howto: all - ssl with cloudflare rev 3 aug 2019 through cpanel. > info | sources ....................................................... info: CloudFlare SSL: Use full (strict) Let's Encrypt certificates are only valid for 90 days, and Cloudflare must be turned off during the renewal period https://www.a2hosting.in/kb/add-on-services/cloudflare/lets-encrypt-and-cloudflare-universal-ssl ok - this explains why got problem, and error was couldn't write to .known_hosts. See A2hosting ticket RLY-487-10973 started 31 jul 2019. "When using Cloudflare, Cloudflare’s universal SSL is what browsers would see," -- https://www.liquidweb.com/kb/using-lets-encrypt-cloudflare/ HSTS: "Grey clouding a subdomain in your DNS records, 'Pausing' the Cloudflare service" will cause the site not to work at all. Leave subdomains off HSTS. ....................................................... sources: * with any: + How to Use Let’s Encrypt with Cloudflare https://www.liquidweb.com/kb/using-lets-encrypt-cloudflare/ Goes over all Cloudflare settings for SSL, explains HSTS. * with A2Hosting: + Setting up Let's Encrypt and Cloudflare Universal SSL for end-to-end encryption https://www.a2hosting.in/kb/add-on-services/cloudflare/lets-encrypt-and-cloudflare-universal-ssl * with Dreamhost: + Using Cloudflare with an SSL certificate and WordPress https://help.dreamhost.com/hc/en-us/articles/360003360511 + Cloudflare with SSL FAQs - at dreamhost. https://help.dreamhost.com/hc/en-us/articles/216474977-Cloudflare-with-SSL-FAQs + Cloudflare with SSL overview - at dreamhost. https://help.dreamhost.com/hc/en-us/articles/216475197-Cloudflare-with-SSL-overview _______________________________________________________ since: 26 oct 2018 -- 0 --