Error code: SEC_ERROR_EXPIRED_CERTIFICATE but certificate is active and renewed

What is the name of the domain?

What is the error number?

None

What is the error message?

Error code: SEC_ERROR_EXPIRED_CERTIFICATE

What is the issue you’re encountering

SSL certificate is listed as expired by Let’s Encrypt, but the certificate shows as valid and good for 3 months in Cloudflare.

What steps have you taken to resolve the issue?

Checked status of SSL certificate and it is valid. There was an issue with the credit card on the account and it may not have auto-renewed. But I added new card info and the SSL renewed, but for some reason, Let’s Encrypt still shows the old certificate.

Was the site working with SSL prior to adding it to Cloudflare?

Yes

What is the current SSL/TLS setting?

Full (strict)

What are the steps to reproduce the issue?

Go to network.smartbusinessdealmakers.com

Screenshot of the error

Attached screenshot of SSL on Cloudflare in case it is helpful

The network subdomain is not proxied so any SSL certificate issue is on the origin server…
https://cf.sjr.dev/tools/check?ede918bde75f476d8d9eec60fd9e8317#dns

…where the certificate has expired…

* Server certificate:
*  subject: CN=network.smartbusinessdealmakers.com
*  start date: Feb  7 16:51:55 2025 GMT
*  expire date: May  8 16:51:54 2025 GMT
*  issuer: C=US; O=Let's Encrypt; CN=R11
*  SSL certificate verify result: unable to get local issuer certificate (20), continuing anyway.
1 Like

Thanks for this. As I said, I am non-technical. I thought perhaps the *.smartbusinessdealmakers.com would cover this. I have no idea where this SSL came from. I am checking with a couple of third-party sites that we have been working with relevant to this subdomain. I do not seem to be able to add another SSL to my Cloudflare account. I am not sure why.

You don’t need to do anything on your Cloudflare account, you need to renew the expired certificate on the server.

1 Like

Thanks. I literally have no idea how to do that. I am checking with the company that built our site, though their initial response was that it needed to be resolved with “the hosting company of that subdomain.” If they aren’t the hosting company or at least working with the hosting company, then I have no idea who it is.

The DNS record for network points to a DNS record from here…

Thanks! That makes sense and I started with them, but they passed the buck.

It appears the problem is with our app provider. Something to do with a white label feature. Problem fixed for now. I will just have to watch it until they tell me they have fixed whatever caused the problem. Thanks for the help.

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.