Changed registrar from Vercel-Cloudflare: ERR_SSL_VERSION_OR_CIPHER_MISMATCH

canastroHOBBY

3 months ago

I just changed my domain from vercel to cloudflare, railway seems to have detected it, it says Cloudflare proxy detected in the server settings…

But when I try to open my app I get ERR_SSL_VERSION_OR_CIPHER_MISMATCH and it seems like the SSL needs to be regenerated.

Do I need to take any manual action?

project: 28fb16ab-96f2-4c97-a9fe-a70ac8d2d11f

Solved

0 Replies

3 months ago

Mind sharing the domain in question?


canastroHOBBY

3 months ago


canastroHOBBY

3 months ago

when I first configured this domain in railway/vercel, railway took care of this automatically. Should I create the SSL on cloudflare's dashboard now?


3 months ago

do you have cloudflare's advanced cert manager? it's required for domains that're deeper than a first level subdomain


canastroHOBBY

3 months ago

no, I'll look into that then. thanks


3 months ago

you could try disabling cloudflare proxy and set the cname to dns only (meaning the orange cloud should be gray)
if you need those enabled then you'll have to get advanced cert manager

this is a cloudflare limitation btw not a railway limitation


canastroHOBBY

3 months ago

if I change my URL structure to be just one level deep, then all should work with the basic plan?


3 months ago

yea, that should work


canastroHOBBY

3 months ago

alright, since this is a pet project, I'll start with that 😅


3 months ago

Awesome, best of luck 🙂


canastroHOBBY

3 months ago

Hi Fragly,

If I have just one level deep domains, ie:

I can have cloudflare's proxy enabled?
Right now, when I enable cloudflare's proxy, I get a "Too many redirects" error on all my sites.

You can see the error here:

I'm sorry if this is mainly a question about cloudflare, but you seem to know your way around cloudflare and it's integration with railway.

A few screenshots that might be useful:

1340368456834617300
1340368457400713200


3 months ago

yes, you can have cloudflare's proxy enabled without requiring advanced cert manager on cloudflare if you're using one level deep domains

make sure you have your SSL/TLS encryption mode set to Full


3 months ago

and no worries :D


canastroHOBBY

3 months ago

that was it… I had it "flexible"


3 months ago

awesome, glad it worked


3 months ago

I'm going to go ahead and mark this as solved
feel free to open another thread if you need help with anything else


3 months ago

!s


Status changed to Solved dev 3 months ago