you are viewing a single comment's thread.

view the rest of the comments →

[–][deleted] 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (7 children)

I just updated our server's time from the internet and restarted everything. Hopefully that will do it.

https://community.cloudflare.com/t/community-tip-fixing-error-525-ssl-handshake-failed/44256

[–]magnora7 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (0 children)

Cool, good effort. Here's hoping! Now we'll know for sure. If this doesn't work then we can shut off my cloudflare api scripts for a while and see if that fixes it. I bet this restart will work though

[–]magnora7 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (5 children)

I just got the 525 and it lasted across like 3 page refreshes. They said to look here: https://support.cloudflare.com/hc/en-us/articles/115003011431#525error

I just find it weird it's rotating across all these various errors so randomly

[–][deleted] 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (3 children)

This is the only mildly red flag for me "No SNI support". I don't really know what that means or if we have it.

Other than that, I haven't changed a damn thing in like a year. Hmmm. I saved off syslog and our nginx logs so if something is logged on our end, we can maybe find it. The logs are in /home/USER/backup-random/525-error

[–]magnora7 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (2 children)

Yeah I didn't change anything either in a long time. I made those API scripts like 8 months ago, that was the last cloudflare-related thing I did. I added some IP addresses to the firewall ban list too but that shouldn't affect anything like the 525 errors. Thanks for trying the config changes, let's just let that ride for a bit and see if there's any errors

[–][deleted] 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (1 child)

Cool. Imo there's zero chance that it's your scripts doing this. It's between CF and our nginx only.

[–]magnora7 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (0 children)

Cool I hope you are right, what you said makes sense

[–][deleted] 2 insightful - 1 fun2 insightful - 0 fun3 insightful - 1 fun -  (0 children)

I also just made a few changes to our nginx SSL configuration out of desperation. I disabled as much fancy shit as possible.