Custom domain TLS certificate fails to issue
leenduhaini
FREEOP

23 days ago

I purchased the domain koursekit.com through Railway and linked it to my frontend service (target port 3000). Railway repeatedly fails to issue a TLS certificate for the custom domain.

Steps that occurred:

  1. Added koursekit.com as a custom domain in Railway
  2. Railway began the cert provisioning process: "Generating private key" → "Setting up challenge responses" → "Certificate Authority is validating challenges" → "Fetching issued certificate"
  3. Each attempt ends with: "Failed to issue TLS certificate"
  4. After several retries, now hitting: "Let's Encrypt rate limit reached. Please wait before retrying. This error cannot be automatically retried."

Error messages seen:

  • Failed to issue TLS certificate
  • Let's Encrypt rate limit reached. Please wait before retrying.
  • Browser: net::ERR_CERT_COMMON_NAME_INVALID

Notes:

  • DNS is resolving correctly — koursekit.com CNAMEs to 6njprd86.up.railway.app151.101.2.15
  • No CAA records blocking Let's Encrypt
  • The domain was purchased through Railway itself

GitHub repo:https://github.com/Amr-El-Masri/KourseKit

Solved$10 Bounty

Pinned Solution

Unfortunately you'd need to wait until next week for the limit to reset. This may have been a result of Railway attempting to issue certificates during Fastly's incident yesterday.

There isn't anything Railway can do about the rate limit.

1 Replies

Status changed to Open Railway 23 days ago


Unfortunately you'd need to wait until next week for the limit to reset. This may have been a result of Railway attempting to issue certificates during Fastly's incident yesterday.

There isn't anything Railway can do about the rate limit.


Status changed to Solved 0x5b62656e5d 9 days ago


Welcome!

Sign in to your Railway account to join the conversation.

Loading...