I was trying to generate some wildcard certs for my domain (hackinside[.]net) with CertBot and kept getting verification failed messages even after checking the TXT records would populate in the Cloudflare portal. After some troubleshooting I ran a dig targeting cloudflares 184.108.40.206, and my domain and it returned 90+ _acme-challenge TXT records. I followed the instructions of some other forum posts (to disable Universal SSL) but that did not resolve the issue. It seems like the only other way to address this has been to escalate to support.
A post was merged into an existing topic: Extra ACME TXT records preventing renewal