MaximilianKohler
Well-known member
I left this on and it prevented my Let's Encrypt SSL from renewing.Bot fight mode is fine.
I left this on and it prevented my Let's Encrypt SSL from renewing.Bot fight mode is fine.
How would that work? Cloudflare proxy (and everything that goes along with it like Bot Fight Mode) only affects inbound HTTP requests. So unless Let’s Encrypt is proactively contacting an API you have setup on your server to push an SSL cert to your server, it wouldn’t affect it. If your server is going out (making the connection), it’s not going through Cloudflare.I left this on and it prevented my Let's Encrypt SSL from renewing.
Yes, Windows. I'd prefer not to see the text but like the flags. Maybe an option would be to hide it on Windows so it's flags or nothing?The operating system you use. Microsoft doesn’t allow Windows to show the actual flag.
Let's Encrypt (with HTTP-01 verification) performs an inbound HTTP request to check if the challenge can be read fromCloudflare proxy (and everything that goes along with it like Bot Fight Mode) only affects inbound HTTP requests.
./well-known/acme-challenge/...
- this request can (and if smth. is misconfigured will) be blocked by Cloudflare WAF.Ah… clearly I don’t use Let’s Encrypt.Let's Encrypt (with HTTP-01 verification) performs an inbound HTTP request to check if the challenge can read read from./well-known/acme-challenge/...
- this request can (and if smth. is misconfigured will) be blocked by Cloudflare WAF.
Yep.Its's not just Let's Encrypt, the same would apply for any CA using the ACME protocol and HTTP-01![]()
We use essential cookies to make this site work, and optional cookies to enhance your experience.