    groups=FD,SOCKET,CHILD,RANGE,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       ip6-sendto:<host>:<protocol>    groups=FD,SOCKET,IP6
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       open:<filename>    groups=FD,FIFO,CHR,BLK,REG,NAMED,OPEN,TERMIOS
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pipe:<filename>    groups=FD,FIFO,NAMED,OPEN
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       proxy:<proxy-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,HTTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       pty    groups=FD,NAMED,TERMIOS,PTY
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp4-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp6-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       sctp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP6,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-connect:<domain>:<protocol>:<remote-address>    groups=FD,SOCKET,CHILD,RETRY
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-datagram:<domain>:<type>:<protocol>:<remote-address>    groups=FD,SOCKET,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-listen:<domain>:<protocol>:<local-address>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-recv:<domain>:<type>:<protocol>:<local-address>    groups=FD,SOCKET,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-recvfrom:<domain>:<type>:<protocol>:<local-address>    groups=FD,SOCKET,CHILD,RANGE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socket-sendto:<domain>:<type>:<protocol>:<remote-address>    groups=FD,SOCKET
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socks4:<socks-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,SOCKS4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       socks4a:<socks-server>:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP,SOCKS4
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stderr    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdin    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdio    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       stdout    groups=FD,FIFO,CHR,BLK,REG,SOCKET,TERMIOS,UNIX,IP4,IP6,UDP,TCP,SCTP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       system:<shell-command>    groups=FD,FIFO,SOCKET,EXEC,FORK,TERMIOS,PTY,PARENT,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp4-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP4,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP4,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp6-connect:<host>:<port>    groups=FD,SOCKET,CHILD,RETRY,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tcp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RETRY,RANGE,IP6,TCP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       tun[:<ip-addr>/<bits>]    groups=FD,CHR,NAMED,OPEN,INTERFACE
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-connect:<host>:<port>    groups=FD,SOCKET,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-datagram:<host>:<port>    groups=FD,SOCKET,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-recv:<port>    groups=FD,SOCKET,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-recvfrom:<port>    groups=FD,SOCKET,CHILD,RANGE,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp-sendto:<host>:<port>    groups=FD,SOCKET,IP4,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-connect:<host>:<port>    groups=FD,SOCKET,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-datagram:<remote-address>:<port>    groups=FD,SOCKET,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-recv:<port>    groups=FD,SOCKET,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-recvfrom:<host>:<port>    groups=FD,SOCKET,CHILD,RANGE,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp4-sendto:<host>:<port>    groups=FD,SOCKET,IP4,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-connect:<host>:<port>    groups=FD,SOCKET,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-datagram:<host>:<port>    groups=FD,SOCKET,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-listen:<port>    groups=FD,SOCKET,LISTEN,CHILD,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-recv:<port>    groups=FD,SOCKET,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-recvfrom:<port>    groups=FD,SOCKET,CHILD,RANGE,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       udp6-sendto:<host>:<port>    groups=FD,SOCKET,IP6,UDP
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-client:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-connect:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-listen:<filename>    groups=FD,SOCKET,NAMED,LISTEN,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-recv:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-recvfrom:<filename>    groups=FD,SOCKET,NAMED,CHILD,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]:       unix-sendto:<filename>    groups=FD,SOCKET,NAMED,RETRY,UNIX
Wed Jan  9 12:20:12 2019 daemon.err acme: Issuing cert for stronatest.ivi.pl failed. Moving state to /etc/acme/stronatest.ivi.pl.failed-1547032812
Wed Jan  9 12:20:12 2019 daemon.err run-acme[7842]: acme: Issuing cert for stronatest.ivi.pl failed. Moving state to /etc/acme/stronatest.ivi.pl.failed-1547032812

opkg list-installed

acme - 2.7.8-3
aria2 - 1.33.0-1
base-files - 192-r7258-5eb055306f
block-mount - 2018-04-16-e2436836-1
busybox - 1.28.3-4
ca-bundle - 20180409
ca-certificates - 20180409-2
curl - 7.60.0-3
dnsmasq - 2.80test3-1
dropbear - 2017.75-5
e2fsprogs - 1.44.1-1
f2fsck - 1.10.0-1
fdisk - 2.32-2
firewall - 2018-07-26-aa8846bb-1
fstools - 2018-04-16-e2436836-1
fwtool - 1
glib2 - 2.58.1-2
hdparm - 9.52-1
hostapd-common - 2018-04-09-fa617ee6-5
htop - 2.2.0-1
ip6tables - 1.6.2-1
ipip - 1-2
iptables - 1.6.2-1
iw - 4.14-1
iwinfo - 2018-07-24-94b1366d-1
jshn - 2018-07-25-c83a84af-1
jsonfilter - 2018-02-04-c7e938d6-1
kernel - 4.9.120-1-adfb989aae12e239d65a2c73ca35b8a3
kmod-ath - 4.9.120+2017-11-01-9
kmod-ath9k - 4.9.120+2017-11-01-9
kmod-ath9k-common - 4.9.120+2017-11-01-9
kmod-cfg80211 - 4.9.120+2017-11-01-9
kmod-crypto-aead - 4.9.120-1
kmod-crypto-crc32 - 4.9.120-1
kmod-crypto-crc32c - 4.9.120-1
kmod-crypto-ecb - 4.9.120-1
kmod-crypto-hash - 4.9.120-1
kmod-crypto-manager - 4.9.120-1
kmod-crypto-null - 4.9.120-1
kmod-crypto-pcompress - 4.9.120-1
kmod-crypto-sha1 - 4.9.120-1
kmod-dnsresolver - 4.9.120-1
kmod-fs-exportfs - 4.9.120-1
kmod-fs-ext4 - 4.9.120-1
kmod-fs-f2fs - 4.9.120-1
kmod-fs-nfs - 4.9.120-1
kmod-fs-nfs-common - 4.9.120-1
kmod-fs-nfsd - 4.9.120-1
kmod-fs-vfat - 4.9.120-1
kmod-gpio-button-hotplug - 4.9.120-2
kmod-gre - 4.9.120-1
kmod-ip6tables - 4.9.120-1
kmod-ipip - 4.9.120-1
kmod-ipt-conntrack - 4.9.120-1
kmod-ipt-core - 4.9.120-1
kmod-ipt-ipset - 4.9.120-1
kmod-ipt-nat - 4.9.120-1
kmod-iptunnel - 4.9.120-1
kmod-iptunnel4 - 4.9.120-1
kmod-lib-crc-ccitt - 4.9.120-1
kmod-lib-crc16 - 4.9.120-1
kmod-lib-textsearch - 4.9.120-1
kmod-mac80211 - 4.9.120+2017-11-01-9
kmod-mppe - 4.9.120-1
kmod-nf-conntrack - 4.9.120-1
kmod-nf-conntrack6 - 4.9.120-1
kmod-nf-ipt - 4.9.120-1
kmod-nf-ipt6 - 4.9.120-1
kmod-nf-nat - 4.9.120-1
kmod-nf-reject - 4.9.120-1
kmod-nf-reject6 - 4.9.120-1
kmod-nfnetlink - 4.9.120-1
kmod-nls-base - 4.9.120-1
kmod-nls-cp437 - 4.9.120-1
kmod-nls-iso8859-1 - 4.9.120-1
kmod-nls-utf8 - 4.9.120-1
kmod-ppp - 4.9.120-1
kmod-pppoe - 4.9.120-1
kmod-pppox - 4.9.120-1
kmod-scsi-core - 4.9.120-1
kmod-slhc - 4.9.120-1
kmod-tun - 4.9.120-1
kmod-usb-core - 4.9.120-1
kmod-usb-ehci - 4.9.120-1
kmod-usb-ledtrig-usbport - 4.9.120-1
kmod-usb-printer - 4.9.120-1
kmod-usb-storage - 4.9.120-1
kmod-usb-storage-extras - 4.9.120-1
kmod-usb-storage-uas - 4.9.120-1
kmod-usb2 - 4.9.120-1
libaio - 0.3.110-1
libatomic - 7.3.0-1
libattr - 20170915-1
libblkid - 2.32-2
libblobmsg-json - 2018-07-25-c83a84af-1
libbz2 - 1.0.6-4
libc - 1.1.19-1
libcomerr - 1.44.1-1
libcurl - 7.60.0-3
libevent2 - 2.0.22-1
libexif - 0.6.21-1
libext2fs - 1.44.1-1
libf2fs - 1.10.0-1
libfdisk - 2.32-2
libffi - 3.2.1-3
libffmpeg-mini - 3.2.12-3
libflac - 1.3.2-1
libgcc - 7.3.0-1
libid3tag - 0.15.1b-4
libip4tc - 1.6.2-1
libip6tc - 1.6.2-1
libipset - 6.38-1
libiwinfo - 2018-07-24-94b1366d-1
libiwinfo-lua - 2018-07-24-94b1366d-1
libjpeg - 9a-1
libjson-c - 0.12.1-1
libjson-script - 2018-07-25-c83a84af-1
liblua - 5.1.5-1
liblucihttp - 2018-05-18-cb119ded-1
liblucihttp-lua - 2018-05-18-cb119ded-1
liblzma - 5.2.4-1
liblzo - 2.10-1
libmbedtls - 2.12.0-1
libminiupnpc - 2.0.20170509-1
libmnl - 1.0.4-1
libmount - 2.32-2
libnatpmp - 20150609-1
libncurses - 6.1-1
libnl-tiny - 0.1-5
libogg - 1.3.2-2
libopenssl - 1.0.2p-1
libpcap - 1.8.1-1
libpcre - 8.41-2
libpthread - 1.1.19-1
librpc - 2015-11-04-a921e3de-1
librt - 1.1.19-1
libsmartcols - 2.32-2
libsqlite3 - 3230100-1
libss - 1.44.1-1
libstdcpp - 7.3.0-1
libubox - 2018-07-25-c83a84af-1
libubus - 2018-07-26-40e0931e-1
libubus-lua - 2018-07-26-40e0931e-1
libuci - 2018-08-11-4c8b4d6e-1
libuclient - 2018-08-03-ae1c656f-1
libusb-1.0 - 1.0.22-1
libustream-openssl - 2018-07-30-23a3f283-1
libuuid - 2.32-2
libvorbis - 1.3.6-1
libwrap - 7.6-1
libxml2 - 2.9.8-4
libxtables - 1.6.2-1
logd - 2018-02-14-128bc35f-2
lua - 5.1.5-1
luci - git-18.228.31946-f64b152-1
luci-app-aria2 - 1.0.1-2
luci-app-firewall - git-18.228.31946-f64b152-1
luci-app-openvpn - git-18.340.83383-3dea6b5-1
luci-app-samba - git-18.340.83383-3dea6b5-1
luci-base - git-18.228.31946-f64b152-1
luci-lib-ip - git-18.228.31946-f64b152-1
luci-lib-jsonc - git-18.228.31946-f64b152-1
luci-lib-nixio - git-18.228.31946-f64b152-1
luci-mod-admin-full - git-18.228.31946-f64b152-1
luci-proto-ipv6 - git-18.228.31946-f64b152-1
luci-proto-ppp - git-18.228.31946-f64b152-1
luci-proto-relay - git-18.340.83383-3dea6b5-1
luci-theme-bootstrap - git-18.228.31946-f64b152-1
mc - 4.8.20-2
minidlna - 1.2.1-3
mkf2fs - 1.10.0-1
mtd - 23
netcat - 0.7.1-1
netifd - 2018-07-30-a0a1e52e-1
nfs-kernel-server - 2.3.1-1
nmap - 7.70-1
odhcp6c - 2018-07-14-67ae6a71-14
odhcpd-ipv6only - 1.10-1
openssh-sftp-server - 7.7p1-1
openssl-util - 1.0.2p-1
openvpn-openssl - 2.4.5-4.1
openwrt-keyring - 2018-05-18-103a32e9-1
opkg - 2017-12-07-3b417b9f-2
p910nd - 0.97-5
php7 - 7.2.9-1
php7-cgi - 7.2.9-1
php7-mod-hash - 7.2.9-1
php7-mod-sqlite3 - 7.2.9-1
portmap - 6.0-4
ppp - 2.4.7-12
ppp-mod-pppoe - 2.4.7-12
pptpd - 1.4.0-3
procd - 2018-03-28-dfb68f85-1
relayd - 2016-02-07-ad0b25ad-2
resolveip - 2
rpcd - 2018-08-16-41333abe-1
rpcd-mod-rrdns - 20170710
samba36-server - 3.6.25-10
socat - 1.7.3.2-3
swconfig - 11
sysstat - 11.6.0-2
terminfo - 6.1-1
transmission-daemon-openssl - 2.93-7
transmission-remote-openssl - 2.93-7
transmission-web - 2.93-7
uboot-envtools - 2018.03-1
ubox - 2018-02-14-128bc35f-2
ubus - 2018-07-26-40e0931e-1
ubusd - 2018-07-26-40e0931e-1
uci - 2018-08-11-4c8b4d6e-1
uclibcxx - 0.2.4-3
uclient-fetch - 2018-08-03-ae1c656f-1
uhttpd - 2018-11-28-cdfc902a-1
unzip - 6.0-6
usbutils - 007-7
usign - 2015-07-04-ef641914-1
vsftpd - 3.0.3-2
wireless-regdb - 2017-10-20-4343d359
wpad-mini - 2018-04-09-fa617ee6-5
zlib - 1.2.11-2
zoneinfo-core - 2018e-1

/etc/config/acme
Tu dodam, ze mi też nie pójdzie bez dopisanego maila (w jakimś wątku to znalazłem)

config acme
    option state_dir '/etc/acme'
    option debug '1'
    option account_email 'stronatest@ivi.pl'

config cert 'example'
    option enabled '1'
    option use_staging '1'
    option keylength '2048'
    option update_uhttpd '1'
    list domains 'stronatest.ivi.pl'

/etc/config/network
(mam nadzieję, że nie namiesza w sprawie)

config interface 'loopback'
    option ifname 'lo'
    option proto 'static'
    option ipaddr '127.0.0.1'
    option netmask '255.0.0.0'

config globals 'globals'
    option ula_prefix 'fdd1:8c33:017d::/48'

config interface 'lan'
    option type 'bridge'
    option ifname 'eth0.1 eth0.2'
    option proto 'static'
    option ipaddr '190.0.0.14'
    option netmask '255.255.255.0'
    option gateway '190.0.0.1'
    option dns '8.8.8.8 8.8.4.4'

config device 'lan_dev'
    option name 'eth0.1'
    option macaddr 'd4:6e:0e:d0:4c:0a'

config device 'wan_dev'
    option name 'eth0.2'
    option macaddr 'd4:6e:0e:d0:4c:0b'

config interface 'wan'
    option ifname 'eth0.2'
    option proto 'static'
    option ipaddr '190.0.0.15'
    option netmask '255.255.255.0'
    option gateway '190.0.0.1'
    option dns '8.8.8.8 8.8.4.4'
    option auto '0'

config interface 'wan6'
    option ifname 'eth0.2'
    option proto 'dhcpv6'
    option auto '0'

config switch
    option name 'switch0'
    option reset '1'
    option enable_vlan '1'

config switch_vlan
    option device 'switch0'
    option vlan '1'
    option ports '1 2 3 4 0t'

config switch_vlan
    option device 'switch0'
    option vlan '2'
    option ports '5 0t'

config interface 'vpn_tun'
    option proto 'none'
    option ifname 'tun0'

config interface 'wwan'
    option proto 'dhcp'
    option auto '0'

A firewall powiedzmy, że leży i wszystkie porty otwarte

Ad 2) Domena musi być hostowana na routerze i dostępna z internetu. Jest?
Nie do końca rozumiem pytanie. stronatest.ivi.pl jest dostępna z internetu, ale jest przekierowana dynamicznie na router-serwer przez zewnętrzny ddns

6

Odp: Openwrt, Let's Encrypt i https

stronatest.ivi.pl wskazuje na 69.197.18.190, to nie jest ip które masz na routerze.

Już pomijać to że masz źle wan zrobiony (interfejs jest włączony do lanu, wanu nie powinno być bo mam rozumieć że podłączony pod lan jesteś), to czym jest  69.197.18.190 i jaki jest jego związek  z 190.0.0.14?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

7 (edytowany przez WoT 2019-01-09 14:56:15)

Odp: Openwrt, Let's Encrypt i https

No niestety nie.
Fakt, wan to pozostałość, jest do wyrzucenia, dzięki.

No to może od początku:
1. Nie mam zew IP, nie mam nawet stałego IP. Mój ISP jest do bani!
2. W sieci domowej mam postawiony serwer WR działający jako ktoś nazwał jako "głupi ap" od tak wpięty do lanu (robi za media serwer, printserver, przedłużacz wifi, itp oraz najważniejsze za serwer www)
3. Ze światem zewnętrznym komunikuje się jako klient poprzez tunel vpn z obcym serwerem GR
4. Obcy serwer GR ma zew IP, ale nie stałe, więc wspomaga się DDNS z afraid.org
5. Smaczku dodaje fakt że obce ISP obcego serwera GR blokuje najważniejsze porty komunikacyjne jak 80, 21 itp, więc ddns działa metodą webforward na specjalny niezablokowany port.

Koniec końców, jeśli wpiszesz w przeglądarkę stronatest.ivi.pl, najpierw odwołasz się do ddns które przekierowuje na specjalny port serwera GR i jego bieżące zew IP, a ten z kolei przekierowuje przez tunel vpn na mój serwer WR.

69.197.18.190 - podejrzewam że to ip właściciela serweru ivi.pl chociaż whois wkazyje na USA

Dodam że pomimo tego wymyślnego sposobu na WR mam jeszcze 2 strony i wszystkie działają niestety bez hhtps sad

8

Odp: Openwrt, Let's Encrypt i https

acme wymaga bezpośredniego dostępu do witryny domeny na porcie 80. Więc dopóki nie będziesz miał dostępu z internetu to acme ci w życiu tego nie zweryfikuje w ten sposób.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

9 (edytowany przez WoT 2019-01-09 15:01:30)

Odp: Openwrt, Let's Encrypt i https

Cezary napisał/a:

acme wymaga bezpośredniego dostępu do witryny domeny na porcie 80. Więc dopóki nie będziesz miał dostępu z internetu to acme ci w życiu tego nie zweryfikuje w ten sposób.

Obawiałem się tego sad
Ale dzięki za pomoc.

Próbowałem też działać ze skryptem certbot, ale rozumiem, że Lets Encrypt w ogóle nie pomoże?
Jest jakiś inny sposób na darmowy certyfikat który by zadziałał w moim przypadku?

10

Odp: Openwrt, Let's Encrypt i https

Tzn lets encrypt generalnie potrzebuje dostępu do domeny lub dnsów. Ale to już nie przez skrypt acme na openwrt tylko musisz normalne skrypty np. debianowe i pobawić się tak żeby miały one dostęp do witryny. Ale to już temat na inne forum.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

11

Odp: Openwrt, Let's Encrypt i https

Spróbuje, jak trochę lepiej ogarnę temat.
Dzięki
To temat do zamknięcia

12 (edytowany przez tenobcy 2019-03-17 18:19:26)

Odp: Openwrt, Let's Encrypt i https

Czy ten poradnik jest cały czas aktuany? Mam dostęp z zewnątrz do rutera (mam publiczny stały adres ip bez żadnych blokad i otworzone porty 80 i 443 na wanie) niestety po wydaniu komend

    # /etc/init.d/uhttpd stop
    # /etc/init.d/acme start

otrzymuje już na starcie

Sun Mar 17 17:41:26 2019 daemon.err acme: state_dir and account_email must be set
Sun Mar 17 17:41:26 2019 daemon.err run-acme[13954]: acme: state_dir and account_email must be set

Edit:
Ok dodałem do sekcji config acme w etc/config/acme

option account_email 'moj_mail@o2.pl' 

Wygenerowało mi wszystkie certyfikaty ale mimo to dostępu z zewnątrz nie ma...

13

Odp: Openwrt, Let's Encrypt i https

Dostęp z zewnątrz to ty masz mieć po prostu, co ma lets encrypt z tym wspólnego? Co właściwie ci nie działa?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

14 (edytowany przez tenobcy 2019-03-17 18:38:52)

Odp: Openwrt, Let's Encrypt i https

Co dalej? Wchodzimy przeglądarką na https://host.ddns.net, powinna pojawić się oczekiwana "zielona kłódka". Jeżeli tak jest - gratulacje. Dostałeś +1 do bezpieczeństwa.

Nie otwiera mi strony "witryna nieosiągalna" włączam uhttpd otwiera ale bez certyfikatu (czewona kłódka)

15

Odp: Openwrt, Let's Encrypt i https

Napisz jaki to ip, pokaż
uci show uhttpd
uci show firewall

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

16 (edytowany przez tenobcy 2019-03-17 18:52:31)

Odp: Openwrt, Let's Encrypt i https

root@OpenWrt:/etc/acme# uci show uhttpd
uhttpd.main=uhttpd
uhttpd.main.listen_http='0.0.0.0:80' '[::]:80'
uhttpd.main.listen_https='0.0.0.0:443' '[::]:443'
uhttpd.main.redirect_https='1'
uhttpd.main.home='/www'
uhttpd.main.rfc1918_filter='1'
uhttpd.main.max_requests='3'
uhttpd.main.max_connections='100'
uhttpd.main.cgi_prefix='/cgi-bin'
uhttpd.main.lua_prefix='/cgi-bin/luci=/usr/lib/lua/luci/sgi/uhttpd.lua'
uhttpd.main.script_timeout='60'
uhttpd.main.network_timeout='30'
uhttpd.main.http_keepalive='20'
uhttpd.main.tcp_keepalive='1'
uhttpd.main.key='/etc/acme/adres.ddns.net/adres.ddns.net.key'
uhttpd.main.cert='/etc/acme/adres.ddns.net/fullchain.cer'
uhttpd.defaults=cert
uhttpd.defaults.days='730'
uhttpd.defaults.bits='2048'
uhttpd.defaults.country='ZZ'
uhttpd.defaults.state='Somewhere'
uhttpd.defaults.location='Unknown'
uhttpd.defaults.commonname='OpenWrt'
root@OpenWrt:/etc/acme# uci show firewall
firewall.@defaults[0]=defaults
firewall.@defaults[0].syn_flood='1'
firewall.@defaults[0].input='ACCEPT'
firewall.@defaults[0].output='ACCEPT'
firewall.@defaults[0].forward='REJECT'
firewall.@zone[0]=zone
firewall.@zone[0].name='lan'
firewall.@zone[0].network='lan'
firewall.@zone[0].input='ACCEPT'
firewall.@zone[0].output='ACCEPT'
firewall.@zone[0].forward='ACCEPT'
firewall.@zone[1]=zone
firewall.@zone[1].name='wan'
firewall.@zone[1].network='wan' 'wan6'
firewall.@zone[1].input='REJECT'
firewall.@zone[1].output='ACCEPT'
firewall.@zone[1].forward='REJECT'
firewall.@zone[1].masq='1'
firewall.@zone[1].mtu_fix='1'
firewall.@forwarding[0]=forwarding
firewall.@forwarding[0].src='lan'
firewall.@forwarding[0].dest='wan'
firewall.@rule[0]=rule
firewall.@rule[0].name='Allow-DHCP-Renew'
firewall.@rule[0].src='wan'
firewall.@rule[0].proto='udp'
firewall.@rule[0].dest_port='68'
firewall.@rule[0].target='ACCEPT'
firewall.@rule[0].family='ipv4'
firewall.@rule[1]=rule
firewall.@rule[1].name='Allow-Ping'
firewall.@rule[1].src='wan'
firewall.@rule[1].proto='icmp'
firewall.@rule[1].icmp_type='echo-request'
firewall.@rule[1].family='ipv4'
firewall.@rule[1].target='ACCEPT'
firewall.@rule[2]=rule
firewall.@rule[2].name='Allow-IGMP'
firewall.@rule[2].src='wan'
firewall.@rule[2].proto='igmp'
firewall.@rule[2].family='ipv4'
firewall.@rule[2].target='ACCEPT'
firewall.@rule[3]=rule
firewall.@rule[3].name='Allow-DHCPv6'
firewall.@rule[3].src='wan'
firewall.@rule[3].proto='udp'
firewall.@rule[3].src_ip='fc00::/6'
firewall.@rule[3].dest_ip='fc00::/6'
firewall.@rule[3].dest_port='546'
firewall.@rule[3].family='ipv6'
firewall.@rule[3].target='ACCEPT'
firewall.@rule[4]=rule
firewall.@rule[4].name='Allow-MLD'
firewall.@rule[4].src='wan'
firewall.@rule[4].proto='icmp'
firewall.@rule[4].src_ip='fe80::/10'
firewall.@rule[4].icmp_type='130/0' '131/0' '132/0' '143/0'
firewall.@rule[4].family='ipv6'
firewall.@rule[4].target='ACCEPT'
firewall.@rule[5]=rule
firewall.@rule[5].name='Allow-ICMPv6-Input'
firewall.@rule[5].src='wan'
firewall.@rule[5].proto='icmp'
firewall.@rule[5].icmp_type='echo-request' 'echo-reply' 'destination-unreachable' 'packet-too-big' 'time-exceeded' 'bad-header' 'unknown-header-type' 'router-solicitation' 'neighbour-solicitation' 'router-advertisement' 'neighbour-advertisement'
firewall.@rule[5].limit='1000/sec'
firewall.@rule[5].family='ipv6'
firewall.@rule[5].target='ACCEPT'
firewall.@rule[6]=rule
firewall.@rule[6].name='Allow-ICMPv6-Forward'
firewall.@rule[6].src='wan'
firewall.@rule[6].dest='*'
firewall.@rule[6].proto='icmp'
firewall.@rule[6].icmp_type='echo-request' 'echo-reply' 'destination-unreachable' 'packet-too-big' 'time-exceeded' 'bad-header' 'unknown-header-type'
firewall.@rule[6].limit='1000/sec'
firewall.@rule[6].family='ipv6'
firewall.@rule[6].target='ACCEPT'
firewall.@rule[7]=rule
firewall.@rule[7].name='Allow-IPSec-ESP'
firewall.@rule[7].src='wan'
firewall.@rule[7].dest='lan'
firewall.@rule[7].proto='esp'
firewall.@rule[7].target='ACCEPT'
firewall.@rule[8]=rule
firewall.@rule[8].name='Allow-ISAKMP'
firewall.@rule[8].src='wan'
firewall.@rule[8].dest='lan'
firewall.@rule[8].dest_port='500'
firewall.@rule[8].proto='udp'
firewall.@rule[8].target='ACCEPT'
firewall.@include[0]=include
firewall.@include[0].path='/etc/firewall.user'
firewall.@rule[9]=rule
firewall.@rule[9].src='wan'
firewall.@rule[9].target='ACCEPT'
firewall.@rule[9].proto='tcp'
firewall.@rule[9].dest_port='80'
firewall.@rule[9].name='HTTP'
firewall.@rule[10]=rule
firewall.@rule[10].src='wan'
firewall.@rule[10].target='ACCEPT'
firewall.@rule[10].proto='tcp'
firewall.@rule[10].dest_port='443'
firewall.@rule[10].name='HTTPS'
firewall.@redirect[0]=redirect
firewall.@redirect[0].target='DNAT'
firewall.@redirect[0].src='wan'
firewall.@redirect[0].dest='lan'
firewall.@redirect[0].proto='tcp udp'
firewall.@redirect[0].src_dport='8080'
firewall.@redirect[0].dest_ip='192.168.1.152'
firewall.@redirect[0].name='fritz'
firewall.@redirect[0].dest_port='80'
firewall.@redirect[0].enabled='0'
firewall.@redirect[1]=redirect
firewall.@redirect[1].target='DNAT'
firewall.@redirect[1].src='wan'
firewall.@redirect[1].dest='lan'
firewall.@redirect[1].proto='tcp udp'
firewall.@redirect[1].src_dport='8081'
firewall.@redirect[1].dest_ip='192.168.1.233'
firewall.@redirect[1].dest_port='80'
firewall.@redirect[1].name='voip'
firewall.@redirect[1].enabled='0'

17 (edytowany przez Cezary 2019-03-17 18:48:58)

Odp: Openwrt, Let's Encrypt i https

Pokaż

netstat -apn
route -n

Zrób
/etc/init.d/uhttpd stop
/etc/init.d/uhttpd start
logread

(w takiej kolejności) i pokaż co te polecenia wypisały.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

18

Odp: Openwrt, Let's Encrypt i https

root@OpenWrt:/etc/acme# netstat -apn
Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address           Foreign Address         State       PID/Program name
tcp        0      0 127.0.0.1:139           0.0.0.0:*               LISTEN      1525/smbd
tcp        0      0 192.168.1.1:139         0.0.0.0:*               LISTEN      1525/smbd
tcp        0      0 127.0.0.1:53            0.0.0.0:*               LISTEN      4083/dnsmasq
tcp        0      0 192.168.1.1:53          0.0.0.0:*               LISTEN      4083/dnsmasq
tcp        0      0 192.168.55.101:53       0.0.0.0:*               LISTEN      4083/dnsmasq
tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      1253/dropbear
tcp        0      0 127.0.0.1:445           0.0.0.0:*               LISTEN      1525/smbd
tcp        0      0 192.168.1.1:445         0.0.0.0:*               LISTEN      1525/smbd
tcp        0    144 192.168.1.1:22          192.168.1.116:50150     ESTABLISHED 7886/dropbear
tcp        0      0 fe80::a263:91ff:fe7d:799:139 :::*                    LISTEN      1525/smbd
tcp        0      0 fd05:596f:d0ed::1:139   :::*                    LISTEN      1525/smbd
tcp        0      0 ::1:139                 :::*                    LISTEN      1525/smbd
tcp        0      0 :::9100                 :::*                    LISTEN      1271/p9100d
tcp        0      0 fe80::a263:91ff:fe7d:799:53 :::*                    LISTEN      4083/dnsmasq
tcp        0      0 ::1:53                  :::*                    LISTEN      4083/dnsmasq
tcp        0      0 fe80::24c5:a8ff:fe9c:ff6c:53 :::*                    LISTEN      4083/dnsmasq
tcp        0      0 fd05:596f:d0ed::1:53    :::*                    LISTEN      4083/dnsmasq
tcp        0      0 fe80::a263:91ff:fe7d:799:53 :::*                    LISTEN      4083/dnsmasq
tcp        0      0 2001:db8:1::2:53        :::*                    LISTEN      4083/dnsmasq
tcp        0      0 fe80::a263:91ff:fe7d:79a:53 :::*                    LISTEN      4083/dnsmasq
tcp        0      0 fe80::a263:91ff:fe7d:79b:53 :::*                    LISTEN      4083/dnsmasq
tcp        0      0 :::22                   :::*                    LISTEN      1253/dropbear
tcp        0      0 fe80::a263:91ff:fe7d:799:445 :::*                    LISTEN      1525/smbd
tcp        0      0 fd05:596f:d0ed::1:445   :::*                    LISTEN      1525/smbd
tcp        0      0 ::1:445                 :::*                    LISTEN      1525/smbd
udp        0      0 127.0.0.1:53            0.0.0.0:*                           4083/dnsmasq
udp        0      0 192.168.1.1:53          0.0.0.0:*                           4083/dnsmasq
udp        0      0 192.168.55.101:53       0.0.0.0:*                           4083/dnsmasq
udp        0      0 0.0.0.0:67              0.0.0.0:*                           4083/dnsmasq
udp        0      0 192.168.1.255:137       0.0.0.0:*                           1526/nmbd
udp        0      0 192.168.1.1:137         0.0.0.0:*                           1526/nmbd
udp        0      0 0.0.0.0:137             0.0.0.0:*                           1526/nmbd
udp        0      0 192.168.1.255:138       0.0.0.0:*                           1526/nmbd
udp        0      0 192.168.1.1:138         0.0.0.0:*                           1526/nmbd
udp        0      0 0.0.0.0:138             0.0.0.0:*                           1526/nmbd
udp        0      0 :::546                  :::*                                14086/odhcp6c
udp        0      0 :::547                  :::*                                1172/odhcpd
udp        0      0 fe80::a263:91ff:fe7d:799:53 :::*                                4083/dnsmasq
udp        0      0 ::1:53                  :::*                                4083/dnsmasq
udp        0      0 fe80::24c5:a8ff:fe9c:ff6c:53 :::*                                4083/dnsmasq
udp        0      0 fd05:596f:d0ed::1:53    :::*                                4083/dnsmasq
udp        0      0 fe80::a263:91ff:fe7d:799:53 :::*                                4083/dnsmasq
udp        0      0 2001:db8:1::2:53        :::*                                4083/dnsmasq
udp        0      0 fe80::a263:91ff:fe7d:79a:53 :::*                                4083/dnsmasq
udp        0      0 fe80::a263:91ff:fe7d:79b:53 :::*                                4083/dnsmasq
raw        0      0 ::%1:58                 ::%4450380:*            58          14086/odhcp6c
raw        0      0 ::%1:58                 ::%4450380:*            58          1172/odhcpd
raw        0      0 ::%1:58                 ::%4450380:*            58          1172/odhcpd
Active UNIX domain sockets (servers and established)
Proto RefCnt Flags       Type       State         I-Node PID/Program name    Path
unix  2      [ ]         DGRAM                    12510234 2700/hostapd        /var/run/hostapd/wlan0
unix  2      [ ACC ]     STREAM     LISTENING       3100 1526/nmbd           /var/nmbd/unexpected
unix  2      [ ]         DGRAM                    12454277 3730/hostapd        /var/run/hostapd/wlan1
unix  2      [ ACC ]     STREAM     LISTENING        437 552/ubusd           /var/run/ubus.sock
unix  9      [ ]         DGRAM                      1237 918/logd            /dev/log
unix  2      [ ]         DGRAM                    12468700 4083/dnsmasq
unix  2      [ ]         DGRAM                      4153 1172/odhcpd
unix  3      [ ]         STREAM     CONNECTED       1239 918/logd
unix  3      [ ]         STREAM     CONNECTED       1770 1172/odhcpd
unix  2      [ ]         DGRAM                      1688 1118/netifd
unix  2      [ ]         DGRAM                       443 552/ubusd
unix  3      [ ]         STREAM     CONNECTED     12510467 2700/hostapd
unix  3      [ ]         STREAM     CONNECTED       1240 552/ubusd           /var/run/ubus.sock
unix  2      [ ]         DGRAM                      1986 1118/netifd
unix  2      [ ]         DGRAM                    12510213 2700/hostapd
unix  3      [ ]         STREAM     CONNECTED     12468703 4083/dnsmasq
unix  2      [ ]         DGRAM                    12454242 3730/hostapd
unix  3      [ ]         STREAM     CONNECTED       1690 1118/netifd
unix  3      [ ]         STREAM     CONNECTED     12454567 3730/hostapd
unix  3      [ ]         STREAM     CONNECTED        448 1/procd
unix  3      [ ]         STREAM     CONNECTED     12468704 552/ubusd           /var/run/ubus.sock
unix  3      [ ]         STREAM     CONNECTED       1262 552/ubusd           /var/run/ubus.sock
unix  3      [ ]         STREAM     CONNECTED       1691 552/ubusd           /var/run/ubus.sock
unix  2      [ ]         DGRAM                    13519403 8439/crond
unix  3      [ ]         STREAM     CONNECTED     12510468 552/ubusd           /var/run/ubus.sock
unix  3      [ ]         STREAM     CONNECTED        449 552/ubusd           /var/run/ubus.sock
unix  3      [ ]         STREAM     CONNECTED       1261 937/rpcd
unix  3      [ ]         STREAM     CONNECTED     12454568 552/ubusd           /var/run/ubus.sock
unix  2      [ ]         DGRAM                      1911 1253/dropbear
unix  3      [ ]         STREAM     CONNECTED       1771 552/ubusd           /var/run/ubus.sock
root@OpenWrt:/etc/acme#
root@OpenWrt:/etc/acme# route -n
Kernel IP routing table
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface
0.0.0.0         192.168.55.1    0.0.0.0         UG    0      0        0 eth0.2
192.168.1.0     0.0.0.0         255.255.255.0   U     0      0        0 br-lan
192.168.55.0    0.0.0.0         255.255.255.0   U     0      0        0 eth0.2
root@OpenWrt:/etc/acme#

19

Odp: Openwrt, Let's Encrypt i https

Ale ty nie masz publicznego IP na wanie. Masz przekierowania na routerze wcześniej zrobione?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

20 (edytowany przez tenobcy 2019-03-17 18:51:40)

Odp: Openwrt, Let's Encrypt i https

Ja nie mam żadnego przekierowania być może mój operator gdzieś tam po drodze ma

21

Odp: Openwrt, Let's Encrypt i https

Ty nie. Twój operator musi ci zrobić, bo teraz nawet na zwykłe http czy ssh na ten twój adres jest connection refused.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

22

Odp: Openwrt, Let's Encrypt i https

Ok dzięki jutro będę gadał

23

Odp: Openwrt, Let's Encrypt i https

Czemu nie masz uhttpd uruchomionego?

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.

24

Odp: Openwrt, Let's Encrypt i https

Wyłączyłem na czas generowania certyfikatu i nie włączyłem big_smile

25

Odp: Openwrt, Let's Encrypt i https

Włącz.

Masz niepotrzebny router, uszkodzony czy nie - chętnie przygarnę go.