anyone good w wordpress, ssl, cloudflare

im tryna set up wordpress server on ubuntu but the SSL cert is being REALLY weird. it took me like 6 years to fix ssl just not working now its giving this error. i have tried remaking the cert I also have it enabled on Cloud flares end. do i have to change anything. on CF end or is it ubuntu/Apache being weird
No description
No description
No description
14 Replies
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Without knowing the domain to test further, I would say that you are using an Cloudflare origin certificate without proxying the record
Erisa
Erisa4mo ago
the certificate details button visible in the first screenshot would confirm that
WhimSickle⌛
WhimSickle⌛OP4mo ago
cgs-development.xyz
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Yeah, as suspected, that domain is not proxied so the origin certificate will show as not trusted. You either need to proxy the record or use a publicly trusted certificate
WhimSickle⌛
WhimSickle⌛OP4mo ago
proxy as in turn it on in DNS
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Correct. The DNS record needs to be :cloudflare:
WhimSickle⌛
WhimSickle⌛OP4mo ago
it is i proxied it and its still not working
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Can you unproxy again. I want to take a closer look at the cert
WhimSickle⌛
WhimSickle⌛OP4mo ago
unproxied
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Okay I should of looked at the first time better. The certificate covering the site isn't for SSL. You need to get a certificate that can be used for SSL. Maybe look at the Cloudflare Origin CA certificates. https://developers.cloudflare.com/ssl/origin-configuration/origin-ca/#1-create-an-origin-ca-certificate
Cloudflare Docs
Origin CA certificates · Cloudflare SSL/TLS docs
Origin Certificate Authority (CA) certificates allow you to encrypt traffic between Cloudflare and your origin web server, and reduce origin bandwidth consumption.
WhimSickle⌛
WhimSickle⌛OP4mo ago
i did what it said and its still not working
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Now proxy the record
WhimSickle⌛
WhimSickle⌛OP4mo ago
didnt work
Cyb3r-Jak3
Cyb3r-Jak34mo ago
Works for me

Did you find this page helpful?