kcert icon indicating copy to clipboard operation
kcert copied to clipboard

Most GET Auth calls return status "invalid"

Open ptik31 opened this issue 2 years ago • 2 comments

Hi,

I have a authentication issue issue with the implementation v1.0.1? (GET Auth)

image

image

Very rarely a certificate is created (as secret).

Do you know about any issue?

ptik31 avatar Jul 11 '22 13:07 ptik31

I found out what the problem was -> staging Environment is currently broken -> https://community.letsencrypt.org/t/certificates-orders-are-failing-with-500-error/181064/5

On prod it works, but only if I give enough time to the "Ingress propagation". Therefore I would like to create a PR making the propagation time configurable just like the rest of this great solution.

ptik31 avatar Jul 12 '22 10:07 ptik31

@ptik31 If you're up for it, I suggest exploring if a different solution exists for this. Specifically: I wonder if the nginx ingress controller adds some kind of metadata to the ingress object once it has read and applied the change. If this is the case then the best solution would be:

  • Create the ingress
  • Watch the ingress object for changes (and periodically check the ingress object)
  • Once nginx adds its metadata confirming the change is propagated, continue with the process

If you find such a metadata that can be checked, I'd be happy to help implement it.

nabsul avatar Sep 21 '22 00:09 nabsul

In the meanwhile it has been fixed

ptik31 avatar Nov 17 '22 07:11 ptik31