This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Issues with renewal of Let's Encrypt certificate

Hi there,

We are running a VM with Sophos UTM9, just updated to ver. 9.708-6. When I am trying to renew the "Let's Encrypt" certificate from within "Webserver Protectoin" > "Certificate Management", I am getting the below error:

Could not obtain the current version of the Let’s Encrypt Terms of Service. Automatic renewals will be tried again during the next renewal attempt. Manual renewal can be attempted again at any time.

Checking on the logs of Let's Encrypt, I am getting the below results:

2021:12:07-10:02:02 mailrelay letsencrypt[7091]: I Renew certificate: sending notification WARN-603
2021:12:07-10:02:02 mailrelay letsencrypt[7091]: [WARN-603] Let's Encrypt certificate renewal failed accessing Let's Encrypt service
2021:12:07-10:02:02 mailrelay letsencrypt[7091]: I Renew certificate: execution failed
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: E Renew certificate: Incorrect response code from ACME server: 500
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: E Renew certificate: URL was: acme-v02.api.letsencrypt.org/directory
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: I Renew certificate: handling CSR REF_CaCsrMailrelayi for domain set [mailrelay.invo.it]
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: E Renew certificate: TOS_UNAVAILABLE: Could not obtain the current version of the Let's Encrypt Terms of Service
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: I Renew certificate: sending notification WARN-603
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: [WARN-603] Let's Encrypt certificate renewal failed accessing Let's Encrypt service
2021:12:07-10:07:02 mailrelay letsencrypt[7931]: I Renew certificate: execution failed
Could someone help me here, please?


This thread was automatically locked due to age.
Parents Reply
  • Hi Amodin,

    Thanks a lot for your reply. I checked the article and I followed the instrucions. I deleted the expired Root certificates and tried again to re-issue the Let's Encrypt certificate, but it didn't work.

    Could you please tell me how can I get the CA Data Bundle that are mentioned on this article? Or, could you please inform me how could I check if the setting for receiving pattern updates?

    Thanks a lot in advance!


    Anything can be achieved!

Children