Hi Cloonan, first of all thanks for your response.
According to your link, i think the’res only two points that can help me.
Should you need a certificate which covers multi-level sub-domains, you can purchase a Dedicated SSL Certificate with Custom Hostnames, where you can declare any multi-level subdomains during purchase.
Wait 24-hours, it may just be a timing issue that will resolve itself. After you wait 24-hours, try it again.
So, i make the entire process again, and i will wait 24-hours for check the site, when i make the processs, now the site looks like this and i’m getting a different error this time “ERR_SSL_VERSION_OR_CIPHER_MISMATCH”:
An additional question, if I make the change, I buy this service, then can I download the .PEM or .PCKS12 files as I did before to add them in Azure or is this not allowed?
You can download “origin certificates” that are only trusted by Cloudflare and thus are only good when the DNS record is set to proxied. If you want to download the actual browser-trusted certificate private key, this is not possible on CF, even with ACM.
For the specific escenario that i test, the plan of 10USD allows me to generate a PEM or PCKS12 downloadeable for the “tree.two.example.com” domain to use it on the Azure APIM Service? bcs otherwise this alternative don’t solves my problem.