Skip to main content

The SSL certificate is not issued even after setting the DNS record for domain ownership verification

If you have set the DNS record shown under "Domain ownership verification" in [KurocoFront] -> [Custom domain/TLS certificate] but the status remains "Verifying" and the SSL certificate is not issued, please check the following.

Wait for the DNS record to propagate

It may take some time for the DNS record to propagate and for the status to be updated.
Please wait about 24 hours after setting the DNS record, then click the "Reload" button on the [Custom domain/TLS certificate] screen to check the status.

Check whether a CAA record is configured

A CAA record is a DNS record that specifies which certificate authorities (CAs) are allowed to issue certificates for the domain.
Kuroco's TLS certificates are issued by Let's Encrypt, so if a CAA record is configured for the target domain and does not include Let's Encrypt, the certificate cannot be issued.
Check whether a CAA record is configured for the target domain, and if so, allow certificate issuance by Let's Encrypt.

note

If no CAA record is configured, there is no need to add one.

Check whether the domain is already in use with Fastly

If the target domain is already in use with Fastly, verification may not complete even after setting the DNS record for "Domain ownership verification".
In this case, verification via a TXT record is required, so please contact support through our Inquiry Form.


Support

If you have any other questions, please contact us or check out Our Slack Community.