Type,Description,Reference accountDoesNotExist,The request specified an account that does not exist,[RFC8555] alreadyRevoked,The request specified a certificate to be revoked that has already been revoked,[RFC8555] badCSR,"The CSR is unacceptable (e.g., due to a short key)",[RFC8555] badNonce,The client sent an unacceptable anti-replay nonce,[RFC8555] badPublicKey,The JWS was signed by a public key the server does not support,[RFC8555] badRevocationReason,The revocation reason provided is not allowed by the server,[RFC8555] badSignatureAlgorithm,The JWS was signed with an algorithm the server does not support,[RFC8555] caa,Certification Authority Authorization (CAA) records forbid the CA from issuing a certificate,[RFC8555] compound,"Specific error conditions are indicated in the ""subproblems"" array",[RFC8555] connection,The server could not connect to validation target,[RFC8555] dns,There was a problem with a DNS query during identifier validation,[RFC8555] externalAccountRequired,"The request must include a value for the ""externalAccountBinding"" field",[RFC8555] incorrectResponse,Response received didn't match the challenge's requirements,[RFC8555] invalidContact,A contact URL for an account was invalid,[RFC8555] malformed,The request message was malformed,[RFC8555] orderNotReady,The request attempted to finalize an order that is not ready to be finalized,[RFC8555] rateLimited,The request exceeds a rate limit,[RFC8555] rejectedIdentifier,The server will not issue certificates for the identifier,[RFC8555] serverInternal,The server experienced an internal error,[RFC8555] tls,The server received a TLS error during validation,[RFC8555] unauthorized,The client lacks sufficient authorization,[RFC8555] unsupportedContact,A contact URL for an account used an unsupported protocol scheme,[RFC8555] unsupportedIdentifier,An identifier is of an unsupported type,[RFC8555] userActionRequired,"Visit the ""instance"" URL and take actions specified there",[RFC8555] autoRenewalCanceled,The short-term certificate is no longer available because the auto-renewal Order has been explicitly canceled by the IdO,[RFC8739] autoRenewalExpired,The short-term certificate is no longer available because the auto-renewal Order has expired,[RFC8739] autoRenewalCancellationInvalid,"A request to cancel an auto-renewal Order that is not in state ""valid"" has been received",[RFC8739] autoRenewalRevocationNotSupported,A request to revoke an auto-renewal Order has been received,[RFC8739] unknownDelegation,An unknown configuration is listed in the delegation attribute of the order request,[RFC9115] onionCAARequired,"The CA only supports checking the CAA for Hidden Services in-band, but the client has not provided an in-band CAA",[RFC9799] alreadyReplaced,"The request specified a predecessor certificate that has already been marked as replaced",[RFC9773]