DNS/SSL automated functions did not operate

I’ve spent the better part of a week working at getting a tunnel set up and I feel like a complete dunce now.

I set up my first domain years ago and all the automated processes for SSL creation and DNS management just worked. I set up a new domain for another project and things did not go smoothly.

First, the Universal Certificate has not validated. When I look in the SSL records section for the domain it says requires validation. It then says that Cloudflare will do this for me because it manages DNS. It’s been in that state for several weeks.

Second, because the SSL certificate isn’t valid tunnels don’t work; I get an error at the browser saying that there is an encryption mismatch.

Third, DNS entries that are automatically created aren’t replicating globally. Sometimes they show up for me immediately, others don’t show up for days. On the other side of the world where I have a friend testing he doesn’t see the DNS entries at all. We are using 1.1.1.1 as the server in nslookup so this isn’t an issue with a 3rd party DNS being out of date.

I thought my internal network was the problem and spent the weekend redoing all of my VLANs and now I realize I have fundamental error in the way my Cloudflare account is working. When I set up zero trust on my personal domain my first tunnel was working in less than a minute.

Is there a way to reset my account?

What is your domain?

casejourney.net

Here is an example of how the propagation is broken:

That’s a screenshot of the propagation map from dnschecker.org. test.casejourney.net it showing up in only part of the world.

You have a DNSSEC issue…
https://cf.sjr.org.uk/tools/check?a985d05a0f424a548c888fe86462a3f0#dns

Either disable DNSSEC at your registrar, or update the DS records at your registrar with those you get from your Cloudflare dashboard under DNSSEC here…
https://dash.cloudflare.com/?to=/:account/:zone/dns/settings

2 Likes

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.