AdGuard Alias Cert not renewed
-
- I'm running Adguard Home to support DoT/DoH for Clients
- limiting DNS to allowed clients is setup via Cloud Firewall, not within Adguard, ports 53 + 853 there are open for selected source IPs
- adding a new alias for a dedicated client ('client1.gate') works and a valid cert is deployed in /etc/certs within AdGuard docker container
- after some configuration changes and tests, I've been (again) adding the alias *.gate.mydomain.tld, which has been existing before and been removed again
=> creating the alias in Cloudron UI does not throw any error
=> however, an expired cert is used: when now accessing the AdGuard UI, an error message is visible on top saying

=>I then renewed all certs via Cloudron Domain Mgmt, and regarding *.gate.mydomain.tld, the corresponding renewal log shows
2026-04-30T12:04:23.234Z reverseproxy: ensureCertificate: error: no http challengesAm I facing the issue @girish described here?
Any idea how to fix this?Thx in advance!
-
Hi @james
- 'cloudron-support --troubleshoot' did not throw any error

- DNS is not automated for this Cloudron, all entries are set manually at the registrar's web UI
Does that help?
ps all other app certs seem to be renewed correctly, I haven't observed any issues here
- 'cloudron-support --troubleshoot' did not throw any error
-
Hello @andreasb
Please don't post pictures of copy-pasteable text.
With that you exclude our blind / visual impaired users.DNS is not automated for this Cloudron, all entries are set manually at the registrar's web UI
Does that help?That is the issue. With a manual DNS provider, you can not get a DNS challenge.
Only with a DNS challenge you can get wildcard certificates.
This is causing your issues. You should switch to a supported DNS provider. -
Hello @andreasb
Please don't post pictures of copy-pasteable text.
With that you exclude our blind / visual impaired users.DNS is not automated for this Cloudron, all entries are set manually at the registrar's web UI
Does that help?That is the issue. With a manual DNS provider, you can not get a DNS challenge.
Only with a DNS challenge you can get wildcard certificates.
This is causing your issues. You should switch to a supported DNS provider.
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Register Login