Diagnosing AutoSSL When a Domain Does Not Resolve Correctly Print

  • autossl, dns, ssl, troubleshooting
  • 0

AutoSSL domain-control validation depends on the domain being reachable and correctly delegated. cPanel SSL/TLS Status can flag domains with AutoSSL problems, including domains that do not resolve to an IPv4 address on the internet.

  1. Confirm the domain’s public DNS points to the intended hosting server.
  2. Check that the domain is included in AutoSSL rather than excluded.
  3. Review the certificate status/error shown in SSL/TLS Status.
  4. Check CAA records for restrictions that could prevent the configured certificate authority from issuing a certificate.
  5. After DNS is corrected and caches have updated, run AutoSSL from the available cPanel interface when that action is enabled.

Repeatedly running AutoSSL while DNS still points elsewhere does not correct the underlying validation problem.


Was this answer helpful?

« Back