Cloudflare default certificate expiring, cannot activate new certificate

Related to

I don’t know / other

What is the error message?

Configuration not found

What is the issue you’re encountering

I received the message in zero trust dashboard that my cloudflare default certificate will expire. However renewing this gives the error configuration not found.

What steps have you taken to resolve the issue?

Created a new certificate, Activated it and then tried to “Confirm and turn on certificate” however getting the error “Configuration not found”.

What are the steps to reproduce the issue?

Go to the new certificate and “Confirm and turn on certificate”.

Screenshot of the error

3 Likes

Some additional information.
The notification I get is on the Cloudflare One dashboard (https://one.dash.cloudflare.com/)
Can’t post the screenshot as new user but exact message is:
" Your Cloudflare default certificate will expire Feb. 2, 2025. Update now to prevent interruptions to traffic inspection and proxy controls. Manage certificates"

Location when I try to renew is in Cloudflare One → Settings → Resources → “Manage Cloudflare Certificates” (Cloudflare One)

Honestly not sure where these specific certificates are being used for.
Not using WARP. Only Tunnels, Application protection and DNS from Cloudflare One.

2 Likes

I am having this same issue. Any help would be greatly appreciated. I tried generating new certs, but cannot find documentation on how to change the “In Use” certificates.

1 Like

Related to

WARP

What is the error message?

configuration not found

What is the issue you’re encountering

Can’t change expiring ZT mTLS certificate to new one

What steps have you taken to resolve the issue?

My Zero Trust account was provisioned back in early 2020 with a Cloudflare default certificate that lasted 5 years. I’m attempting to follow the instructions here: User-side certificates | Cloudflare Zero Trust docs

I’ve generated a few year CF certificates with varying lengths of expiration, and attempted to swap them as the “in-use” certificate.

What are the steps to reproduce the issue?

  1. Upon logging into Cloudflare Zero Trust, click on the orange banner at the top of the screen that says “Your Cloudflare default certificate will expire Feb. 2, 2025. Update now to prevent interruptions to traffic inspection and proxy controls. Manage certificates”
  2. Click on Generate Certificate, leave expiration set to 5 years (default)
  3. Activate certificate and click on “Turn on certificate”

Screenshot of the error

1 Like

bumping

Did you clicked “3 dots” on the right on the list of the Certificates for the newely created and activated the new one? :thinking:


Yup.

The default one is in-use, can you try activating some other then?
Does it produce the same error?

Have you tried using some other Web browser or Incognito Mode?

Any users and devices already enrollled? Shouldn’t take impact to show such error, at least didn’t for me.

Thanks for your help so far. I’ve tried to include a GIF recording, showing me trying to deactivate in-use cert and activating other ones. Also uploaded to a public-sharing site.
CleanShot 2024-11-02 at 18.10.57

Can only provide one attachment per post

Screenshot of Device Page

Thank you for feedback and GIF video.

The one “Issued by Test123”, may I ask was that particular Certificate uploaded by you or? :thinking:

Others are showing the same error?

Screenshot of Users Page

A bit odd behaviour of having such error :thinking:

Yes, I created a test certificate authority and uploaded. Was thinking maybe the CF provided ones were not being created successfully

May I ask, did you tried following the steps as:

  1. Deactivating the current active and in-use one which would expire soon
  2. Activating the newly generated one

Seems there cannot be two at the same time with the “in-use” status and the action to confirm and turn-on the 2nd certificate seems to not have the “deactivate current in-use one” in the process, therefrom we have to manually do it, despite it’s written it would turn-off the “in-use” one :thinking:

Correct, I can’t deactivate the currently active and in-use one.
CleanShot 2024-11-02 at 18.25.04

Thank you for sharing feedback information.
Ou wow, well that’s strange :thinking:
Wonder to what of the Settings of ZT is related, if so.

1 Like

Strange indeed. Thanks for your help so far.

1 Like

I will merge your topic with the existing one where other reported the same behaviour:

Please, do help me here by creating an ticket here https://dash.cloudflare.com/?to=/:account/support , therefrom share your ticket number with us so we could escalate your case to the team. Thank you in advance.

Just adding last GIF before creating ticket. This one shows the browser message received from Cloudflare servers. Shows an HTTP 400 error when attempting to activate new certificate.
CleanShot 2024-11-02 at 18.40.39