
Nginx Reverse proxy acme challenge 404 error

I have a vhost which seems to work fine except when trying to generate SSL keep getting errors. Can some one help me to spot what is going wrong please? Thanks Domain could not be validated, error message: error type: urn:ietf:params:acme:error:unauthorized, error detail: Invalid response from 404

nginx vhost config:

upstream domain-default {
  zone domain-default 64k;
  keepalive 2;

upstream domain-ws {
  zone domain-ws 64k;
  keepalive 2;

# Redirect HTTP to HTTPS
server {
    listen 80;
    listen [::]:80;
   return 301 https://$host$request_uri;
location ~ /.well-known {
    allow all;


server {
    listen 443 ssl http2;
    listen [::]:443 ssl http2;

    if ($scheme != "https") {
    rewrite ^ https://$host$uri permanent;
    client_max_body_size 128M;

    location / {
  proxy_http_version 1.1;
  proxy_set_header "Connection" "";
  proxy_set_header Host $host;
  proxy_set_header X-Real-IP $remote_addr;
  proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  proxy_set_header X-Forwarded-Proto $scheme;
  proxy_pass http://domain-default;

    location /notifications/hub/negotiate {
  proxy_http_version 1.1;
  proxy_set_header "Connection" "";
  proxy_set_header Host $host;
  proxy_set_header X-Real-IP $remote_addr;
  proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  proxy_set_header X-Forwarded-Proto $scheme;
  proxy_pass http://domain-default;

    location /notifications/hub {
  proxy_http_version 1.1;
  proxy_set_header Upgrade $http_upgrade;
  proxy_set_header Connection "upgrade";
  proxy_set_header Host $host;
  proxy_set_header X-Real-IP $remote_addr;
  proxy_set_header Forwarded $remote_addr;
  proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  proxy_set_header X-Forwarded-Proto $scheme;
  proxy_pass http://domain-ws;

    location ~ /.well-known {
    allow all;

The Error itself Says Domain cannot be verified, you have to replace with your domain. Don't forget to Point the IP address of the server to the domain name, it will be done.

Thanks for your reply, but the domain in actual config is correct as well as DNS pointing to the correct IP.
