[SOLVED] Stale DNS records (it's always DNS)
I’ve been tearing my hair out trying to figure out why my ACME-DNS challenges weren’t working for just one of my domains (well, *.riff.cc)
Turns out
There are two “ghost” TXT records that are still being served even though they were deleted a long time ago.
If I add a new record to Cloudflare under that name:
It shows up. If I remove that record, it goes back to the “ghost two”.
How the heck do I get rid of the bad records?
5 Replies
On SSL/TLS > Edge certificates, there are no pending certificates, they're all active?
_acme-challenge is used by Cloudflare to issue edge certificates but typically we would clean up the records after issuance is complete
These records had been there for at least 12 hours
There's an Active certificate that expires on 2024-05-15
I disabled Universal SSL to "fix" it which works, but as soon as I re-enable it new records appear that do not go away (even after 5-10 minutes)
Waited 5 minutes and that Active certificate is completely gone now... going to wait the full 10 and re-enable Universal
Oh thank god. Turned everything back on and the ghost records are still gone.
Phew
That must have kicked the process to clean them up
Thanks for the help! 🙂
hey, I have the same issue as this. Is anyone with an answer?