#DNS timing out

36 messages · Page 1 of 1 (latest)

forest narwhal
#

I have entered the IP of my server to Cloudflare, but it is not working. I am just getting a timed out error.

I am able to connect directly to the IP.

knotty pawn
forest narwhal
#

The code is 522, and the URL is https://fts-new.pixellicio.us/. Going to just make it fts.... later but that'll be swapped out when I figure this all out

#

Just disabled the Cloudflare proxy and http:// traffic is working, but https is giving the timed out error

knotty pawn
#

What's your ssl/tls encryption mode? In the Cloudflare dashboard, in your website, SSL/TLS -> Overview

forest narwhal
#

It's set to Flexible right now

knotty pawn
#

Flexible is insecure, you really want that to be Full (Strict), and then to configure your origin server to also work with https://. You can use Cloudflare Origin Certs ( https://developers.cloudflare.com/ssl/origin-configuration/origin-ca/) if need a certificate & you plan on always having the website proxied, up to 15 years expiry and trusted by CF Proxy

forest narwhal
#

going to install that right now, hold on

#

added it to my site and i'm getting a not secure warning

#

wait

#

hold on sorry i was going directly to the ip

#

yeah same issue

knotty pawn
forest narwhal
#

do i want to set it to strict rn too

knotty pawn
#

you should yea, only Full (Strict) is secure

forest narwhal
#

thanks so much, it's fully working

#

took me two days to figure this out

quaint verge
knotty pawn
quaint verge
knotty pawn
quaint verge
#

Mhm, that’s true

tame birch
#

Hello!

quaint verge
#

I can def see it being better

quaint verge
tame birch
#

I see you have gotten a error 522 on cloudflare! The most common reason why is because of slow internet / incorrect dns settings

quaint verge
tame birch
#

oh

quaint verge
#

Also you got a cool profile effect

tame birch
#

oh wait this is the wrong server

quaint verge
#

Lmao

tame birch
#

LOL MY MIND WENT TO THE WRONG SERVER AND STARTED HANDING HELP THREADS

#

I THOUGHT THIS WAS ANOTHER SERVER

knotty pawn
# quaint verge I can def see it being better

In a perfect world, flexible wouldn't exist, it's more of a relic of the past. Browsers enforce and default to https for a reason, if the browser sees the connection is secure the implication is end to end. Espec when it's really not that hard to get https set up, CF gives you origin certs that last for up to 15 years for free