0

issue image I want to configure SSL to aws and for that, I have followed below procedures:

  1. Requested SSL from aws using dns method
  2. they have issued me SSL with cname record
  3. I have added cname record as given by them please see attached screenshot

Still, it shows pending validation as it has added about 14 hours ago.what is I'm missing:

Note(domain is from crystone) and also tried to remove _ from cname record value as suggested by aws that some domain name service provider not support - prefix.

Also removed 'aws.' (dot) that one thread here in Stack Overflow suggested.

Any help will be appreciated.

Martijn Pieters
  • 1,048,767
  • 296
  • 4,058
  • 3,343
raju_odi
  • 1,433
  • 13
  • 29
  • Please run a dig for the CNAME e.g. dig _x1.example.com and verify if it matches with the value provided by ACM. Unfortunately, you have blurred everything in the screenshot, so that does not help :( – sudo Dec 09 '18 at 08:06
  • hello @sudo i have added another image with clear values please check `issue image` link in question – raju_odi Dec 09 '18 at 13:16
  • And one more think is that required to `Certificate authority (CA) type` in aws? – raju_odi Dec 09 '18 at 13:18
  • dig fillerbrands.com NS +short gives name servers from crystone e.g. ns03.crystone.se. So you have to either add the CNAM record there (I believe you'll have the control panel in crystone) or do a domain delegation to Route 53. Adding the CNAM to Route53 does not have any effect since Route53 name servers are not authoritative. – sudo Dec 09 '18 at 14:58
  • try https://stackoverflow.com/a/35970555/1145196 – Dusan Bajic Dec 09 '18 at 20:20
  • above solution @DusanBajic you suggested not working – raju_odi Dec 11 '18 at 05:16
  • @sudo also tried your solution to add name servers from crysone and added cname record to crystone domain control panel but no luck – raju_odi Dec 11 '18 at 05:47

0 Answers0