TLSA records, ssl certs, and the free plan

What is the name of the domain?

foxchapelpsych.com

What is the error number?

None

What is the error message?

None

What is the issue you’re encountering

I would like to set up a TLSA record on my Cloudflare DNS

What steps have you taken to resolve the issue?

Hi- I’m understanding that for a TLSA record you need a certificate, then upload the certificate to Cloudflare, then set the TLSA record with some parameters and the cert’s public key. (If this isn’t right let me know)

I’m also thinking that this isn’t do-able under Cloudflare 's free plan. That you need at least business or whatever the $200/month plan is to upload certificates.

And with certificates given by Cloudflare there is no way to extract the public key to put in the TSLA record.

But if this is incorrect, please let me know.

Was the site working with SSL prior to adding it to Cloudflare?

Yes

What is the current SSL/TLS setting?

Strict (SSL-Only Origin Pull)

What are the steps to reproduce the issue?

N/a

I don’t believe anything has changed since this post.

2 Likes

Thank you very much. This answers my question.

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.