When you tested your domain, what were the results?
We can access the website
Describe the issue you are having:
When we browse the website https://jam-dev-env.io, it gives us certificate error.
We have generated certificate from Cloudflare (.Pem and .Key files) and imported to the Linux server where this website is hosted and binded to it. But it says not secure when we acces…
We can access the website on http protocol. We see the certificate is issued by Cloudflare. Please assist ASAP to help us resolved the issue. We have enabled strict settings as per below article but still issue persists
. Flexible - SSL/TLS encryption modes · Cloudflare SSL/TLS docs
What error message or number are you receiving?
What steps have you taken to resolve the issue?
Was the site working with SSL prior to adding it to Cloudflare?
We can access the site without SSL
I have turned ON the proxy now but the site is not accessible.
Please find below snapshot for reference. Please advise what is the best practice to use Cloudflare SSL & and are we using correct SSL certificate type or do we need to change.
Our site is hosted with cloud fare and we have the application running on Azure VM (Linux OS)with public IP address. For now we have allowed only specific public IPs only to access the website but we need the website to be available and accessible publicly over secured protocol. Hence, once we are done with testing & validation then we can publish it for everyone.
As the site is now proxied, you must allow Cloudflare’s IP addresses…
Using Cloudflare to provide SSL for an origin server that isn’t set up for it is not recommended. Otherwise data will not be encrypted between Cloudflare and the origin, but your users are deceived into thinking their data is secure when it is not.
Make sure your origin is configured for HTTPS with a valid SSL certificate and set Cloudflare’s SSL/TLS setting to “Full (strict)” so your site is secured end-to-end.
We have allowed below listed Cloudflare IP addresses for accessibility. But when we enable proxy, we cant access the site.
Please see below and advise if we need to allow any other IP addresses.
We have set the SSL/TLS settings to Full (Strict). We have also enabled Proxied DNS.
However after enabling Proxied DNS, we are not able to access the website.
And why does it show issued by as “GTS CA Google Trust Certificates” instead of Cloudflare after enabling Proxied DNS??
Please see the snaps below of error message with certificate details.
We have enabled SSL/TLS settings to Full Strict as advised and also enabled DNS Proxied.
Please see below DNS settings snap. But if we access the site, we get Host error as shown in the previous response.
Thanks for the update and for clarifying our concern regarding Certificate authority.
We had disabled proxy since our development team wanted to work on UAT task on the site, so they could access the site over Http for time being
But we have enabled Proxied DNS again and site is not accessible now. We get same error message as shared in previous post.
Please check the status from your end and let us know.
The timeout message means Cloudflare can’t reach your origin server. Make sure you have allowed those Cloudflare IP addresses access to the server and that the list is correct.
We have one further query regarding expiry of the certificate as it shows, it will expire on 8th may,2024. It shows 3 months validity. Is it due to being issued automatically by GTS? Will it automatically renew or manual intervention is required for renewal from our end?
I checked on Cloudflare portal and it displays below information for universal certificate.
Please check and advise which certificate details shall we refer to and what is recommended to ensure SSL certificates are valid and do not expire. How do we managed them