#ERR_SSL_VERSION_OR_CIPHER_MISMATCH Chrome

36 messages · Page 1 of 1 (latest)

crisp tangle
#

<@&887014516909555745> <@&797524744156086293>

frigid heath
#

?pings

maiden cargoBOT
#

Please do not ping community members for non-moderation reasons. Doing so will not solve your issue faster and will make people less likely to want to help you.

crisp tangle
#

Direct connection is work

frigid heath
#

And we need much more info

Domain? What are your SSL settings in CF? does your origin have a cert? What are you trying to achieve?

fallen foxBOT
#
DNS over Discord: A records

mjj.ee A @1.1.1.1 +noall +answer

NAME                      | TTL  | DATA                 
--------------------------+------+----------------------
mjj.ee                    | 600s | mjj.ee.cdn.cloudflare
                          |      | .net.                
mjj.ee.cdn.cloudflare.net | 300s | 104.21.94.53         
mjj.ee.cdn.cloudflare.net | 300s | 172.67.220.37        
marble moon
#

what

crisp tangle
#

It had been working normally, but the domain name expired in August and I forgot to renew it. After renewing it again, there was a problem with the certificate.

odd marlin
# crisp tangle It had been working normally, but the domain name expired in August and I forgot...

It looks like the issue is about the connection between cloudflare and your origin server.
Would you wanna check if you've opened port 443 on your origin server?
Possible investigation steps could be: https://developers.cloudflare.com/ssl/troubleshooting/version-cipher-mismatch/#decision-tree

Cloudflare Docs

Learn how to troubleshoot ERR_SSL_VERSION_OR_CIPHER_MISMATCH when using Cloudflare SSL/TLS.

light venture
#

why are you doing a subdomain setup

#

you have an apex CNAME record

#

that is a violation of the DNS spec

crisp tangle
#

Yes it's open

light venture
#

answer my questions

crisp tangle
#

you have an apex CNAME record
I don't quite understand

light venture
#

why are you doing a subdomain setup

crisp tangle
#

Which record are you referring to?

light venture
#

go to your overview on cloudflare

#

and send a screenshot of that

#

how do you have a partial setup on a free plan

#

anyway, go to SSL/TLS and check if universal SSL is enabled

frigid heath
#

where is the first screenshot from?

light venture
#

ssl/tls > edge certificates

#

scroll down

crisp tangle
#

Is this the record?

odd marlin
#

Well I think "Edge Certificates" should be above this screenshot

crisp tangle
#

YES

odd marlin
#

Oh right, sorry I missed your first screenshot.

#

To me it's a bit weird because you have subdomains there but not something like example.com and *.example.com

crisp tangle
#

I discovered that I didn't add the _acme-challenge record, I'm trying to add

odd marlin
#

So you may have found that you don't have any SSL issue with your subdomains like chat.mjj.ee

#

If I understand it correctly, it could be the cert for your chat subdomain. You would either need a separate cert for each subdomain, or you need a wildcard cert.

light venture
#

no

crisp tangle
crisp tangle
#

<@&797524744156086293> help me

olive gorge
#

You’ve already been told to not ping roles