reasons why certificate is not yet validated

0

I created a DNS zone, then added a CNAME record, entered the Name and Value in the fields, and clicked create. Yet, the certificate is still "validating." Is there a way to know if I did something wrong, or if there is some obstacle that I am unaware of?

I don't want to be impatient. It has been 1.5 hours and other question/answers listed about 30 mins that it takes to do this step.

profile picture
asked 2 years ago288 views
4 Answers
1
Accepted Answer

Did you create the CNAME record yourself?

ACM automatically registers and validates CNAMEs by clicking the button in the image.
The verification process usually takes only a few minutes.

Enter image description here

If you have not pressed the button on the image in ACM, please press it and wait for a while.

If this does not solve the problem, please also see the Knowledge Center below. [1]

[1] Resolve ACM certificate still pending validation
https://aws.amazon.com/premiumsupport/knowledge-center/acm-certificate-pending-validation/?nc1=h_ls

profile picture
mn87
answered 2 years ago
profile picture
EXPERT
reviewed 15 days ago
1

thanks! i used the amazon lightsail dashboard to create the CNAME.

I will use your response and see what i can do! I need to locate this ACM webpage. Thank you! (I will update here my experience if it might help others)

profile picture
answered 2 years ago
0

Thank you for sharing the information about using Lightsail.

Please forget about the method I described as it does not use Lightsail.

I have looked again and here are some documents that may be helpful. [1] [2] [3]

[1] Verify an SSL/TLS certificate in Amazon Lightsail | Lightsail Documentation
https://lightsail.aws.amazon.com/ls/docs/en_us/articles/verify-tls-ssl-certificate-using-dns-cname-https

[2] Installing SSL in Amazon Lightsail - Stack Overflow
https://stackoverflow.com/questions/64310818/installing-ssl-in-amazon-lightsail

[3] Build your own domain and SSL compatible WordPress with Amazon Lightsail (VPS) ($3.50-/month) | DevelopersIO
https://dev.classmethod.jp/articles/how-to-install-original-domain-ssl-wordpress-with-amazon-lightsail/#toc-17

If there are any errors in the stuck, it would be good to investigate with CloudTrail.

For example, open CloudTrail in the region where you are using Lightsail, select Event Source, and type "lightsail.amazonaws.com".
Additionally, click on the settings icon in the upper right corner so that you can view errors.

Enter image description here

On the settings screen, turn on Error code.

Enter image description here

Or, if you are investigating a problem with ACM, enter "acm.amazonaws.com" in the Event Source.

Enter image description here

If there are errors, searching by error may give you new clues.

I hope this is helpful.

profile picture
mn87
answered 2 years ago
  • thank you!!! i will use your help and will follow up on my progress!

  • mn87, I ended up moving my DNS to AWS 53. this seemed to help because, after a week of waiting for the DNS transfer, i got it up and running in a few hours! earthjay.com now works. thanks for your time!

  • I am glad to hear that the problem has been resolved.
    I also learned a lot.
    Thank you very much.

0

I need more help. I used the ACM to successfully create a certificate and it was issued. however, when i go to my lightsail distribution and look at the 'custom domain' tab, there is only an option to create a certificate there (which i did and it is stuck in the validation phase; it has a different CNAME than the certificate i successfully made in the ACM), not to use a certificate that i created in the ACM. what am i doing wrong?

profile picture
answered 2 years ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions