0s autopkgtest [15:51:43]: starting date and time: 2026-02-05 15:51:43+0000 0s autopkgtest [15:51:43]: git checkout: 4b346b80 nova: make wait_reboot return success even when a no-op 0s autopkgtest [15:51:43]: host juju-7f2275-prod-proposed-migration-environment-2; command line: /home/ubuntu/autopkgtest/runner/autopkgtest --output-dir /tmp/autopkgtest-work.wikf2ilt/out --timeout-copy=6000 --needs-internet=try --setup-commands /home/ubuntu/autopkgtest-cloud/worker-config-production/setup-canonical.sh --apt-pocket=proposed=src:python-acme,src:sphinx-rtd-theme --apt-upgrade python-certbot-nginx --timeout-short=300 --timeout-copy=20000 --timeout-build=20000 '--env=ADT_TEST_TRIGGERS=python-acme/4.0.0-2 sphinx-rtd-theme/3.1.0+dfsg-1' -- ssh -s /home/ubuntu/autopkgtest/ssh-setup/nova -- --flavor autopkgtest-cpu2-ram4-disk20-arm64 --security-groups autopkgtest-juju-7f2275-prod-proposed-migration-environment-2@sto01-arm64-8.secgroup --name adt-resolute-arm64-python-certbot-nginx-20260205-155142-juju-7f2275-prod-proposed-migration-environment-2-948b672f-bf32-4d09-94bb-1d2635a0e2d7 --image adt/ubuntu-resolute-arm64-server --keyname testbed-juju-7f2275-prod-proposed-migration-environment-2 --net-id=net_prod-autopkgtest-workers-arm64 -e TERM=linux --mirror=http://ftpmaster.internal/ubuntu/ 7s Creating nova instance adt-resolute-arm64-python-certbot-nginx-20260205-155142-juju-7f2275-prod-proposed-migration-environment-2-948b672f-bf32-4d09-94bb-1d2635a0e2d7 from image adt/ubuntu-resolute-arm64-server-20260205.img (UUID 88169191-3954-4b52-b471-25031b32a3a0)... 69s autopkgtest [15:52:52]: testbed dpkg architecture: arm64 69s autopkgtest [15:52:52]: testbed apt version: 3.1.14 70s autopkgtest [15:52:53]: @@@@@@@@@@@@@@@@@@@@ test bed setup 70s autopkgtest [15:52:53]: testbed release detected to be: None 71s autopkgtest [15:52:54]: updating testbed package index (apt update) 71s Get:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease [124 kB] 71s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 71s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 71s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 71s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/main Sources [230 kB] 71s Get:6 http://ftpmaster.internal/ubuntu resolute-proposed/universe Sources [1686 kB] 71s Get:7 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse Sources [36.0 kB] 71s Get:8 http://ftpmaster.internal/ubuntu resolute-proposed/restricted Sources [5260 B] 71s Get:9 http://ftpmaster.internal/ubuntu resolute-proposed/main arm64 Packages [272 kB] 71s Get:10 http://ftpmaster.internal/ubuntu resolute-proposed/main arm64 c-n-f Metadata [7520 B] 71s Get:11 http://ftpmaster.internal/ubuntu resolute-proposed/restricted arm64 Packages [52.9 kB] 71s Get:12 http://ftpmaster.internal/ubuntu resolute-proposed/restricted arm64 c-n-f Metadata [328 B] 72s Get:13 http://ftpmaster.internal/ubuntu resolute-proposed/universe arm64 Packages [1512 kB] 72s Get:14 http://ftpmaster.internal/ubuntu resolute-proposed/universe arm64 c-n-f Metadata [42.6 kB] 72s Get:15 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse arm64 Packages [27.1 kB] 72s Get:16 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse arm64 c-n-f Metadata [800 B] 75s Fetched 3997 kB in 1s (5950 kB/s) 76s Reading package lists... 77s Hit:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease 77s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 77s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 77s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 78s Reading package lists... 78s Reading package lists... 78s Building dependency tree... 78s Reading state information... 78s Calculating upgrade... 79s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 79s autopkgtest [15:53:02]: upgrading testbed (apt dist-upgrade and autopurge) 79s Reading package lists... 79s Building dependency tree... 79s Reading state information... 79s Calculating upgrade... 80s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 80s Reading package lists... 81s Building dependency tree... 81s Reading state information... 81s Solving dependencies... 81s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 85s autopkgtest [15:53:08]: testbed running kernel: Linux 6.18.0-9-generic #9-Ubuntu SMP PREEMPT_DYNAMIC Mon Jan 12 16:41:39 UTC 2026 85s autopkgtest [15:53:08]: @@@@@@@@@@@@@@@@@@@@ apt-source python-certbot-nginx 87s Get:1 http://ftpmaster.internal/ubuntu resolute/universe python-certbot-nginx 4.0.0-2 (dsc) [2563 B] 87s Get:2 http://ftpmaster.internal/ubuntu resolute/universe python-certbot-nginx 4.0.0-2 (tar) [79.7 kB] 87s Get:3 http://ftpmaster.internal/ubuntu resolute/universe python-certbot-nginx 4.0.0-2 (diff) [18.4 kB] 87s gpgv: Signature made Sun May 25 15:33:15 2025 UTC 87s gpgv: using RSA key 909B8ECA4FEE6E81034527269B3F22544E9AF451 87s gpgv: issuer "hlieberman@debian.org" 87s gpgv: Can't check signature: No public key 87s dpkg-source: warning: cannot verify inline signature for ./python-certbot-nginx_4.0.0-2.dsc: no acceptable signature found 87s autopkgtest [15:53:10]: testing package python-certbot-nginx version 4.0.0-2 88s autopkgtest [15:53:11]: build not needed 88s autopkgtest [15:53:11]: test command1: preparing testbed 88s Reading package lists... 89s Building dependency tree... 89s Reading state information... 89s Solving dependencies... 89s The following NEW packages will be installed: 89s certbot nginx nginx-common python3-acme python3-certbot 89s python3-certbot-nginx python3-configargparse python3-josepy 89s python3-parsedatetime python3-pytz python3-rfc3339 89s 0 upgraded, 11 newly installed, 0 to remove and 0 not upgraded. 89s Need to get 1259 kB of archives. 89s After this operation, 4812 kB of additional disk space will be used. 89s Get:1 http://ftpmaster.internal/ubuntu resolute/main arm64 nginx-common all 1.28.1-2ubuntu1 [44.8 kB] 89s Get:2 http://ftpmaster.internal/ubuntu resolute/main arm64 nginx arm64 1.28.1-2ubuntu1 [614 kB] 89s Get:3 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-josepy all 2.2.0-1 [22.3 kB] 89s Get:4 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-pytz all 2025.2-5 [32.4 kB] 89s Get:5 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-rfc3339 all 2.0.1-2 [6530 B] 89s Get:6 http://ftpmaster.internal/ubuntu resolute-proposed/universe arm64 python3-acme all 4.0.0-2 [49.3 kB] 89s Get:7 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-configargparse all 1.7-2 [31.7 kB] 89s Get:8 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-parsedatetime all 2.6-3build1 [32.1 kB] 89s Get:9 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-certbot all 4.0.0-2 [267 kB] 89s Get:10 http://ftpmaster.internal/ubuntu resolute/universe arm64 certbot all 4.0.0-2 [91.6 kB] 89s Get:11 http://ftpmaster.internal/ubuntu resolute/universe arm64 python3-certbot-nginx all 4.0.0-2 [67.4 kB] 90s Preconfiguring packages ... 90s Fetched 1259 kB in 0s (4325 kB/s) 90s Selecting previously unselected package nginx-common. 90s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 89360 files and directories currently installed.) 90s Preparing to unpack .../00-nginx-common_1.28.1-2ubuntu1_all.deb ... 90s Unpacking nginx-common (1.28.1-2ubuntu1) ... 90s Selecting previously unselected package nginx. 90s Preparing to unpack .../01-nginx_1.28.1-2ubuntu1_arm64.deb ... 90s Unpacking nginx (1.28.1-2ubuntu1) ... 90s Selecting previously unselected package python3-josepy. 90s Preparing to unpack .../02-python3-josepy_2.2.0-1_all.deb ... 90s Unpacking python3-josepy (2.2.0-1) ... 90s Selecting previously unselected package python3-pytz. 90s Preparing to unpack .../03-python3-pytz_2025.2-5_all.deb ... 90s Unpacking python3-pytz (2025.2-5) ... 90s Selecting previously unselected package python3-rfc3339. 90s Preparing to unpack .../04-python3-rfc3339_2.0.1-2_all.deb ... 90s Unpacking python3-rfc3339 (2.0.1-2) ... 90s Selecting previously unselected package python3-acme. 90s Preparing to unpack .../05-python3-acme_4.0.0-2_all.deb ... 90s Unpacking python3-acme (4.0.0-2) ... 90s Selecting previously unselected package python3-configargparse. 90s Preparing to unpack .../06-python3-configargparse_1.7-2_all.deb ... 90s Unpacking python3-configargparse (1.7-2) ... 90s Selecting previously unselected package python3-parsedatetime. 90s Preparing to unpack .../07-python3-parsedatetime_2.6-3build1_all.deb ... 90s Unpacking python3-parsedatetime (2.6-3build1) ... 90s Selecting previously unselected package python3-certbot. 90s Preparing to unpack .../08-python3-certbot_4.0.0-2_all.deb ... 90s Unpacking python3-certbot (4.0.0-2) ... 90s Selecting previously unselected package certbot. 90s Preparing to unpack .../09-certbot_4.0.0-2_all.deb ... 90s Unpacking certbot (4.0.0-2) ... 90s Selecting previously unselected package python3-certbot-nginx. 90s Preparing to unpack .../10-python3-certbot-nginx_4.0.0-2_all.deb ... 90s Unpacking python3-certbot-nginx (4.0.0-2) ... 90s Setting up python3-configargparse (1.7-2) ... 90s Setting up python3-parsedatetime (2.6-3build1) ... 91s Setting up nginx-common (1.28.1-2ubuntu1) ... 91s Created symlink '/etc/systemd/system/multi-user.target.wants/nginx.service' → '/usr/lib/systemd/system/nginx.service'. 91s Setting up python3-pytz (2025.2-5) ... 92s Setting up python3-josepy (2.2.0-1) ... 92s Setting up python3-rfc3339 (2.0.1-2) ... 92s Setting up nginx (1.28.1-2ubuntu1) ... 93s * Upgrading binary nginx  [ OK ] 93s Setting up python3-acme (4.0.0-2) ... 93s Setting up python3-certbot (4.0.0-2) ... 93s Setting up certbot (4.0.0-2) ... 93s Created symlink '/etc/systemd/system/timers.target.wants/certbot.timer' → '/usr/lib/systemd/system/certbot.timer'. 94s Setting up python3-certbot-nginx (4.0.0-2) ... 94s Processing triggers for man-db (2.13.1-1) ... 95s Processing triggers for ufw (0.36.2-9build1) ... 96s autopkgtest [15:53:19]: test command1: certbot --help nginx | grep -q "sleep-seconds" 96s autopkgtest [15:53:19]: test command1: [----------------------- 97s autopkgtest [15:53:20]: test command1: -----------------------] 98s command1 PASS 98s autopkgtest [15:53:21]: test command1: - - - - - - - - - - results - - - - - - - - - - 103s autopkgtest [15:53:26]: test nginx: preparing testbed 104s Reading package lists... 104s Building dependency tree... 104s Reading state information... 104s Solving dependencies... 104s The following NEW packages will be installed: 104s pebble 104s 0 upgraded, 1 newly installed, 0 to remove and 0 not upgraded. 104s Need to get 3235 kB of archives. 104s After this operation, 14.3 MB of additional disk space will be used. 104s Get:1 http://ftpmaster.internal/ubuntu resolute/universe arm64 pebble arm64 2.6.0+ds1-1build1 [3235 kB] 105s Fetched 3235 kB in 0s (10.6 MB/s) 105s Selecting previously unselected package pebble. 105s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 89811 files and directories currently installed.) 108s Preparing to unpack .../pebble_2.6.0+ds1-1build1_arm64.deb ... 108s Unpacking pebble (2.6.0+ds1-1build1) ... 108s Setting up pebble (2.6.0+ds1-1build1) ... 108s Processing triggers for man-db (2.13.1-1) ... 108s autopkgtest [15:53:31]: test nginx: [----------------------- 109s Waiting for pebble to start .Pebble 2026/02/05 15:53:32 Starting Pebble ACME server 109s Pebble 2026/02/05 15:53:32 Generated new root issuer CN=Pebble Root CA 1e46f1 with serial 1e07ef6dd729ac54 and SKI b60ffca546b15b11ba36d2e9328a7fd0729fa1e9 109s Pebble 2026/02/05 15:53:32 Generated new intermediate issuer CN=Pebble Intermediate CA 20a933 with serial 50bb00b32365b14f and SKI 0ca99273b46cf9b7caecd762b3592ff08decaa94 109s Pebble 2026/02/05 15:53:32 Generated issuance chain: Pebble Root CA 1e46f1 -> Pebble Intermediate CA 20a933 109s Pebble 2026/02/05 15:53:32 Using certificate validity period of 157766400 seconds 109s Pebble 2026/02/05 15:53:32 Using system DNS resolver for ACME challenges 109s Pebble 2026/02/05 15:53:32 Disabling random VA sleeps 109s Pebble 2026/02/05 15:53:32 Configured to reject 0% of good nonces 109s Pebble 2026/02/05 15:53:32 Configured to attempt authz reuse for each identifier 50% of the time 109s Pebble 2026/02/05 15:53:32 Configured to show 3 orders per page 109s Pebble 2026/02/05 15:53:32 Management interface listening on: 0.0.0.0:15000 109s Pebble 2026/02/05 15:53:32 Root CA certificate available at: https://0.0.0.0:15000/roots/0 109s Pebble 2026/02/05 15:53:32 Listening on: 0.0.0.0:14000 109s Pebble 2026/02/05 15:53:32 ACME directory available at: https://0.0.0.0:14000/dir 110s .Pebble 2026/02/05 15:53:33 GET /dir -> calling handler() 110s 110s Pebble server started and is ready 110s Root logging level set at 10 110s Saving debug log to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/logs/letsencrypt.log 110s Requested authenticator nginx and installer nginx 110s Single candidate plugin: * nginx 110s Description: Nginx Web Server plugin 110s Interfaces: Authenticator, Installer, Plugin 110s Entry point: EntryPoint(name='nginx', value='certbot_nginx._internal.configurator:NginxConfigurator', group='certbot.plugins') 110s Initialized: 110s Prep: True 110s Selected authenticator and installer 110s Plugins selected: Authenticator nginx, Installer nginx 110s Sending GET request to https://localhost:14000/dir. 110s Starting new HTTPS connection (1): localhost:14000 110s Pebble 2026/02/05 15:53:34 GET /dir -> calling handler() 110s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 110s warnings.warn( 110s https://localhost:14000 "GET /dir HTTP/1.1" 200 486 110s Received response: 110s HTTP 200 110s Cache-Control: public, max-age=0, no-cache 110s Content-Type: application/json; charset=utf-8 110s Date: Thu, 05 Feb 2026 15:53:34 GMT 110s Content-Length: 486 110s 110s { 110s "keyChange": "https://localhost:14000/rollover-account-key", 110s "meta": { 110s "externalAccountRequired": false, 110s "termsOfService": "data:text/plain,Do%20what%20thou%20wilt" 110s }, 110s "newAccount": "https://localhost:14000/sign-me-up", 110s "newNonce": "https://localhost:14000/nonce-plz", 110s "newOrder": "https://localhost:14000/order-plz", 110s "renewalInfo": "https://localhost:14000/draft-ietf-acme-ari-03/renewalInfo", 110s "revokeCert": "https://localhost:14000/revoke-cert" 110s } 110s Requesting fresh nonce 110s Sending HEAD request to https://localhost:14000/nonce-plz. 110s Pebble 2026/02/05 15:53:34 HEAD /nonce-plz -> calling handler() 110s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 110s warnings.warn( 110s https://localhost:14000 "HEAD /nonce-plz HTTP/1.1" 200 0 110s Received response: 110s HTTP 200 110s Cache-Control: public, max-age=0, no-cache 110s Link: ;rel="index" 110s Replay-Nonce: dCcfje1L3LwTHwPS-6PQ2w 110s Date: Thu, 05 Feb 2026 15:53:34 GMT 110s 110s 110s Storing nonce: dCcfje1L3LwTHwPS-6PQ2w 110s JWS payload: 110s b'{\n "termsOfServiceAgreed": true\n}' 110s Sending POST request to https://localhost:14000/sign-me-up: 110s { 110s "protected": "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", 110s "signature": "kBp8099wpGAMuUZV59Zjqxj9KFFR_i1uiMLT6BrsQJmScoOpN94uOt3li-sYjlOrVusbSwFkBKZyptBI6vNoDK7HLgzARMiXjPDT8jce4tJ7ytbIFR5hT0XOFuG96MdpZqY57iJiSmqH5bNSrJQTh3MlKFWeGpyGInzMlE4-Hr9FiJMMj1zZqrlUzBIClek1QFeZmPFzwc-q5IrJ4D1ImHSL4YgRN2Y_hBflvX51Mf7iEVKpwdEHv4qnmDCxFyfYRXI2eYTaGwnC5b5E3S5t0-0klDMbw25FyCmMsy0-3XpPhtNlJVhbwf9R8LbgkKK6kDijnmEnx3yz1-mHI33i_g", 110s "payload": "ewogICJ0ZXJtc09mU2VydmljZUFncmVlZCI6IHRydWUKfQ" 110s } 110s Pebble 2026/02/05 15:53:34 POST /sign-me-up -> calling handler() 110s Pebble 2026/02/05 15:53:34 There are now 1 accounts in memory 110s Account registered. 110s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 110s warnings.warn( 110s https://localhost:14000 "POST /sign-me-up HTTP/1.1" 201 506 110s Received response: 110s HTTP 201 110s Cache-Control: public, max-age=0, no-cache 110s Content-Type: application/json; charset=utf-8 110s Link: ;rel="index" 110s Location: https://localhost:14000/my-account/42c7e1d1ba26feb7 110s Replay-Nonce: hWl2O4_Burl_kZqGT14GDg 110s Date: Thu, 05 Feb 2026 15:53:34 GMT 110s Content-Length: 506 110s 110s { 110s "status": "valid", 110s "orders": "https://localhost:14000/list-orderz/42c7e1d1ba26feb7", 110s "key": { 110s "kty": "RSA", 110s "n": "vFPWECTZLBOB0h7O-E5grY9FUlPUZ255ZMYKqFgr09LJnBgKowsRwKrqtwzYO90tM9vuIRaCp9WFpWGOqf3EZj0FgjHDbrVmM-3yZaeuhIYimQEz3nv7FvjKPPi_oZCo6k9J2fclsmb8YdyPxbS4mjF18OEwCFlKtBowPknMi_WBUVu4PElOWeqdJfh0tOfPha9UXJaqa0PBEgXH8m8mu09ipJy0u1-bb83d8impxUrDQFwKbWw1BwWShzigpE7_9Ils58-9yZA7ui6f7qTWp_Qv9Piwj7OBvMHpogOyFVREcOAe-01qa1Yo3DJPEuCKUupa6jAx7M4wx61m-zJ5YQ", 110s "e": "AQAB" 110s } 110s } 110s Storing nonce: hWl2O4_Burl_kZqGT14GDg 110s Notifying user: Account registered. 110s Picked account: )>), contact=(), agreement=None, status='valid', terms_of_service_agreed=None, only_return_existing=None, external_account_binding=None), uri='https://localhost:14000/my-account/42c7e1d1ba26feb7', new_authzr_uri=None, terms_of_service=None), dd9f1b12cd2193cf913f483c3ce8f73f, Meta(creation_dt=datetime.datetime(2026, 2, 5, 15, 53, 34, tzinfo=), creation_host='autopkgtest.local', register_to_eff=None))> 110s Notifying user: Requesting a certificate for localhost 110s Requesting a certificate for localhost 110s Pebble 2026/02/05 15:53:34 POST /order-plz -> calling handler() 110s Pebble 2026/02/05 15:53:34 There are now 1 authorizations in the db 110s Pebble 2026/02/05 15:53:34 Added order "xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY" to the db 110s Pebble 2026/02/05 15:53:34 There are now 1 orders in the db 110s Pebble 2026/02/05 15:53:34 POST /authZ/ -> calling handler() 110s JWS payload: 110s b'{\n "identifiers": [\n {\n "type": "dns",\n "value": "localhost"\n }\n ]\n}' 110s Sending POST request to https://localhost:14000/order-plz: 110s { 110s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJoV2wyTzRfQnVybF9rWnFHVDE0R0RnIiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9vcmRlci1wbHoifQ", 110s "signature": "BAsBXocQxkM3ZWRDnCLH0WC5v539KBKz5-T0L6RMlguZmaclklR3N7gUipe0MY1z6DlVjDTN2x58ZKeICsw1KDd1iAOBuSNOhXYerVH53BaFYdRTHUkvbnwhjl26fWy6UiaO4ng0HRAXl2O2FebXBfDmI5NGVLqg2wK4WZ36AfZDsgfzG8OX6IbpQbczZWlMnWiUiCRBlp6AlaGZwBNtxJP3o3-Cvi5jMP8B-O0H1qacsX2iYd1GGHuMLI3_iXri1DkCZSX1doSITD5MxxzX01HPMKBDgPqpl_y4CMNBq1xOv2gdarmghDRJpsoJV3W18meFT_xt4gkcoe7Vt_YrBQ", 110s "payload": "ewogICJpZGVudGlmaWVycyI6IFsKICAgIHsKICAgICAgInR5cGUiOiAiZG5zIiwKICAgICAgInZhbHVlIjogImxvY2FsaG9zdCIKICAgIH0KICBdCn0" 110s } 110s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 110s warnings.warn( 110s https://localhost:14000 "POST /order-plz HTTP/1.1" 201 372 110s Received response: 110s HTTP 201 110s Cache-Control: public, max-age=0, no-cache 110s Content-Type: application/json; charset=utf-8 110s Link: ;rel="index" 110s Location: https://localhost:14000/my-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY 110s Replay-Nonce: NIUAXQ15HC3uhxFmZ-hKVg 110s Date: Thu, 05 Feb 2026 15:53:34 GMT 110s Content-Length: 372 110s 110s { 110s "status": "pending", 110s "expires": "2026-02-06T15:53:34Z", 110s "identifiers": [ 110s { 110s "type": "dns", 110s "value": "localhost" 110s } 110s ], 110s "finalize": "https://localhost:14000/finalize-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY", 110s "authorizations": [ 110s "https://localhost:14000/authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc" 110s ] 110s } 110s Storing nonce: NIUAXQ15HC3uhxFmZ-hKVg 110s JWS payload: 110s b'' 110s Sending POST request to https://localhost:14000/authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc: 110s { 110s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJOSVVBWFExNUhDM3VoeEZtWi1oS1ZnIiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9hdXRoWi80dVdURTRhU1lHVy1waUdwY1hiVDlWc1g2VWhZSG96MzNEY29aeFRWWWJjIn0", 110s "signature": "RYamVUWvVpuPsTc2ORufTB9LPN8_KGcuwvxmMarUk294ahAEML4RndZTXmpm61ocqRfvOFHKA3rkRX1w4IpVVkb_avsP1LxATrZwjy-AU3bQVczR814FjXt0n9Lr_mPmUDp2p8rCsXR_8XoBABHEMScGkpdNWebD4nBzCHxdXqfGHD1V1ro-xE93gNfEADzKzNOJNlwPBciI_y05lmPM5TS3wKSgZ0MgPRKj5u-YcGx1q63gG97Ij6s9bCGjwJaS_OqdiJyMcvGNx-am1l554s2L0gpj7k_Bqb8Lantxs5GaTd-ExYDGnfhFTGU9FUZRba5GgI5xQefWSlgWbJoGeA", 110s "payload": "" 110s } 110s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 110s warnings.warn( 110s https://localhost:14000 "POST /authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc HTTP/1.1" 200 1099 110s Received response: 110s HTTP 200 110s Cache-Control: public, max-age=0, no-cache 110s Content-Type: application/json; charset=utf-8 110s Link: ;rel="index" 110s Replay-Nonce: Na0XU6IZQqvAwKar0f2QEQ 110s Date: Thu, 05 Feb 2026 15:53:34 GMT 110s Content-Length: 1099 110s 110s { 110s "status": "pending", 110s "identifier": { 110s "type": "dns", 110s "value": "localhost" 110s }, 110s "challenges": [ 110s { 110s "type": "http-01", 110s "url": "https://localhost:14000/chalZ/-DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM", 110s "token": "HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8", 110s "status": "pending" 110s }, 110s { 110s "type": "dns-01", 110s "url": "https://localhost:14000/chalZ/Em9F3sVp0eTnR62M188RsZ6ZrcSIi8TsPJrhSrs8-Fg", 110s "token": "nYay1IXTSYYUDJiZB_Ao859o8CWSyTnIyAlHHT4mntY", 110s "status": "pending" 110s }, 110s { 110s "type": "tls-alpn-01", 110s "url": "https://localhost:14000/chalZ/m8r65CaUQnx5efioVenl_j_x85M8DE0ErQZKVa_1mTg", 110s "token": "Qs6Daw2pN4oKgUnOxAgkL2EVJTxTje0KqQcEc7v1psA", 110s "status": "pending" 110s }, 110s { 110s "type": "dns-account-01", 110s "url": "https://localhost:14000/chalZ/tuzzqwiWPT77nDn7bBJYWU-uK6p3OaJHuH9nkX_pthw", 110s "token": "ZwBK56zZUwlm6CUa2fpYfiqpab11yHhuPiy7CwVsxlw", 110s "status": "pending" 110s } 110s ], 110s "expires": "2026-02-05T16:53:34Z" 110s } 110s Storing nonce: Na0XU6IZQqvAwKar0f2QEQ 110s dns-account-01 was not recognized, full message: {'type': 'dns-account-01', 'url': 'https://localhost:14000/chalZ/tuzzqwiWPT77nDn7bBJYWU-uK6p3OaJHuH9nkX_pthw', 'token': 'ZwBK56zZUwlm6CUa2fpYfiqpab11yHhuPiy7CwVsxlw', 'status': 'pending'} 110s Performing the following challenges: 110s http-01 challenge for localhost 110s Generated server block: 110s [] 110s Creating backup of /etc/nginx/sites-enabled/default 110s Creating backup of /etc/nginx/mime.types 110s Creating backup of /etc/nginx/nginx.conf 110s Writing nginx conf tree to /etc/nginx/nginx.conf: 110s user www-data; 110s worker_processes auto; 110s worker_cpu_affinity auto; 110s pid /run/nginx.pid; 110s error_log /var/log/nginx/error.log; 110s include /etc/nginx/modules-enabled/*.conf; 110s 110s events { 110s worker_connections 768; 110s # multi_accept on; 110s } 110s 110s http { 110s server_names_hash_bucket_size 128; 110s include /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/le_http_01_cert_challenge.conf; 110s 110s ## 110s # Basic Settings 110s ## 110s 110s sendfile on; 110s tcp_nopush on; 110s types_hash_max_size 2048; 110s server_tokens build; # Recommended practice is to turn this off 110s 110s # server_names_hash_bucket_size 64; 110s # server_name_in_redirect off; 110s 110s include /etc/nginx/mime.types; 110s default_type application/octet-stream; 110s 110s ## 110s # SSL Settings 110s ## 110s 110s ssl_protocols TLSv1.2 TLSv1.3; # Dropping SSLv3 (POODLE), TLS 1.0, 1.1 110s ssl_prefer_server_ciphers off; # Don't force server cipher order. 110s 110s ## 110s # Logging Settings 110s ## 110s 110s access_log /var/log/nginx/access.log; 110s 110s ## 110s # Gzip Settings 110s ## 110s 110s gzip on; 110s 110s # gzip_vary on; 110s # gzip_proxied any; 110s # gzip_comp_level 6; 110s # gzip_buffers 16 8k; 110s # gzip_http_version 1.1; 110s # gzip_types text/plain text/css application/json application/javascript text/xml application/xml application/xml+rss text/javascript; 110s 110s ## 110s # Virtual Host Configs 110s ## 110s 110s include /etc/nginx/conf.d/*.conf; 110s include /etc/nginx/sites-enabled/*; 110s } 110s 110s 110s #mail { 110s # # See sample authentication script at: 110s # # http://wiki.nginx.org/ImapAuthenticateWithApachePhpScript 110s # 110s # # auth_http localhost/auth.php; 110s # # pop3_capabilities "TOP" "USER"; 110s # # imap_capabilities "IMAP4rev1" "UIDPLUS"; 110s # 110s # server { 110s # listen localhost:110; 110s # protocol pop3; 110s # proxy on; 110s # } 110s # 110s # server { 110s # listen localhost:143; 110s # protocol imap; 110s # proxy on; 110s # } 110s #} 110s 110s Writing nginx conf tree to /etc/nginx/sites-enabled/default: 110s ## 110s # You should look at the following URL's in order to grasp a solid understanding 110s # of Nginx configuration files in order to fully unleash the power of Nginx. 110s # https://www.nginx.com/resources/wiki/start/ 110s # https://www.nginx.com/resources/wiki/start/topics/tutorials/config_pitfalls/ 110s # https://wiki.debian.org/Nginx/DirectoryStructure 110s # 110s # In most cases, administrators will remove this file from sites-enabled/ and 110s # leave it as reference inside of sites-available where it will continue to be 110s # updated by the nginx packaging team. 110s # 110s # This file will automatically load configuration files provided by other 110s # applications, such as Drupal or Wordpress. These applications will be made 110s # available underneath a path with that package name, such as /drupal8. 110s # 110s # Please see /usr/share/doc/nginx-doc/examples/ for more detailed examples. 110s ## 110s 110s # Default server configuration 110s # 110s server { 110s listen 80 default_server; 110s listen [::]:80 default_server; 110s 110s # SSL configuration 110s # 110s # listen 443 ssl default_server; 110s # listen [::]:443 ssl default_server; 110s # 110s # Note: You should disable gzip for SSL traffic. 110s # See: https://bugs.debian.org/773332 110s # 110s # Read up on ssl_ciphers to ensure a secure configuration. 110s # See: https://bugs.debian.org/765782 110s # 110s # Self signed certs generated by the ssl-cert package 110s # Don't use them in a production server! 110s # 110s # include snippets/snakeoil.conf; 110s 110s root /var/www/html; 110s 110s # Add index.php to the list if you are using PHP 110s index index.html index.htm index.nginx-debian.html; 110s 110s server_name _; 110s 110s location / { 110s # First attempt to serve request as file, then 110s # as directory, then fall back to displaying a 404. 110s try_files $uri $uri/ =404; 110s } 110s 110s # pass PHP scripts to FastCGI server 110s # 110s #location ~ \.php$ { 110s # include snippets/fastcgi-php.conf; 110s # 110s # # With php-fpm (or other unix sockets): 110s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 110s # # With php-cgi (or other tcp sockets): 110s # fastcgi_pass 127.0.0.1:9000; 110s #} 110s 110s # deny access to .htaccess files, if Apache's document root 110s # concurs with nginx's one 110s # 110s #location ~ /\.ht { 110s # deny all; 110s #} 110s } 110s 110s 110s # Virtual Host configuration for example.com 110s # 110s # You can move that to a different file under sites-available/ and symlink that 110s # to sites-enabled/ to enable it. 110s # 110s #server { 110s # listen 80; 110s # listen [::]:80; 110s # 110s # server_name example.com; 110s # 110s # root /var/www/example.com; 110s # index index.html; 110s # 110s # location / { 110s # try_files $uri $uri/ =404; 110s # } 110s #} 110s 110s server {rewrite ^(/.well-known/acme-challenge/.*) $1 break; # managed by Certbot 110s 110s 110s listen 80 ; 110s listen [::]:80 ; 110s 110s # SSL configuration 110s # 110s # listen 443 ssl default_server; 110s # listen [::]:443 ssl default_server; 110s # 110s # Note: You should disable gzip for SSL traffic. 110s # See: https://bugs.debian.org/773332 110s # 110s # Read up on ssl_ciphers to ensure a secure configuration. 110s # See: https://bugs.debian.org/765782 110s # 110s # Self signed certs generated by the ssl-cert package 110s # Don't use them in a production server! 110s # 110s # include snippets/snakeoil.conf; 110s 110s root /var/www/html; 110s 110s # Add index.php to the list if you are using PHP 110s index index.html index.htm index.nginx-debian.html; 110s server_name localhost; # managed by Certbot 110s 110s 110s location / { 110s # First attempt to serve request as file, then 110s # as directory, then fall back to displaying a 404. 110s try_files $uri $uri/ =404; 110s } 110s 110s # pass PHP scripts to FastCGI server 110s # 110s #location ~ \.php$ { 110s # include snippets/fastcgi-php.conf; 110s # 110s # # With php-fpm (or other unix sockets): 110s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 110s # # With php-cgi (or other tcp sockets): 110s # fastcgi_pass 127.0.0.1:9000; 110s #} 110s 110s # deny access to .htaccess files, if Apache's document root 110s # concurs with nginx's one 110s # 110s #location ~ /\.ht { 110s # deny all; 110s #} 110s 110s location = /.well-known/acme-challenge/HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8{default_type text/plain;return 200 HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8.gXrPkG03bJiP_ZsvBGtDo37J0qkfQLQr40gcaBLWMH0;} # managed by Certbot 110s 110s } 111s Pebble 2026/02/05 15:53:35 POST /chalZ/ -> calling handler() 111s Pebble 2026/02/05 15:53:35 Pulled a task from the Tasks queue: &va.vaTask{Identifier:acme.Identifier{Type:"dns", Value:"localhost"}, Challenge:(*core.Challenge)(0x4000300140), Account:(*core.Account)(0x40001e71a0), AccountURL:"https://localhost:14000/my-account/42c7e1d1ba26feb7", Wildcard:false} 111s Pebble 2026/02/05 15:53:35 Starting 3 validations. 111s Pebble 2026/02/05 15:53:35 Attempting to validate w/ HTTP: http://localhost:80/.well-known/acme-challenge/HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8 111s Pebble 2026/02/05 15:53:35 Attempting to validate w/ HTTP: http://localhost:80/.well-known/acme-challenge/HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8 111s Pebble 2026/02/05 15:53:35 Attempting to validate w/ HTTP: http://localhost:80/.well-known/acme-challenge/HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8 111s Pebble 2026/02/05 15:53:35 authz 4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc set VALID by completed challenge -DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM 111s JWS payload: 111s b'{}' 111s Sending POST request to https://localhost:14000/chalZ/-DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM: 111s { 111s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJOYTBYVTZJWlFxdkF3S2FyMGYyUUVRIiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9jaGFsWi8tRGNzdE1tb1QyLTB1ajhFcWVIV3pfcGw3bmlmZWVLZm5YRjNCeWQyeGRNIn0", 111s "signature": "g_3d7lY0h7YuKPfENnWJqHAITY2WPA4t4aSqU8L-kcombbGgox9fpax-EbUR3NSFVj6UOou9agK-yYci3rTVVISpigcPFoQfibaPHNwjNwtFZA5cz_CxLDQmMo30eL6VYT5C9RpS4HmZ1bjBl8--fgvVBN6KwOIfyyCzo-l8hLSQYAEOMGCEIpQgu9yMJqbB16O2fIXyCwNveP9Z7nknq75eAIHZMzbPbuuNNE33XlfoNZ4u2N7h_CAaVzrtzpdV84q9De0uK4wuJKXKOa7R345s2NGskj9kKeTpgGaOtC4-Uc0IKDqDOKDcfxlGK_sCseIn2NFlPaQMrmAyfZAgIA", 111s "payload": "e30" 111s } 111s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 111s warnings.warn( 111s https://localhost:14000 "POST /chalZ/-DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM HTTP/1.1" 200 197 111s Received response: 111s HTTP 200 111s Cache-Control: public, max-age=0, no-cache 111s Content-Type: application/json; charset=utf-8 111s Link: ;rel="index", ;rel="up" 111s Replay-Nonce: JjGWknw7DHlIpfSzAhusBQ 111s Date: Thu, 05 Feb 2026 15:53:35 GMT 111s Content-Length: 197 111s 111s { 111s "type": "http-01", 111s "url": "https://localhost:14000/chalZ/-DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM", 111s "token": "HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8", 111s "status": "processing" 111s } 111s Storing nonce: JjGWknw7DHlIpfSzAhusBQ 111s Waiting for verification... 112s Pebble 2026/02/05 15:53:36 POST /authZ/ -> calling handler() 112s JWS payload: 112s b'' 112s Sending POST request to https://localhost:14000/authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc: 112s { 112s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJKakdXa253N0RIbElwZlN6QWh1c0JRIiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9hdXRoWi80dVdURTRhU1lHVy1waUdwY1hiVDlWc1g2VWhZSG96MzNEY29aeFRWWWJjIn0", 112s "signature": "oIrwmMyXJP8JjHfVPIJX8RtnmCWJTYzlrZKZRy09AI_L1-lRNLGW7Z3QVIQK_YD67vQmXQ6HYs5mc6oCS4huydpHrdSiB4xg-U2sjiI2EgVWHD8igHC5Q-3zwDyZRLixfNFDpSCezRUzAKXcWBEg_tim5qLNTw-NTT3QNHLnV-CAiyACXz-i5kcTjn1jV_oTxi_o0rEL_TVpOFDce7zz9x8HuVO25pKqYZtAsR-XW63jGm5ELT5SBG1hwT_7S1BROaE0vixcU_CGcpSbHD1eIfigFzjZQ1lN-IMlk5mDcNkX2Zj1PuBzgfRPwoFmcxFgT5-kwupdDyWEOFM5FQlZjw", 112s "payload": "" 112s } 112s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 112s warnings.warn( 112s https://localhost:14000 "POST /authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc HTTP/1.1" 200 435 112s Received response: 112s HTTP 200 112s Cache-Control: public, max-age=0, no-cache 112s Content-Type: application/json; charset=utf-8 112s Link: ;rel="index" 112s Replay-Nonce: -g8G_70c980cg2xht2FQew 112s Date: Thu, 05 Feb 2026 15:53:36 GMT 112s Content-Length: 435 112s 112s { 112s "status": "valid", 112s "identifier": { 112s "type": "dns", 112s "value": "localhost" 112s }, 112s "challenges": [ 112s { 112s "type": "http-01", 112s "url": "https://localhost:14000/chalZ/-DcstMmoT2-0uj8EqeHWz_pl7nifeeKfnXF3Byd2xdM", 112s "token": "HzUC5q5DyxU1knrG-8cSbBiQ2X4Yg0Ot930bZoGAYu8", 112s "status": "valid", 112s "validated": "2026-02-05T15:53:35Z" 112s } 112s ], 112s "expires": "2026-02-05T16:53:35Z" 112s } 112s Storing nonce: -g8G_70c980cg2xht2FQew 112s Calling registered functions 112s Cleaning up challenges 113s CSR: CSR(file=None, data=b'-----BEGIN CERTIFICATE REQUEST-----\nMIHjMIGJAgEAMAAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASPf83zDdbmBm1p\nEX+bKH0s3C0I2a9CjmlgANnmPLmc6IkzmIdLzTRyqOCIX7JCHbJ4S/BN3fL8MHzV\ndTepbt5DoCcwJQYJKoZIhvcNAQkOMRgwFjAUBgNVHREEDTALgglsb2NhbGhvc3Qw\nCgYIKoZIzj0EAwIDSQAwRgIhANF3wRM8XAlqVfqkLCJaaH7jSpZWY8agqhJGtUm0\nBQiVAiEA7l7SlAnjmOjJMF5zvLE4+48N6myUmdYlSEksUP8PF3k=\n-----END CERTIFICATE REQUEST-----\n', form='pem') 113s Will poll for certificate issuance until 2026-02-05 15:55:07.192960 113s JWS payload: 113s b'{\n "csr": "MIHjMIGJAgEAMAAwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAASPf83zDdbmBm1pEX-bKH0s3C0I2a9CjmlgANnmPLmc6IkzmIdLzTRyqOCIX7JCHbJ4S_BN3fL8MHzVdTepbt5DoCcwJQYJKoZIhvcNAQkOMRgwFjAUBgNVHREEDTALgglsb2NhbGhvc3QwCgYIKoZIzj0EAwIDSQAwRgIhANF3wRM8XAlqVfqkLCJaaH7jSpZWY8agqhJGtUm0BQiVAiEA7l7SlAnjmOjJMF5zvLE4-48N6myUmdYlSEksUP8PF3k"\n}' 113s Pebble 2026/02/05 15:53:37 POST /finalize-order/ -> calling handler() 113s Sending POST request to https://localhost:14000/finalize-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY: 113s { 113s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICItZzhHXzcwYzk4MGNnMnhodDJGUWV3IiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9maW5hbGl6ZS1vcmRlci94QkxMbTVLNkRJUFYzY2ZVY0pnTVNyYUJPUFJmTTFseWgwMDNHYUtCX1VZIn0", 113s "signature": "bEKCygZIKuhr9Tfi47sSslSW1mLZuvPg8MlKFUe6cz3qc3ATXBgermKYXSrb8ey5-53b6YxaJ_B2BX4x86UHtHggqsTw7OxMWhEDSZpiG3yR81BiFxXTqLKZBRxkND-1tKDiUF137xA0EDXoz2qt_8__wvsBs3AZSe4CsgPcNlPQ7MqTHRCowhD02Ern0SeT-i6pGsKR65MOuBOzzQ-hCbF5YB8eu7WuZlXU1tirH2wxaEc1r2HXBe0l0FSxIiVFtspVejTmCCO8tHc7dg-F5W5fik-4eEooQAD1EEPsxqtsWB2iIZwvxiftBAFfPZ3ptvTAGzr1oN_6QtN8XzYuDQ", 113s "payload": "ewogICJjc3IiOiAiTUlIak1JR0pBZ0VBTUFBd1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFTUGY4M3pEZGJtQm0xcEVYLWJLSDBzM0MwSTJhOUNqbWxnQU5ubVBMbWM2SWt6bUlkTHpUUnlxT0NJWDdKQ0hiSjRTX0JOM2ZMOE1IelZkVGVwYnQ1RG9DY3dKUVlKS29aSWh2Y05BUWtPTVJnd0ZqQVVCZ05WSFJFRURUQUxnZ2xzYjJOaGJHaHZjM1F3Q2dZSUtvWkl6ajBFQXdJRFNRQXdSZ0loQU5GM3dSTThYQWxxVmZxa0xDSmFhSDdqU3BaV1k4YWdxaEpHdFVtMEJRaVZBaUVBN2w3U2xBbmptT2pKTUY1enZMRTQtNDhONm15VW1kWWxTRWtzVVA4UEYzayIKfQ" 113s } 113s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 113s warnings.warn( 113s Pebble 2026/02/05 15:53:37 Order xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY is fully authorized. Processing finalization 113s https://localhost:14000 "POST /finalize-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY HTTP/1.1" 200 375 113s Received response: 113s HTTP 200 113s Cache-Control: public, max-age=0, no-cache 113s Content-Type: application/json; charset=utf-8 113s Link: ;rel="index" 113s Location: https://localhost:14000/my-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY 113s Replay-Nonce: xoce_MgV4atNpO0VHQQDJw 113s Date: Thu, 05 Feb 2026 15:53:37 GMT 113s Content-Length: 375 113s 113s { 113s "status": "processing", 113s "expires": "2026-02-06T15:53:34Z", 113s "identifiers": [ 113s { 113s "type": "dns", 113s "value": "localhost" 113s } 113s ], 113s "finalize": "https://localhost:14000/finalize-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY", 113s "authorizations": [ 113s "https://localhost:14000/authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc" 113s ] 113s } 113s Storing nonce: xoce_MgV4atNpO0VHQQDJw 113s Pebble 2026/02/05 15:53:37 Issued certificate serial 6a58189bd050f5fd for order xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY 114s JWS payload: 114s b'' 114s Pebble 2026/02/05 15:53:38 POST /my-order/ -> calling handler() 114s Sending POST request to https://localhost:14000/my-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY: 114s { 114s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJ4b2NlX01nVjRhdE5wTzBWSFFRREp3IiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9teS1vcmRlci94QkxMbTVLNkRJUFYzY2ZVY0pnTVNyYUJPUFJmTTFseWgwMDNHYUtCX1VZIn0", 114s "signature": "ZTHDxkom9ZKXp60ZiRlVeu4wbyeZIypYh_LGKAKwTiKCJdKIuJwcU9m-PYG49OMr5vx7A2eu-UJrv-J_ZlubrgMtwk4TfBB3pyg6JfZNAv1HOJqdbLv3psW04-Y3uR65G0OzqRB95IbsvcAH-myG9gC2409q1eFzVhQp5lx4yfcMp-4BzOct_JOb_sAblaJ_avUFIx9U37dcvT5jp3CunuX08NdyuKHZiw8YB9DpuHYFI1EBQNToBpqaQANJBkFo9Gbr08XExH_EnZR2EOm9Yz_yCyLYIWa5Q1hg-_ufgihJIQP0gqmhuihMc8BKe34WlgpPjNzyn0EgR42VdspS9A", 114s "payload": "" 114s } 114s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 114s warnings.warn( 114s https://localhost:14000 "POST /my-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY HTTP/1.1" 200 438 114s Received response: 114s HTTP 200 114s Cache-Control: public, max-age=0, no-cache 114s Content-Type: application/json; charset=utf-8 114s Link: ;rel="index" 114s Replay-Nonce: pO1GsoyXIuR03GIvAye1cw 114s Date: Thu, 05 Feb 2026 15:53:38 GMT 114s Content-Length: 438 114s 114s { 114s "status": "valid", 114s "expires": "2026-02-06T15:53:34Z", 114s "identifiers": [ 114s { 114s "type": "dns", 114s "value": "localhost" 114s } 114s ], 114s "finalize": "https://localhost:14000/finalize-order/xBLLm5K6DIPV3cfUcJgMSraBOPRfM1lyh003GaKB_UY", 114s "authorizations": [ 114s "https://localhost:14000/authZ/4uWTE4aSYGW-piGpcXbT9VsX6UhYHoz33DcoZxTVYbc" 114s ], 114s "certificate": "https://localhost:14000/certZ/6a58189bd050f5fd" 114s } 114s Storing nonce: pO1GsoyXIuR03GIvAye1cw 114s JWS payload: 114s b'' 114s Pebble 2026/02/05 15:53:38 POST /certZ/ -> calling handler() 114s Sending POST request to https://localhost:14000/certZ/6a58189bd050f5fd: 114s { 114s "protected": "eyJhbGciOiAiUlMyNTYiLCAia2lkIjogImh0dHBzOi8vbG9jYWxob3N0OjE0MDAwL215LWFjY291bnQvNDJjN2UxZDFiYTI2ZmViNyIsICJub25jZSI6ICJwTzFHc295WEl1UjAzR0l2QXllMWN3IiwgInVybCI6ICJodHRwczovL2xvY2FsaG9zdDoxNDAwMC9jZXJ0Wi82YTU4MTg5YmQwNTBmNWZkIn0", 114s "signature": "PUEXLai_Yw9CVgGbWMfFQqeCTdO9OjdyF3xnfmqRCZ7nUBAwMSnJvDiqgbbx35NIjn0TVnQdau8ZKn8uLpcf-AzDDTZuxvxH7vzoexWq56E2mT30TDqcnR5Ubp5JJ_-f8ImQjIaECJvwQJYEuUPVXK7jRFoyG5Bbd7RCVd1eG0DM9CPs9onfJibWDTR-skW3fZ92qFZuDGekJvtwiOFf7fbJ5AykTdmCp8wg78-pUggAA2PacdP3JWuY1ICL_4_VCndiETBkyIPUV-cFzacfxtYuG2ipbAvOAqzF9k7i3wb5plwEjytgL_rHXs8kp3soeseYSQIk2Vy3D0TF5kKmNQ", 114s "payload": "" 114s } 114s /usr/lib/python3/dist-packages/urllib3/connectionpool.py:1097: InsecureRequestWarning: Unverified HTTPS request is being made to host 'localhost'. Adding certificate verification is strongly advised. See: https://urllib3.readthedocs.io/en/latest/advanced-usage.html#tls-warnings 114s warnings.warn( 114s https://localhost:14000 "POST /certZ/6a58189bd050f5fd HTTP/1.1" 200 None 114s Received response: 114s HTTP 200 114s Cache-Control: public, max-age=0, no-cache 114s Content-Type: application/pem-certificate-chain; charset=utf-8 114s Link: ;rel="index" 114s Replay-Nonce: c5Nkv-Iv3lRevNuD1Q_04w 114s Date: Thu, 05 Feb 2026 15:53:38 GMT 114s Transfer-Encoding: chunked 114s 114s -----BEGIN CERTIFICATE----- 114s MIICeTCCAWGgAwIBAgIIalgYm9BQ9f0wDQYJKoZIhvcNAQELBQAwKDEmMCQGA1UE 114s AxMdUGViYmxlIEludGVybWVkaWF0ZSBDQSAyMGE5MzMwHhcNMjYwMjA1MTU1MzM3 114s WhcNMzEwMjA1MTU1MzM2WjAAMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEj3/N 114s 8w3W5gZtaRF/myh9LNwtCNmvQo5pYADZ5jy5nOiJM5iHS800cqjgiF+yQh2yeEvw 114s Td3y/DB81XU3qW7eQ6OBmTCBljAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYI 114s KwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFGzNQh+5 114s 0kAnN3CINKRlkljV7LQpMB8GA1UdIwQYMBaAFAypknO0bPm3yuzXYrNZL/CN7KqU 114s MBcGA1UdEQEB/wQNMAuCCWxvY2FsaG9zdDANBgkqhkiG9w0BAQsFAAOCAQEADZcw 114s ytoBO8VjIJJjmnwg2bRvVHmqeE0gyKXL8ebrCnoYL+/jlH3rKDhXYaMV1vvnSlky 114s v1FHIJETLOrQLt1o7OnNae1OH7Uk/d+ze5gARAo1uPj0wIRQpf8akRdEW0BEJBt2 114s S8bZ5T96rSU6JAtCdUaxQh8F98/8GIWNCRT3o/aTrtgqLelqrHbwTam9omLRgCkQ 114s l7uz1kZymJKvyGxLzpAIYzyEqhSAcLzUm/vqJW1JFyKO7gsJDvuXGpWdA1OkGzsZ 114s 4frXYQpgjtbxC088mIxBLccTU9ortzBKq3AOoLKe2AXWidt0arEbMjaN2Y/GmMPG 114s R6ylXk9590RUSEssuQ== 114s -----END CERTIFICATE----- 114s -----BEGIN CERTIFICATE----- 114s MIIDUDCCAjigAwIBAgIIULsAsyNlsU8wDQYJKoZIhvcNAQELBQAwIDEeMBwGA1UE 114s AxMVUGViYmxlIFJvb3QgQ0EgMWU0NmYxMCAXDTI2MDIwNTE1NTMzMloYDzIwNTYw 114s MjA1MTU1MzMyWjAoMSYwJAYDVQQDEx1QZWJibGUgSW50ZXJtZWRpYXRlIENBIDIw 114s YTkzMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALfZoKDArefl8WPu 114s YXaxnR3ux9ldmNvi1BRife+DXOTPPhtlFMaSSSlw16iFRy0h5zeuapid4IGHsGIO 114s SRL12uKhffFa/a3eJjlLvwcPfPLOOxx8okECH7csDnWqBBzQHGpqx5X/Fn7Afind 114s AvEazz5GnRF5MIwX55slDblINJ3y8ZAMmcuwOpcO0ntTzMNRZp5hxgLnNtrsr/mB 114s VrUfboQDY/tGdMNFsaKMDrxQxAcg/wOk7dXWCerlnEyXfFCiLdjZsFJtiU9D4EZO 114s oGONikOSH5UOD47a/zYUO73/jssSrOGa7rLdwV5+DnBOp4mJXD0wjUTQfaTcsVg7 114s sE4x/XcCAwEAAaOBgzCBgDAOBgNVHQ8BAf8EBAMCAoQwHQYDVR0lBBYwFAYIKwYB 114s BQUHAwEGCCsGAQUFBwMCMA8GA1UdEwEB/wQFMAMBAf8wHQYDVR0OBBYEFAypknO0 114s bPm3yuzXYrNZL/CN7KqUMB8GA1UdIwQYMBaAFLYP/KVGsVsRujbS6TKKf9Byn6Hp 114s MA0GCSqGSIb3DQEBCwUAA4IBAQBfL6LdBl6bLpuD5hFR36R8xQk/p+ltsRdlc9NH 114s 9odCzyAsUiVvgk2QZS4YA/kYtsLwdG3/6NUOZTYDHAC6NdbtZTrQ/o21aSVDn6WO 114s cgNJ7HfIo5LizlwBrxWlTh+H8Kg2BAoDgW70zUuV+ZLhGETBXSETvj8DTY8DZOkz 114s 0DItX1MuKBO4KyPswXsnEccKN4264ZBwhh2hBnWbq41J7StASEJ/xy+WhxPIpsCh 114s MmeNFoxH7VtXIevIbE76OGt7rVKroiArDBSnZkImsJBJfnnvkfmfcbUB7h9ZQZ53 114s tYIVeeoBqR0Jc/UeCM9I3imasO6KD06Xptou0q8vweDwqkvP 114s -----END CERTIFICATE----- 114s 114s 114s Successfully received certificate. 114s Certificate is saved at: /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/fullchain.pem 114s Key is saved at: /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/privkey.pem 114s This certificate expires on 2031-02-05. 114s These files will be updated when the certificate renews. 114s Certbot has set up a scheduled task to automatically renew this certificate in the background. 114s 114s Deploying certificate 114s Storing nonce: c5Nkv-Iv3lRevNuD1Q_04w 114s Non-standard path(s), might not work with crontab installed by your operating system package manager 114s Creating directory /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/archive. 114s Creating directory /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live. 114s Writing README to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/README. 114s Creating directory /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/archive/localhost. 114s Creating directory /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost. 114s Writing certificate to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/cert.pem. 114s Writing private key to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/privkey.pem. 114s Writing chain to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/chain.pem. 114s Writing full chain to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/fullchain.pem. 114s Writing README to /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/README. 114s Var account=dd9f1b12cd2193cf913f483c3ce8f73f (set by user). 114s Var config_dir=/tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf (set by user). 114s Var work_dir=/tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/work (set by user). 114s Var logs_dir=/tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/logs (set by user). 114s Var server=https://localhost:14000/dir (set by user). 114s Requested authenticator nginx and installer nginx 114s Requested authenticator nginx and installer nginx 114s Writing new config /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/renewal/localhost.conf. 114s Notifying user: 114s Successfully received certificate. 114s Certificate is saved at: /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/fullchain.pem 114s Key is saved at: /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/privkey.pem 114s This certificate expires on 2031-02-05. 114s These files will be updated when the certificate renews. 114s Certbot has set up a scheduled task to automatically renew this certificate in the background. 114s 114s Notifying user: Deploying certificate 114s Generating RSA key (2048 bits): /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/work/snakeoil/0000_key.pem 115s Successfully deployed certificate for localhost to /etc/nginx/sites-enabled/default 115s Deploying Certificate to VirtualHost /etc/nginx/sites-enabled/default 115s Notifying user: Successfully deployed certificate for localhost to /etc/nginx/sites-enabled/default 115s Creating backup of /etc/nginx/sites-enabled/default 115s Creating backup of /etc/nginx/mime.types 115s Creating backup of /etc/nginx/nginx.conf 115s Writing nginx conf tree to /etc/nginx/sites-enabled/default: 115s ## 115s # You should look at the following URL's in order to grasp a solid understanding 115s # of Nginx configuration files in order to fully unleash the power of Nginx. 115s # https://www.nginx.com/resources/wiki/start/ 115s # https://www.nginx.com/resources/wiki/start/topics/tutorials/config_pitfalls/ 115s # https://wiki.debian.org/Nginx/DirectoryStructure 115s # 115s # In most cases, administrators will remove this file from sites-enabled/ and 115s # leave it as reference inside of sites-available where it will continue to be 115s # updated by the nginx packaging team. 115s # 115s # This file will automatically load configuration files provided by other 115s # applications, such as Drupal or Wordpress. These applications will be made 115s # available underneath a path with that package name, such as /drupal8. 115s # 115s # Please see /usr/share/doc/nginx-doc/examples/ for more detailed examples. 115s ## 115s 115s # Default server configuration 115s # 115s server { 115s listen 80 default_server; 115s listen [::]:80 default_server; 115s 115s # SSL configuration 115s # 115s # listen 443 ssl default_server; 115s # listen [::]:443 ssl default_server; 115s # 115s # Note: You should disable gzip for SSL traffic. 115s # See: https://bugs.debian.org/773332 115s # 115s # Read up on ssl_ciphers to ensure a secure configuration. 115s # See: https://bugs.debian.org/765782 115s # 115s # Self signed certs generated by the ssl-cert package 115s # Don't use them in a production server! 115s # 115s # include snippets/snakeoil.conf; 115s 115s root /var/www/html; 115s 115s # Add index.php to the list if you are using PHP 115s index index.html index.htm index.nginx-debian.html; 115s 115s server_name _; 115s 115s location / { 115s # First attempt to serve request as file, then 115s # as directory, then fall back to displaying a 404. 115s try_files $uri $uri/ =404; 115s } 115s 115s # pass PHP scripts to FastCGI server 115s # 115s #location ~ \.php$ { 115s # include snippets/fastcgi-php.conf; 115s # 115s # # With php-fpm (or other unix sockets): 115s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 115s # # With php-cgi (or other tcp sockets): 115s # fastcgi_pass 127.0.0.1:9000; 115s #} 115s 115s # deny access to .htaccess files, if Apache's document root 115s # concurs with nginx's one 115s # 115s #location ~ /\.ht { 115s # deny all; 115s #} 115s } 115s 115s 115s # Virtual Host configuration for example.com 115s # 115s # You can move that to a different file under sites-available/ and symlink that 115s # to sites-enabled/ to enable it. 115s # 115s #server { 115s # listen 80; 115s # listen [::]:80; 115s # 115s # server_name example.com; 115s # 115s # root /var/www/example.com; 115s # index index.html; 115s # 115s # location / { 115s # try_files $uri $uri/ =404; 115s # } 115s #} 115s 115s server { 115s listen 80 ; 115s listen [::]:80 ; 115s 115s # SSL configuration 115s # 115s # listen 443 ssl default_server; 115s # listen [::]:443 ssl default_server; 115s # 115s # Note: You should disable gzip for SSL traffic. 115s # See: https://bugs.debian.org/773332 115s # 115s # Read up on ssl_ciphers to ensure a secure configuration. 115s # See: https://bugs.debian.org/765782 115s # 115s # Self signed certs generated by the ssl-cert package 115s # Don't use them in a production server! 115s # 115s # include snippets/snakeoil.conf; 115s 115s root /var/www/html; 115s 115s # Add index.php to the list if you are using PHP 115s index index.html index.htm index.nginx-debian.html; 115s server_name localhost; # managed by Certbot 115s 115s 115s location / { 115s # First attempt to serve request as file, then 115s # as directory, then fall back to displaying a 404. 115s try_files $uri $uri/ =404; 115s } 115s 115s # pass PHP scripts to FastCGI server 115s # 115s #location ~ \.php$ { 115s # include snippets/fastcgi-php.conf; 115s # 115s # # With php-fpm (or other unix sockets): 115s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 115s # # With php-cgi (or other tcp sockets): 115s # fastcgi_pass 127.0.0.1:9000; 115s #} 115s 115s # deny access to .htaccess files, if Apache's document root 115s # concurs with nginx's one 115s # 115s #location ~ /\.ht { 115s # deny all; 115s #} 115s 115s 115s listen [::]:443 ssl ipv6only=on; # managed by Certbot 115s listen 443 ssl; # managed by Certbot 115s ssl_certificate /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/fullchain.pem; # managed by Certbot 115s ssl_certificate_key /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/privkey.pem; # managed by Certbot 115s include /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/options-ssl-nginx.conf; # managed by Certbot 115s ssl_dhparam /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/ssl-dhparams.pem; # managed by Certbot 115s 115s } 115s Writing nginx conf tree to /etc/nginx/sites-enabled/default: 115s ## 115s # You should look at the following URL's in order to grasp a solid understanding 115s # of Nginx configuration files in order to fully unleash the power of Nginx. 115s # https://www.nginx.com/resources/wiki/start/ 115s # https://www.nginx.com/resources/wiki/start/topics/tutorials/config_pitfalls/ 115s # https://wiki.debian.org/Nginx/DirectoryStructure 115s # 115s # In most cases, administrators will remove this file from sites-enabled/ and 115s # leave it as reference inside of sites-available where it will continue to be 115s # updated by the nginx packaging team. 115s # 115s # This file will automatically load configuration files provided by other 115s # applications, such as Drupal or Wordpress. These applications will be made 115s # available underneath a path with that package name, such as /drupal8. 115s # 115s # Please see /usr/share/doc/nginx-doc/examples/ for more detailed examples. 115s ## 115s 115s # Default server configuration 115s # 115s server { 115s listen 80 default_server; 115s listen [::]:80 default_server; 115s 115s # SSL configuration 115s # 115s # listen 443 ssl default_server; 115s # listen [::]:443 ssl default_server; 115s # 115s # Note: You should disable gzip for SSL traffic. 115s # See: https://bugs.debian.org/773332 115s # 115s # Read up on ssl_ciphers to ensure a secure configuration. 115s # See: https://bugs.debian.org/765782 115s # 115s # Self signed certs generated by the ssl-cert package 115s # Don't use them in a production server! 115s # 115s # include snippets/snakeoil.conf; 115s 115s root /var/www/html; 115s 115s # Add index.php to the list if you are using PHP 115s index index.html index.htm index.nginx-debian.html; 115s 115s server_name _; 115s 115s location / { 115s # First attempt to serve request as file, then 115s # as directory, then fall back to displaying a 404. 115s try_files $uri $uri/ =404; 115s } 115s 115s # pass PHP scripts to FastCGI server 115s # 115s #location ~ \.php$ { 115s # include snippets/fastcgi-php.conf; 115s # 115s # # With php-fpm (or other unix sockets): 115s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 115s # # With php-cgi (or other tcp sockets): 115s # fastcgi_pass 127.0.0.1:9000; 115s #} 115s 115s # deny access to .htaccess files, if Apache's document root 115s # concurs with nginx's one 115s # 115s #location ~ /\.ht { 115s # deny all; 115s #} 115s } 115s 115s 115s # Virtual Host configuration for example.com 115s # 115s # You can move that to a different file under sites-available/ and symlink that 115s # to sites-enabled/ to enable it. 115s # 115s #server { 115s # listen 80; 115s # listen [::]:80; 115s # 115s # server_name example.com; 115s # 115s # root /var/www/example.com; 115s # index index.html; 115s # 115s # location / { 115s # try_files $uri $uri/ =404; 115s # } 115s #} 115s 115s server { 115s listen 80 ; 115s listen [::]:80 ; 115s 115s # SSL configuration 115s # 115s # listen 443 ssl default_server; 115s # listen [::]:443 ssl default_server; 115s # 115s # Note: You should disable gzip for SSL traffic. 115s # See: https://bugs.debian.org/773332 115s # 115s # Read up on ssl_ciphers to ensure a secure configuration. 115s # See: https://bugs.debian.org/765782 115s # 115s # Self signed certs generated by the ssl-cert package 115s # Don't use them in a production server! 115s # 115s # include snippets/snakeoil.conf; 115s 115s root /var/www/html; 115s 115s # Add index.php to the list if you are using PHP 115s index index.html index.htm index.nginx-debian.html; 115s server_name localhost; # managed by Certbot 115s 115s 115s location / { 115s # First attempt to serve request as file, then 115s # as directory, then fall back to displaying a 404. 115s try_files $uri $uri/ =404; 115s } 115s 115s # pass PHP scripts to FastCGI server 115s # 115s #location ~ \.php$ { 115s # include snippets/fastcgi-php.conf; 115s # 115s # # With php-fpm (or other unix sockets): 115s # fastcgi_pass unix:/run/php/php7.4-fpm.sock; 115s # # With php-cgi (or other tcp sockets): 115s # fastcgi_pass 127.0.0.1:9000; 115s #} 115s 115s # deny access to .htaccess files, if Apache's document root 115s # concurs with nginx's one 115s # 115s #location ~ /\.ht { 115s # deny all; 115s #} 115s 115s 115s listen [::]:443 ssl ipv6only=on; # managed by Certbot 115s listen 443 ssl; # managed by Certbot 115s ssl_certificate /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/fullchain.pem; # managed by Certbot 115s ssl_certificate_key /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/privkey.pem; # managed by Certbot 115s include /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/options-ssl-nginx.conf; # managed by Certbot 115s ssl_dhparam /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/ssl-dhparams.pem; # managed by Certbot 115s 115s } 116s Congratulations! You have successfully enabled HTTPS on https://localhost 116s 116s - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - 116s If you like Certbot, please consider supporting our work by: 116s * Donating to ISRG / Let's Encrypt: https://letsencrypt.org/donate 116s * Donating to EFF: https://eff.org/donate-le 116s - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - 116s Notifying user: Congratulations! You have successfully enabled HTTPS on https://localhost 116s Notifying user: If you like Certbot, please consider supporting our work by: 116s * Donating to ISRG / Let's Encrypt: https://letsencrypt.org/donate 116s * Donating to EFF: https://eff.org/donate-le 116s * Uses proxy env variable no_proxy == '127.0.0.1,127.0.1.1,localhost,localdomain' 116s * Host localhost:443 was resolved. 116s * IPv6: ::1 116s * IPv4: 127.0.0.1 116s % Tot 116s 116s 116s Welcome to nginx! 116s 116s 116s 116s

Welcome to nginx!

116s

If you see this page, the nginx web server is successfully installed and 116s working. Further configuration is required.

116s 116s

For online documentation and support please refer to 116s nginx.org.
116s Commercial support is available at 116s nginx.com.

116s 116s

Thank you for using nginx.

116s 116s 116s al % Received % Xferd Average Speed Time Time Time Current 116s Dload Upload Total Spent Left Speed 116s 0 0 0 0 0 0 0 0 0* Trying [::1]:443... 116s * ALPN: curl offers h2,http/1.1 116s } [5 bytes data] 116s * TLSv1.3 (OUT), TLS handshake, Client hello (1): 116s } [1564 bytes data] 116s * SSL Trust Anchors: 116s * CAfile: /tmp/autopkgtest.mA8tqz/autopkgtest_tmp/certbot/nginx/conf/live/localhost/chain.pem 116s * CApath: /etc/ssl/certs 116s { [5 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Server hello (2): 116s { [1210 bytes data] 116s * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): 116s { [1 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): 116s { [25 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Certificate (11): 116s { [1507 bytes data] 116s * TLSv1.3 (IN), TLS handshake, CERT verify (15): 116s { [79 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Finished (20): 116s { [52 bytes data] 116s * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): 116s } [1 bytes data] 116s * TLSv1.3 (OUT), TLS handshake, Finished (20): 116s } [52 bytes data] 116s * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey 116s * ALPN: server accepted http/1.1 116s * Server certificate: 116s * subject: 116s * start date: Feb 5 15:53:37 2026 GMT 116s * expire date: Feb 5 15:53:36 2031 GMT 116s * issuer: CN=Pebble Intermediate CA 20a933 116s * Certificate level 0: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using sha256WithRSAEncryption 116s * Certificate level 1: Public key type RSA (2048/112 Bits/secBits), signed using sha256WithRSAEncryption 116s * subjectAltName: "localhost" matches cert's "localhost" 116s * SSL certificate verified via OpenSSL. 116s * Established connection to localhost (::1 port 443) from ::1 port 59830 116s * using HTTP/1.x 116s } [5 bytes data] 116s > GET / HTTP/1.1 116s > Host: localhost 116s > User-Agent: curl/8.18.0 116s > Accept: */* 116s > 116s * Request completely sent off 116s { [5 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): 116s { [57 bytes data] 116s * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): 116s { [57 bytes data] 116s < HTTP/1.1 200 OK 116s < Server: nginx/1.28.1 (Ubuntu) 116s < Date: Thu, 05 Feb 2026 15:53:39 GMT 116s < Content-Type: text/html 116s < Content-Length: 615 116s < Last-Modified: Thu, 05 Feb 2026 15:53:14 GMT 116s < Connection: keep-alive 116s < ETag: "6984bcea-267" 116s < Accept-Ranges: bytes 116s < 116s { [615 bytes data] 116s 100 615 100 615 0 0 67147 0 0 100 615 100 615 0 0 66920 0 0 100 615 100 615 0 0 66702 0 0 116s * Connection #0 to host localhost:443 left intact 116s autopkgtest [15:53:39]: test nginx: -----------------------] 117s autopkgtest [15:53:40]: test nginx: - - - - - - - - - - results - - - - - - - - - - 117s nginx PASS 119s autopkgtest [15:53:42]: @@@@@@@@@@@@@@@@@@@@ summary 119s command1 PASS 119s nginx PASS