Origin CA Issuer: Origin CA Key expired without notice, leading to 526 errors

Error 526: Invalid SSL certificates

Our Origin CA Issuer running in our Kubernetes cluster uses the Origin CA Key to issue new certificates before the old ones expire. However, the Origin CA Key expired without notice and we started getting authentication errors when trying to issue new certificates. We cannot afford this downtime so we would like to know how to ensure that our Origin CA Key remains valid at all times.

526 when hitting domain. Authentication error (Code: 10000) when attempting to issue certificates

  1. Update Origin CA Key used by Origin CA Issuer.
  2. Issue new certificates

It was always on cloudflare, and working previously

Use an invalid Origin CA Key.

