WP Engine SSL Cert Renewal Blocked as Definite Bot

Hello, my host, wp engine, is having trouble renewing my SSL cert because their bot for checking the site before passing the request to let's encrypt is getting blocked. See the 403 response codes there. I don't think it's being blocked by the firewall. I think it's being blocked by "Security -> Bots" I see it in security/WAF logs, being logged as a "definite bot" despite my rule to turn off apps for this user agent. I have a rule to disable apps for their user agent, but it does not seem to be helping. Any suggestions?
No description
No description
No description
No description
8 Replies
Laudian
Laudian2mo ago
Do you actually have a WAF rule to allow that request? I only see a configuration rule in your screenshots.
who wants to vex mutumboooo
okay, let me check.
who wants to vex mutumboooo
yes, I have this rule in my WAF rules:
No description
Laudian
Laudian2mo ago
Please create a WAF custom rule. Your exception is under managed rules, and I don't think that would work.
who wants to vex mutumboooo
Okay, I created this custom rule. I try to renew the cert again.
No description
who wants to vex mutumboooo
Wow, I see my cert has renewed. I guess that fixed it! Do you know of a handy way to deploy this to all domains in an account? I have hundreds.
Laudian
Laudian2mo ago
Use the API.

Did you find this page helpful?