Error 522 - Connection timed out - SSL /TLS Issue?

What is the name of the domain?

What is the error number?

522

What is the error message?

522

What is the issue you’re encountering

I am unable to connect to the site bubliq.com and I see a Cloudflare 522 error page

What steps have you taken to resolve the issue?

Hello everyone,

I’ve been experiencing persistent 522 errors when trying to access my website (https://bubliq.com) over the last couple of days. The issue started suddenly, with no changes made on our website or backend, and our hosting provider has confirmed that no firewall or server configuration changes were made on their end that could explain the connection timeouts.

In my investigation so far:

When Cloudflare proxy is enabled, the site becomes unreachable and shows a 522 error.
When I disable the proxy while keeping Cloudflare nameservers active, the site loads normally.
Interestingly, the error also appears to behave differently across browsers — in Safari I consistently get a 522, but in Chrome the site was at one point reachable (possibly from cache or due to timing).
This leads me to suspect an SSL/TLS issue between Cloudflare and the origin server.

Our origin server is using a Let’s Encrypt certificate, and based on inspection, the currently active certificate has the common name www.staging1.bubliq.com, but does include bubliq.com and www.bubliq.com in the Subject Alternative Names (SANs).

Our current Cloudflare settings:

SSL/TLS mode: Automatic up until the issue arose.
DNS: bubliq.com and www.bubliq.com are proxied through Cloudflare
Origin server has a working Let’s Encrypt certificate
Our hosting provider suggested that Let’s Encrypt renewal may be failing when Cloudflare proxy is on, since it blocks the HTTP challenge. They mentioned switching to “Flexible” mode under SSL/TLS > Edge Certificates might help, or alternatively, installing a Cloudflare Origin Certificate directly on the server.

Could the mismatch in certificate CN (staging1.bubliq.com) be causing Cloudflare to refuse SSL?

Would switching to Full or Flexible SSL mode help, or is a custom Cloudflare Origin Certificate the safer fix? (I am on the free plan, by the way)

Any recommendations for configuring SSL in Cloudflare to avoid future Let’s Encrypt renewal issues while keeping HTTPS enforced?

In addition, I am curious to know whether I am on the right track and this could be a SSL/TLS issue, or I am totally off.

By the way, Cloudflare is currently paused, and the nameservers are pointing to the origin’s server to keep our site alive and reachable for visitors.

Any feedback is greatly appreciated.

Hello, so that means it was working before? By any chance, did it break for you starting on 29th of April? My proxied website also seems to be broken now, despite working several days before. Nothing was changed in the config either.

Yes, it was working before, and has never encountered a 522 error before (have been running Cloudflare for 4 years). Looking at the log, error 522 started populating on April 30 at around 01.00 PM (please see attached screenshot).

1 Like

This topic was automatically closed after 15 days. New replies are no longer allowed.