Getting Started

Deployment Deployment - Diagnose Migrations Staging

Site Management

Backups Client Reporting Passwords Plugin Automation Plugin Management - Global Plugins & Themes - Diagnose Plugins & Themes - General Plugins & Themes - Git Plugins & Themes - Logs Must Install White Label WordPress Updates

Caching & Performance

Caching Caching - Blogs/Articles Caching - Diagnose Caching - Git Caching - WooCommerce Redis Optimize & Scale

Security

Security Security - Firewall

SMTP, CDN & DNS

SMTP SendGrid CDN CDN - AWS CDN - Cloudflare CDN - Diagnose Domains & DNS

Server & Tools

Analytics & Logs CRON Jobs Database Debug Tool Git Monitoring PHP Settings Redirects SEO Tools Server Errors sFTP SSL

Staq Billing

Staq Billing > Account Staq Billing > Client Staq Billing > Setup

Media

Media Media - Diagnose Media - Optimize

Accounts & Billing

Accounts & Billing

General

WordPress Hosting Website Diagnose Troubleshoot - Other

ERR_SSL_VERSION_OR_CIPHER_MISMATCH with Cloudflare


On this page

    When taking a website live on Staq, you might encounter the browser error ERR_SSL_VERSION_OR_CIPHER_MISMATCH. This error indicates a configuration issue with Cloudflare that needs to be addressed to resolve SSL/TLS issues. Follow the steps below to troubleshoot and fix this error.

    Steps to Resolve ERR_SSL_VERSION_OR_CIPHER_MISMATCH

    Please log into the domain’s Cloudflare account and follow the steps below.

    Verify Edge Certificates

    Most likely, this is the problem here if the Universal certificate is set to pending.

    • Navigate to SSL/TLS > Edge Certificates.
    • Look for the status of the Universal Certificate. If it shows as Pending Validation (TXT), this indicates that validation is incomplete. Complete the validation process so that it updates the status to Active.
    • After activation, wait a few minutes and then test if the website loads correctly.

     

    If all else fails, please follow the steps below.

     

    Verify DNS Records

    • Navigate to DNS > Records page in your Cloudflare dashboard.
    • Ensure that the DNS records point to Staq servers.
    • Confirm that the Cloudflare integration into Staq is correctly set up and that the proxy feature is enabled. Improper integration can affect SSL generation and the proxy functionality.

    Check SSL/TLS Settings

    • Go to SSL/TLS > Overview.
    • Make sure that the SSL/TLS setting is configured to Full (strict). This setting ensures that Cloudflare verifies the SSL certificate on the origin server.

    Configure HTTPS Settings

    • On the same Edge Certificates page, ensure the following settings:
      • Always Use HTTPS: Enabled. This setting forces all HTTP requests to be redirected to HTTPS.
      • Minimum TLS Version: Set to TLS 1.0. This ensures compatibility with older clients.
      • Opportunistic Encryption: Enabled. This allows for encrypted connections even if not all connections can be encrypted.
      • TLS 1.3: Enabled. This provides improved security and performance with the latest TLS protocol.
      • Automatic HTTPS Rewrites: Enabled. This helps in automatically rewriting URLs to HTTPS.

    Conclusion

    By following the steps above and ensuring all settings are configured correctly, you should be able to resolve the ERR_SSL_VERSION_OR_CIPHER_MISMATCH error with Cloudflare. If the issue persists after completing these steps, you may need to review additional Cloudflare settings or consult Cloudflare support for further assistance.

    Need some help?

    We all do sometimes. Please reach out to our support team by dropping us a support ticket. We will respond fast.