When setting up SSL certificates on Cloudflare, is it required for the server certi

Answer these questions to help the Community help you with Security questions.

What is the domain name?
Not relevant

Have you searched for an answer?
Yes

Please share your search results URL:
DNF

When you tested your domain, what were the results?
Invalid cert errors, still showing the old certificate that the Server still uses instead of the Cloudflare ones

Describe the issue you are having:
Cloudflare not encrypting the site, replacing the expired cert that used to be a valid cert

What error message or number are you receiving?
Browser Invalid cert warning

What steps have you taken to resolve the issue?

Tried setting the encryption mode to flexible & full, which seemed to change nothing

Was the site working with SSL prior to adding it to Cloudflare?
No, Cloudflare was used as a way to replace an expired certificate that used to be valid
(currently lacking direct access to the server because the provider has been slow to answer my request)

What are the steps to reproduce the error:

  1. Have a Web server with a valid SSL cert that ran out
  2. Change domain nameservers to Cloudflare and enable encryption

Have you tried from another browser and/or incognito mode?
Yes, same issue

That’s not recommended. It means data is not secured between Cloudflare and your host, and deceives your users that their data is secure when it is not.

Use only “Full (strict)” SSL/TLS mode and ensure your host fixes the SSL certificate on your server.

The reason you see your origin ceritifcate and not a Cloudflare SSL certificate is because your DNS record is not proxied so requests are going direct to your origin and not through Cloudflare.
https://cf.sjr.org.uk/tools/check?709c4aa5bdb84bb9b5d5e29b70d15534#dns

3 Likes

This topic was automatically closed 15 days after the last reply. New replies are no longer allowed.