SSL creation require additional verification to request a certificate for one or more domain names in this request. (.ru domain zone)
SSL creation require additional verification to request a certificate for one or more domain names in request. (.ru domain zone)
The error says write on the forum if I don't have a support plan. One of my projects has already been disabled and one of these days the most critical second project will be disabled. If I need to provide additional information about myself, how do I do it? In all documentation it is written that when using R53 + amplify, everything is done automatically.
Hi There,
I understand that you are getting an error "Additional verification required to request certificates for one or more domain names in this request." (.ru domain zone) when validating the domain name to issue the public certificate via ACM.
Please note this error could be the results of one of two things.
-
When the certificate contains a domain that ranks within the Alexa top 1000 websites.[1]
-
Or as of March 10, 2022 ACM has restrictions to issue new certificates for ".ru" domains until further notice.
I see in your case you will no longer be able to issue or renew certificates as your domain falls under the following domains.
- .RU
- .BY
- Бел - Belarus
- Рф - Russian Federation
- .moscow
- .москва - Moscow
- .SU - Soviet Union
- (http://ru.com/) .RU.COM
- .РУС
- .RU.NET
All Amazon certificates for these domains will remain functional until expiration, but will not be renewable and no new certificates from these domains will be issued.
The only workaround that would work in your scenario would be to obtain a certificate from a third party that can issue a certificate for your domain, and import the certificate into ACM [2]
I trust the above information is helpful to you.
References: ==============
[2] https://docs.aws.amazon.com/acm/latest/userguide/import-certificate.html
Please note that I personally value your feedback, please accept this answer if you find it helpful to you.
To create a certificate for a domain, the domain must be verified as being owned by you. Ideally this is via DNS validation, where you write a CNAME record to your DNS configuration to establish you have control of your domain name. ACM (Certificate Manager) can update your DNS configuration for you if you manage your DNS records with Amazon Route 53. After you have configured the CNAME record, ACM can automatically renew DNS-validated certificates before they expire. Another option is email validation where ACM sends email to the domain's contact addresses and five common administrative addresses for the domain, i.e.
administrator@your_domain_name
hostmaster@your_domain_name
postmaster@your_domain_name
webmaster@your_domain_name
admin@your_domain_name
Someone must receive that email and click on the link in order to verify the domain.
Relevant questions
Additional verification required to request certificates for one or more domain names in this request
asked 23 days agoCertificate Manager does not create ssl certificates for .ru domains
asked 3 months agoError message: Additional Verification Required / Certificate renewal failed despite proper Route53 setup for verification
asked a month agoError message: Additional Verification Required
asked a day agoAWS Cert Manager: Additional Verification Required
asked 2 months agoAWS Certificate Manager - Additional Verification Required
asked 4 months agoAdditional verification required to request certificates
asked 5 months agoSSL creation require additional verification to request a certificate for one or more domain names in this request. (.ru domain zone)
Accepted Answerasked 14 days agoAWS Certificate Manager: Certificates won't renew "Additional verification required to request ..." .ru domains
asked a month agoCertificate renewal is not possible
asked a month ago