diff --git a/certbot_dns_yeil/dns_yeil.py b/certbot_dns_yeil/dns_yeil.py index 6712038..116eae0 100644 --- a/certbot_dns_yeil/dns_yeil.py +++ b/certbot_dns_yeil/dns_yeil.py @@ -39,8 +39,13 @@ class Authenticator(dns_common.DNSAuthenticator): @classmethod def add_parser_arguments(cls, add): + # yeil serves DNS from edge replicas fed by a replication log, so a + # freshly-written TXT takes a little time to appear on every + # authoritative nameserver. 20s was too tight and tripped Let's + # Encrypt's secondary (multi-perspective) validation against a + # not-yet-converged replica; 60s gives all replicas time to catch up. super(Authenticator, cls).add_parser_arguments( - add, default_propagation_seconds=20 + add, default_propagation_seconds=60 ) add("credentials", help="Path to your yeil credentials INI file.") diff --git a/setup.py b/setup.py index f14ff8f..7931cf3 100644 --- a/setup.py +++ b/setup.py @@ -2,7 +2,7 @@ from setuptools import setup, find_packages setup( name="certbot-dns-yeil", - version="3.0.0", + version="3.0.1", description="yeil DNS Authenticator plugin for Certbot", url="https://git.eskimo.dev/Yeil/certbot-dns-yeil", author="yeil",