Wildcard SSL renewal failing NXDOMAIN — please issue standard cert for northforty.co.uk"

Hi Netlify team,

My TLS certificate renewal is failing for www.northforty.co.uk and the current cert expired Jul 31, so this is time sensitive.

The certificate currently covers a wildcard (*.northforty.co.uk) plus the apex. My DNS is managed externally by 123reg, not Netlify DNS, so the DNS-01 challenge for the wildcard can’t be created and validation fails.

Error from the renewal email:

SniCertificate::CertificateValidationError: Unable to verify challenge for *.northforty.co.uk: DNS problem: NXDOMAIN looking up TXT for _acme-challenge.northforty.co.uk - check that a DNS record exists for this domain

I do NOT need the wildcard. Could you please remove the *.northforty.co.uk wildcard and reissue a standard Let’s Encrypt certificate covering only:

www.northforty.co.uk

northforty.co.uk

Domain: northforty.co.uk

The exact error message

That DNS is external (123-reg), not Netlify DNS

Request: remove wildcard SAN, reissue standard cert for apex + www

Thanks

G

Update: I’ve since confirmed via Site settings → Domain management that DNS is actually already on Netlify DNS(green “Netlify DNS” checkmark on both www.northforty.co.uk and northforty.co.uk) — not external at 123-reg as I originally wrote. Apologies for the inaccurate detail in my first post; 123-reg is just my registrar, DNS itself is delegated to you.

I also tried removing and re-adding the custom domain to force a fresh, non-wildcard certificate request. That didn’t clear it — the HTTPS panel still shows the certificate scoped to *.northforty.co.uk, ``northforty.co.uk, and I’m now getting a new error on top of the original one:

SSL Provisioning is temporarily disabled because too many recent CertOrder creation with the site.

So this looks like a stuck wildcard certificate record on the account side, not a DNS configuration problem on mine — DNS is correctly on Netlify DNS, and there’s no wildcard alias anywhere in my domain settings.

Could someone from the team please:

  1. Clear the stuck wildcard CertOrder for northforty.co.uk, and
  2. Reissue a standard (non-wildcard) Let’s Encrypt certificate covering just www.northforty.co.uk and northforty.co.uk?

This domain has had no valid HTTPS certificate for a month now (expired Jul 31), so I’d really appreciate this getting actioned soon.