Community Tip - Fixing Error 525: SSL handshake failed

Try the suggestions in this Community Tip to help you fix Error 525: SSL handshake failed.

Error 525 indicates that the SSL handshake between Cloudflare and the origin web server failed. This only occurs when the domain is using Cloudflare Full or Full (Strict) SSL mode. This is typically caused by a configuration issue in the origin web server, when this happens, you’ll see “Error 525: SSL handshake failed”.

Quick Fix Ideas

  1. If you are a site visitor, report the problem to the site owner. Neither this Community nor Cloudflare Support can assist you. Cloudflare Support only works with the verified owner of the domain.

  2. Make sure you have a valid SSL certificate installed on your origin server.

  3. Check with your hosting provider to make sure they’re listening on port 443.

  4. Check to make sure your origin server is properly configured for SNI.

  5. The cipher suites that Cloudflare accepts and the cipher suites that the origin server supports do not match. Review the cipher suites your server is using to ensure they match what is supported by Cloudflare. A cipher suite is a set of algorithms that help secure a network connection that uses Transport Layer Security (TLS) or its now-deprecated predecessor Secure Socket Layer (SSL). The set of algorithms that cipher suites usually include: a key exchange algorithm, a bulk encryption algorithm, and a message authentication code (MAC) algorithm.

  6. If you are the site owner and you’re only seeing errors intermittently, this suggests the TCP connection between Cloudflare and your origin is being reset during the SSL handshake causing the error. Ask your hosting provider/system administrator to check if there are any server issues. Reviewing your webserver access/error logs would be a good place to locate this information.

  7. Note that Apache must be configured to log mod_ssl errors and nginx includes these errors in its standard error log, but it may be necessary to increase the log level.

  8. Pause Cloudflare or update your local hosts file to point directly at your server IP to test that your server is presenting a SSL certificate. If you do not have a certificate installed on your server you can generate one using our Origin CA certificates. This is a free certificate for the purpose of encrypting the connection between Cloudflare and your web server, so that you do not need to purchase a certificate.

  9. If you cURL to the origin on port 443 and receive the error error:1408F10B:SSL routines:ssl3_get_record:wrong version number, disable TLS 1.3 on the Edge Certificates tab of the SSL/TLS app on the Cloudflare dashboard.

Lite Reading

Community Tutorial

Learning Center
What Is SSL? | SSL and TLS

Background Resources
Help Center

Research The Issue

If You Need More Help
This community of other Cloudflare users may be able to assist you, if not, login to Cloudflare and then contact Cloudflare Support. When you contact support, make sure to include as much of this information as possible: time stamped log files from your origin server, RayID, domain name, error messages, screen shots, and/or HAR file(s). Indicate which of the Quick Fix ideas you’ve tried in order to help Customer Support help you.

Expert Comments Appreciated
This Community Tip will remain open for input from Community experts and those familiar with this issue. We really appreciate comments that start with words like: “The three things I always try”, or “Do this first” or “In my experience”.

This is a Cloudflare Community Tip, to review other tips click here.

Çevirme…traduzir…翻译…traducir…Traduire…Übersetzen…:greyg: Translate this Tip

FXHFCT 103119

1 Like
525 error - called Godaddy and was told the issue is with Cloudflare
Ssl handshake faild
# Error 525 <small>Ray ID: 514731ee394ec410 • 2019-09-11 05:20:53 UTC</small> ## SSL handshake failed
Ssl not working for my subdomains
My website is not showing
CloudFlare SSL Handshake (525)
SSL Problems Handshake Error, Activate Certificates?
Unusual 525 error with website
How to configure a port in cloudflare
525 error SSL handshake
Cloudflare problem urgents please
SSL HandShake Failed | Error 525
SSL Error 525 with Rails and Heroku
SSL handshake failed - Error 525
Getting 525 error for my site
Connection to this is not secure?
Error 525 SSL failed
Text boxes of payment gateway plugin inactive
Get error 525
SSL Handshake Error?
WebSocket issue WSS
Community Tip - Helpful Links, on Display
Error 525 I can't access my page
Error 525 I can't access my page
Error 525 - SSL Handshake Fail + Spike in Traffic
ERROR 525 / SSL handshake failed
SSL 525 error
How to fix Error 525 SSL handshake failed
Secure connection failed
DNS and Blogspot custom domain
Getting Error 525 even though no changes were made
I think that my cloud not working at all
I can't open my website after using CF
Error 525 SSL Handshake With LightCMS Failed
Ssl handsake failed
Help Known Issues
I am getting 525 handshake error and when I did a search on every thing is alright
Error 525! Please help
From error 525 to Red https is this progress?
Issues pointing my domain in Cloudflare to my Google Site (new google sites)
Website speed is not inscreing
Ssl error subdomain
Community Tip - All Published Tips
Cant set up Port
Gmail mail.*yourwebsite*.com no longer works with cloudflare
Cant able to fix Error 525
How many 525 errors am I getting?
Unstable service
DNS & Network
520 Error with WordPress Divi Builder
Help, site is not working, please help
Сменил DNS у регистратора доменов но сайт не заработал
Error 525 and Error 520
SSL Certificate?
Web server changed. 525 error
SSL handshake failed with Nginx ubantu 10.0
Problems with redirects
Error 525 Problemm
I can't access my site
My Website is down after changing to CloudFlare Nameservers
Subdomain 525 Error
Not getting SSL Cert
Error 525 - need clarification
SSL handshake failed!
Website not working on http to https
Https error 525
Status 521
No "Free" with SSL
SSL And HTTPS Not Working
There are always errors on my website 503 and error 525 errors
SSl Error facing
I always take Error 525
I am facing 525 ssl handshake failed error
Error 520/525/502
I created a Cloudflare account... How do I add my hosting to it?
Error 525 Ray ID: 57c47a461f5c73d1 • 2020-03-30 20:11:26 UTC SSL handshake failed
High latency through Cloudflare proxy in Canada
SSL Certificate isn't getting recognised Full (Strict)
Errors 525/522 but only to my IP
Ubuntu 18 on AWS using Nginx and Cloudflare
My site is still 'not secure'
Error 525 SSL handshake failed after activation
Ssl handshake fail
Emergency - site is down
I have problem with payment system and show this problem
SSL Handshake Failed (
Cloudflare/HaProxy - Error 525 - SSL Handshake Failed