cloudflare for saas cannot connect to 443

I'm following https://developers.cloudflare.com/cloudflare-for-platforms/cloudflare-for-saas/start/getting-started/ to add custom hostname. The custom hostname work as the images shows. Which means fallback origin also works in prior to this. And I have added a CNAME of www.pagebrew.co to pagebrew.wolio.co This is what I get
curl -ii https://www.pagebrew.co/

HTTP/1.1 200 Connection established

curl: (35) error:14094410:SSL routines:ssl3_read_bytes:sslv3 alert handshake failure
curl -ii https://www.pagebrew.co/

HTTP/1.1 200 Connection established

curl: (35) error:14094410:SSL routines:ssl3_read_bytes:sslv3 alert handshake failure
Is this normal? How can I resolve this?
No description
No description
5 Replies
mrbirddev
mrbirddevOP6mo ago
Similar thing happened to www.mrbird.dev which is registered on cloudflare But it's a 522 error
curl -ii https://www.mrbird.dev

HTTP/1.1 200 Connection established

HTTP/2 522

date: Fri, 31 May 2024 08:52:05 GMT
content-type: text/plain; charset=UTF-8
content-length: 15
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=OnE99UKulX34g1wpUotCvhTo37PKFb5SX7MuEuPVMzvDPScSBa0a%2B3PRvemKAk%2BdUKskcI54ZI1oexgwmW9YyC9jJ8JWbMW9p1sz2afsvzBH1jTsqE%2FMPLyNc3nbyrhhYw%3D%3D"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
x-frame-options: SAMEORIGIN
referrer-policy: same-origin
cache-control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
expires: Thu, 01 Jan 1970 00:00:01 GMT
server: cloudflare
cf-ray: 88c5b9ced9fe0ebd-HKG
alt-svc: h3=":443"; ma=86400
curl -ii https://www.mrbird.dev

HTTP/1.1 200 Connection established

HTTP/2 522

date: Fri, 31 May 2024 08:52:05 GMT
content-type: text/plain; charset=UTF-8
content-length: 15
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=OnE99UKulX34g1wpUotCvhTo37PKFb5SX7MuEuPVMzvDPScSBa0a%2B3PRvemKAk%2BdUKskcI54ZI1oexgwmW9YyC9jJ8JWbMW9p1sz2afsvzBH1jTsqE%2FMPLyNc3nbyrhhYw%3D%3D"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
x-frame-options: SAMEORIGIN
referrer-policy: same-origin
cache-control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
expires: Thu, 01 Jan 1970 00:00:01 GMT
server: cloudflare
cf-ray: 88c5b9ced9fe0ebd-HKG
alt-svc: h3=":443"; ma=86400
No description
1.1.1.1
1.1.1.16mo ago
DNS over Discord: A records
wwwmrbird.dev A @1.1.1.1 +noall +answer A non-existent domain [3 - NXDomain] was requested and could not be found
diggy diggy hole
1.1.1.1
1.1.1.16mo ago
DNS over Discord: A records
www.mrbird.dev A @1.1.1.1 +noall +answer
NAME | TTL | DATA
-------------------+------+--------------------
www.mrbird.dev | 300s | mrbirddev.wolio.co.
mrbirddev.wolio.co | 300s | 172.67.141.79
mrbirddev.wolio.co | 300s | 104.21.94.234
NAME | TTL | DATA
-------------------+------+--------------------
www.mrbird.dev | 300s | mrbirddev.wolio.co.
mrbirddev.wolio.co | 300s | 172.67.141.79
mrbirddev.wolio.co | 300s | 104.21.94.234
diggy diggy hole
1.1.1.1
1.1.1.16mo ago
DNS over Discord: A records
www.pagebrew.co A @1.1.1.1 +noall +answer
NAME | TTL | DATA
------------------+------+-------------------
www.pagebrew.co | 600s | pagebrew.wolio.co.
pagebrew.wolio.co | 300s | 172.67.141.79
pagebrew.wolio.co | 300s | 104.21.94.234
NAME | TTL | DATA
------------------+------+-------------------
www.pagebrew.co | 600s | pagebrew.wolio.co.
pagebrew.wolio.co | 300s | 172.67.141.79
pagebrew.wolio.co | 300s | 104.21.94.234
diggy diggy hole
mrbirddev
mrbirddevOP6mo ago
Guess I have to @Chaika again here. I couldn't locate the original post where you recommend me to use cloudflare for saas to CNAME external domains. I got a weird response https://discord.com/channels/595317990191398933/1246401925910626334 I tried 2 domains for custom hostname 1. CNAME www.pagebrew.co(other registrar) => pagebrew.wolio.co ==> curl: (35) error:14094410:SSL routines:ssl3_read_bytes:sslv3 alert handshake failure 2. CNAME www.mrbird.dev(cloudflare) => mrbirddev.wolio.co ==> 522 error My setup
DNS for wolio.co
AAAA * 100:: Proxied
AAAA fallback 100:: Proxied

Worker routes
*.wolio.co/* ==> worker-router
*/* ==> worker-router
DNS for wolio.co
AAAA * 100:: Proxied
AAAA fallback 100:: Proxied

Worker routes
*.wolio.co/* ==> worker-router
*/* ==> worker-router
The guides I'm trying to follow but honestly I'm confused right now https://developers.cloudflare.com/cloudflare-for-platforms/cloudflare-for-saas/start/advanced-settings/worker-as-origin https://github.com/berrysauce/cloudflare-saas-worker/tree/main https://community.cloudflare.com/t/522-error-when-accessing-worker-via-cname/558115 https://community.cloudflare.com/t/how-to-properly-set-up-a-custom-hostname-with-a-worker/329219
Want results from more Discord servers?
Add your server