• TalkBass has been independent since 1998. Add your voice.
    Create a free account to reply to discussions, view embedded media, and browse with fewer display ads.
    Join freeLog in
    Want zero display ads or expanded classifieds tools? Compare plans.

an OVNILab update, kind of?

Given Cloudflare's pull, I'd be surprised if a cert that they deploy for your site would cause an issue. Certs are currently signed by Google. Not having to manage certs is such a dream by letting them deal with it.
 
I guess if I “should be fine” and another person “would be surprised” then in that case I’ll just ignore the real world testing I did that led me to say what did and didn’t actually work.

Some of us are built different.
 
  • Like
Reactions: SteC
I should clarify the cert provided by name.com is a "real" cert, not a temporary or free cert that's prone to failing browser security. I've have many sites hosted there for the past couple years. A few sites are for medical practices that get hundreds of hits a day. I've never had any complaints of browsers blocking the sites due to certs. I test the sites with various browsers. Of course, it's not practical to test with every browser at every security level. I let the hundreds of visitors do that for me :) All my sites and domains seem to be fine.

(I may be wrong) but cloudflare does not seem to host sites, they offer DNS services that apparently incorporate a cert. It may be a solution, but you'd still require a host. Might as well find a host that provides a cert. I'd imagine it would be easier and cheaper.

On a related note, I hate cloudflare. When I'm using VPN the sites behind cloudflare make me jump through the "prove you're human" tests. It's annoying and cloudflare needs to find a better way. Lots of complaints about the issue on the internet, but no good solutions.

Thanks again for the great site bongo!! :)
 
  • Like
Reactions: bongomania
(I may be wrong) but cloudflare does not seem to host sites, they offer DNS services that apparently incorporate a cert. It may be a solution, but you'd still require a host. Might as well find a host that provides a cert. I'd imagine it would be easier and cheaper.

You are sort-of correct regarding CloudFlare. They are a WAF (web application firewall). They proxy traffic to your website, wherever you host it. That proxying provides multiple levels of security depending on what you pay for (SSL certs, DDoS protection, Application aware protections, etc). Global traffic management/CDN can also come into play if that is what you need (as far as I know). I've used CloudFlare for personal sites and had to manage our sites in a competitor for my last workplace.

There will always be a corner case where some cert doesn't work with some browser client. As the browser tighten down the allowed cert lifetimes, having it manage for me by CloudFlare as made my life simpler. Used to be you could get a cert for 2 years. I looked and CloudFlare is rotating my cert every 3 months.