amazon web services - Certificate Authorization problems to validate domain Ownership ( AWS ACM with CloudflareHostinger) - Stac

Context:I have an AWS Lambda function exposed via API Gateway. I want to secure and expose it through

Context: I have an AWS Lambda function exposed via API Gateway. I want to secure and expose it through Cloudflare.

Steps to Replicate:

  • In API Gateway, create a custom domain.

  • During creation, AWS requires a certificate, so I generate one for:

  1. mydomain
  2. api.mydomain
  3. www.mydomain

AWS provides three CNAME records to add in Cloudflare with this structure: Domain, Type, CNAME Name, CNAME Value

  • I add these CNAME records in Cloudflare DNS.

  • I wait for AWS validation (it always fails).

What I Have Tried:

  • Removed the trailing dot (.) from the CNAME name and value (Cloudflare removes it automatically).
  • Set records to DNS Only (not proxied).
  • Verified CNAME propagation using dig and DNSChecker (records are reachable).
  • Tested using only one domain for validation.
  • Deleted and recreated the certificate request.
  • Tried configuring the DNS in Hostinger instead of Cloudflare (same failure).

Still having the issue, thanks in advance for your help

Context: I have an AWS Lambda function exposed via API Gateway. I want to secure and expose it through Cloudflare.

Steps to Replicate:

  • In API Gateway, create a custom domain.

  • During creation, AWS requires a certificate, so I generate one for:

  1. mydomain
  2. api.mydomain
  3. www.mydomain

AWS provides three CNAME records to add in Cloudflare with this structure: Domain, Type, CNAME Name, CNAME Value

  • I add these CNAME records in Cloudflare DNS.

  • I wait for AWS validation (it always fails).

What I Have Tried:

  • Removed the trailing dot (.) from the CNAME name and value (Cloudflare removes it automatically).
  • Set records to DNS Only (not proxied).
  • Verified CNAME propagation using dig and DNSChecker (records are reachable).
  • Tested using only one domain for validation.
  • Deleted and recreated the certificate request.
  • Tried configuring the DNS in Hostinger instead of Cloudflare (same failure).

Still having the issue, thanks in advance for your help

Share Improve this question asked Mar 25 at 21:04 JuanJuan 717 bronze badges
Add a comment  | 

1 Answer 1

Reset to default 1

well after struggling a bit... I found the issue in MY context. In case it helps someone...

My issue was that I was just adding the CNAMEs which is something I have to do… but my DNS Records in Cloudflare didn’t included this configuration, that is needed for AWS to be able to generate the certificate

So after I configured 2 records per url (1 for wildcare, 1 for literal) for each of this domain:

  • amazon

  • amazontrust

  • awstrust

  • amazonaws

The issue seems to be gone!

发布者:admin,转转请注明出处:http://www.yc00.com/questions/1744168597a4561423.html

相关推荐

发表回复

评论列表(0条)

  • 暂无评论

联系我们

400-800-8888

在线咨询: QQ交谈

邮件:admin@example.com

工作时间:周一至周五,9:30-18:30,节假日休息

关注微信