I have web vm at azure, installed with apache2 and ssl. However, when I visit https my site, why I see ssl cert from cloudflare and not from mine ? Is this the right way ? Where should I install my ssl cert ?
Should I uninstall my ssl cert and rely on cloudflare ssl cert ?
The Cloudflare Edge Certificate secures the connection between your visitor and Cloudflare (that’s why you see it in your browser), however you still need the cert on your server to secure the connection between Cloudflare and the origin.
For ebay as example. When users click to view ssl cert info they expect to see my www domain there. If they see cloudflare as what you showed for shopify.com they will think it is phishing site, because users don’t know how cloudflare work.
I don’t really understand. Do you expect your users to know who DigiCert or Comodo are, but not Cloudflare? As long as the certificate is valid, I’m not clear on the issue.
If it’s that important to you, you’d have to upgrade to Business or Enterprise level plans so you can upload your own certificate, but it’s a pretty safe bet that it won’t matter to your users.