Skip to content

dnscrypt.info certs expired #2949

Description

@aidangilmore

THE TRACKER IS DEDICATED TO KEEPING TRACK OF BUGS,
preferably after they have been already discussed and confirmed to be reproducible.

FOR ASSISTANCE, PLEASE CLOSE THIS FORM AND USE THE DISCUSSIONS SECTION INSTEAD:
https://github.com/DNSCrypt/dnscrypt-proxy/discussions/categories/q-a


Reported bugs must reproducible in the context described in the "Context" section.

Installation and configuration issues are not bugs, but individual assistance request.

Context: the LATEST version of `dnscrypt-proxy` (precompiled binaries downloaded from this repository) is correctly installed and configured on your system, but something doesn't seem to produce the expected result.

If the bug is not trivial to reproduce on any platform, please include ALL the steps required to reliably duplicate it, on a vanilla, generic install of macOS, Windows, OpenBSD or Ubuntu Linux system, in their most current version.

If you don't have any clear understanding of the issue or can't enumerate the steps to reproduce it, open a discussion instead:
https://github.com/DNSCrypt/dnscrypt-proxy/discussions


## Output of the following commands:

./dnscrypt-proxy -version
N/A
./dnscrypt-proxy -check
N/A
./dnscrypt-proxy -resolve example.com
N/A

- [ ] Initially raised as discussion #...



## *What* is affected by this bug?
https://dnscrypt.info/


## *When* does this occur?
When visiting after 2025-09-04


## *Where* does it happen?
Any user agent that validates TLS certificats


## *How* do we replicate the issue?
<!-- Please list all the steps required to reliably replicate it, starting from a newly installed operating system -->
Run `curl https://dnscrypt.info/` or visit [https://dnscrypt.info/](https://dnscrypt.info/) in any web browser


## Expected behavior (i.e. solution)
Site to load with valid cert


## Other Comments

Activity

  1. jedisct1 commented on Sep 7, 2025

    @jedisct1
    Member

    Oops! And it happened while I was sleeping. Damn.

    It’s fixed now, thanks!

    download.dnscrypt.info was recently moved to @BunnyWay, which is now handling TLS termination for that specific hostname. That ended up breaking the certificate renewal scripts for other hostnames.

    Thanks again!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions