---
title: "Lets Encrypt Error: The server could not connect to the client to verify the domain :: Failed to connect to host for DVSNI challenge"
description: "<p>Are you using <a href="https://letsencrypt.org/">Lets Encrypt</a>? (If not, you should go ahead and use it to generate <img class="alignright" src="https://i2.wp.com/www.eff.org/files/2014/11/17/letsencrypt-logo-large.png?resize=317%2C246&#038;ssl=1" alt="" data-recalc-dims="1" />SSL certificates to ALL of your web servers).</p>
<p>If you want to run it on EC2 or GCE using the –standalone argument (./letsencrypt-auto certonly –standalone -d example.com) <strong>make sure port 443 (for SSL) is open</strong> on that server.</p>
<p>Otherwise you’ll get the infamous:</p>
<p>`Are you using <a href="https://letsencrypt.org/">Lets Encrypt</a>? (If not, you should go ahead and use it to generate <img class="alignright" src="https://i2.wp.com/www.eff.org/files/2014/11/17/letsencrypt-logo-large.png?resize=317%2C246&#038;ssl=1" alt="" data-recalc-dims="1" />SSL certificates to ALL of your web servers).</p>"
doc_version: "1"
last_updated: "2017-06-02"
date: 2015-12-31
tags: [aws, EC2, gce, gcp, letsencrypt, Privacy, ssl]
canonical: "https://eran.sandler.co.il/2015/12/31/lets-encrypt-error-the-server-could-not-connect-to-the-client-to-verify-the-domain-failed-to-connect-to-host-for-dvsni-challenge/"
---

## Sitemap

- [Home](https://eran.sandler.co.il/)

Are you using [Lets Encrypt][1]? (If not, you should go ahead and use it to generate <img class="alignright" src="https://i2.wp.com/www.eff.org/files/2014/11/17/letsencrypt-logo-large.png?resize=317%2C246&#038;ssl=1" alt="" data-recalc-dims="1" />SSL certificates to ALL of your web servers).

If you want to run it on EC2 or GCE using the &#8211;standalone argument (./letsencrypt-auto certonly &#8211;standalone -d example.com) **make sure port 443 (for SSL) is open** on that server.

Otherwise you&#8217;ll get the infamous:
  
`Are you using [Lets Encrypt][1]? (If not, you should go ahead and use it to generate <img class="alignright" src="https://i2.wp.com/www.eff.org/files/2014/11/17/letsencrypt-logo-large.png?resize=317%2C246&#038;ssl=1" alt="" data-recalc-dims="1" />SSL certificates to ALL of your web servers).

If you want to run it on EC2 or GCE using the &#8211;standalone argument (./letsencrypt-auto certonly &#8211;standalone -d example.com) **make sure port 443 (for SSL) is open** on that server.

Otherwise you&#8217;ll get the infamous:
  
` 
  
Go ahead. Install it. Today.

 [1]: https://letsencrypt.org/