Pages custom domain certificate permanently stuck at authorization_created #209602
Replies: 2 comments
|
💬 Your Product Feedback Has Been Submitted 🎉 Thank you for taking the time to share your insights with us! Your feedback is invaluable as we build a better GitHub experience for all our users. Here's what you can expect moving forward ⏩
Where to look to see what's shipping 👀
What you can do in the meantime 💻
As a member of the GitHub community, your participation is essential. While we can't promise that every suggestion will be implemented, we want to emphasize that your feedback is instrumental in guiding our decisions and priorities. Thank you once again for your contribution to making GitHub even better! We're grateful for your ongoing support and collaboration in shaping the future of our platform. ⭐ |
|
This looks like a GitHub Pages-side ACME provisioning issue rather than a DNS problem. Since domain verification, DNS propagation, HTTP reachability, and two separate authorization attempts all check out, the persistent authorization_created state suggests the certificate provisioning job may be stuck. GitHub staff may need to re-trigger or reset the certificate issuance process. |
Uh oh!
There was an error while loading. Please reload this page.
🏷️ Discussion Type
Bug
Body
Repository / site
SigetarWorld/eve-pi-plannersigetar.rumain, path/The site is live and healthy over HTTP the entire time. There has been no outage.
Domain verification is fine
Domain verification succeeded. The
_github-pages-challenge-SigetarWorldTXT record is present and publicly resolvable from multiple resolvers, and GitHub reportsprotected_domain_state: verified.The problem
The Pages configuration is stuck:
Enabling HTTPS returns:
The state never advances.
Authorization createdis the first of the three ACME steps, and after five days across two separate attempts it is still there.Two independent authorizations, same result
CNAMEfile, waited for GitHub to release the domain, ~20s) and reattached it, which produced a fresh authorization. That one is also stuck atauthorization_created, now for ~4 days.A fresh Pages build (
POST /pages/builds) made no difference in either case.No certificate exists anywhere
No certificate for
sigetar.ruappears in public Certificate Transparency logs. Both crt.sh and Cert Spotter return zero issuances for the domain and all subdomains, so no CA has issued anything.Everything on the DNS side checks out
2026093008is identical on all five authoritative nameservers (ns3-l2, ns4-l2, ns8-l2, ns4-cloud, ns8-cloud), so the zone is fully propagated.Server: GitHub.com), so an HTTP-01 challenge is reachable._acme-challengeTXT record exists, consistent with HTTP-01 validation.Question
Is there something on the GitHub side that would keep the ACME authorization in
authorization_createdindefinitely? And is there a way to have the provisioning job re-triggered, short of detaching and reattaching the domain?Thanks in advance.
All reactions