{"id":7799,"date":"2026-04-20T09:48:23","date_gmt":"2026-04-20T07:48:23","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=7799"},"modified":"2026-04-20T09:48:24","modified_gmt":"2026-04-20T07:48:24","slug":"cum-sa-activati-si-sa-gestionati-ssl-in-cloudflare","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/","title":{"rendered":"Cum s\u0103 activa\u021bi \u0219i s\u0103 gestiona\u021bi SSL \u00een Cloudflare"},"content":{"rendered":"<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\" id=\"p-rc_74f1633b728e4476-253\">In <strong>April 2026<\/strong>, Cloudflare remains the most accessible way to secure a <strong>mybox<\/strong> site. Beyond simple encryption, modern SSL management now includes <strong>Automatic SSL\/TLS upgrades<\/strong> and <strong>Quantum-resistant protections<\/strong>, ensuring your data is safe from current and future threats.<sup><\/sup><\/p>\n\n\n\n<p class=\"wp-block-paragraph\" id=\"p-rc_74f1633b728e4476-254\">Activating SSL on Cloudflare is a two-part process: securing the connection between your visitors and Cloudflare, and securing the connection between Cloudflare and your <strong>mybox<\/strong> server.<sup><\/sup><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1' ><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/#1_Choosing_the_Right_Encryption_Mode\" >1. Choosing the Right Encryption Mode<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/#2_Managing_Edge_Certificates\" >2. Managing Edge Certificates<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/#3_Activating_HSTS_High-Security_Mode\" >3. Activating HSTS (High-Security Mode)<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/#4_Troubleshooting_Common_2026_SSL_Issues\" >4. Troubleshooting Common 2026 SSL Issues<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/mybox.com\/help\/ro\/knowledgebase\/how-to-activate-and-manage-ssl-in-cloudflare\/#Summary_The_%E2%80%9CBulletproof%E2%80%9D_2026_Setup\" >Summary: The &#8220;Bulletproof&#8221; 2026 Setup<\/a><\/li><\/ul><\/nav><\/div>\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"1_Choosing_the_Right_Encryption_Mode\"><\/span><strong>1. Choosing the Right Encryption Mode<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<\/div>\n\n<div id=\"mybox-2189414858\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Acces timpuriu<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Mai ave\u021bi nevoie de ajutor?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contacta\u021bi echipa noastr\u0103 de servicii pentru clien\u021bi.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Trimite mesaj<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">In your Cloudflare dashboard, navigate to <strong>SSL\/TLS \u279c Overview<\/strong>. You will see several modes; choosing the correct one is vital to avoid &#8220;Redirect Loops&#8221; or security gaps.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Flexible:<\/strong> Only encrypts the path from the user to Cloudflare. Traffic from Cloudflare to your <strong>mybox<\/strong> server is unencrypted.\n<ul class=\"wp-block-list\">\n<li><em>2026 Note:<\/em> This is now considered a &#8220;legacy&#8221; mode and should only be used as a temporary last resort.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Full:<\/strong> Encrypts the entire path, but Cloudflare will not verify the validity of the certificate on your server.<\/li>\n\n\n\n<li><strong>Full (Strict) \u2013 RECOMMENDED:<\/strong> Encrypts the entire path and requires a valid, trusted SSL certificate on your <strong>mybox<\/strong> server.<\/li>\n\n\n\n<li><strong>Automatic SSL\/TLS:<\/strong> A new 2026 feature that automatically tests your server and upgrades you to the highest compatible mode without breaking your site.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"2_Managing_Edge_Certificates\"><\/span><strong>2. Managing Edge Certificates<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Navigate to <strong>SSL\/TLS \u279c Edge Certificates<\/strong>. This is where Cloudflare manages the &#8220;Universal SSL&#8221; that your visitors see.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Universal SSL:<\/strong> Cloudflare provides this for free. It usually uses <strong>Google Trust Services<\/strong> or <strong>Let\u2019s Encrypt<\/strong> and renews automatically every 90 days.<\/li>\n\n\n\n<li><strong>Always Use HTTPS:<\/strong> Turn this <strong>ON<\/strong>. It automatically redirects any visitor typing <code>http:\/\/<\/code> to the secure <code>https:\/\/<\/code> version.<\/li>\n\n\n\n<li><strong>Minimum TLS Version:<\/strong> Set this to <strong>TLS 1.2<\/strong> (or <strong>TLS 1.3<\/strong> for maximum security). This prevents older, insecure devices from connecting to your site.<\/li>\n\n\n\n<li><strong>Automatic HTTPS Rewrites:<\/strong> Turn this <strong>ON<\/strong>. It helps fix &#8220;Mixed Content&#8221; errors by automatically changing <code>http<\/code> links in your code to <code>https<\/code>.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"3_Activating_HSTS_High-Security_Mode\"><\/span><strong>3. Activating HSTS (High-Security Mode)<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For maximum security and better SEO, you should enable <strong>HSTS<\/strong> (HTTP Strict Transport Security).<\/p>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li>In <strong>Edge Certificates<\/strong>, find <strong>HTTP Strict Transport Security (HSTS)<\/strong>.<\/li>\n\n\n\n<li>Click <strong>Enable HSTS<\/strong> and follow the warnings.<\/li>\n\n\n\n<li>Set <strong>Max Age<\/strong> to <strong>12 months<\/strong>.<\/li>\n\n\n\n<li>Enable <strong>Include Subdomains<\/strong> and <strong>Preload<\/strong>.\n<ul class=\"wp-block-list\">\n<li><strong>Warning:<\/strong> Once active, HSTS tells browsers your site <em>must<\/em> be HTTPS for the next year. Ensure your SSL is working perfectly before turning this on.<\/li>\n<\/ul>\n<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"4_Troubleshooting_Common_2026_SSL_Issues\"><\/span><strong>4. Troubleshooting Common 2026 SSL Issues<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><td><strong>Error<\/strong><\/td><td><strong>Cause<\/strong><\/td><td><strong>Solution<\/strong><\/td><\/tr><\/thead><tbody><tr><td><strong>Error 525 \/ 526<\/strong><\/td><td>Invalid or missing certificate on your <strong>mybox<\/strong> server.<\/td><td>Ensure you have an SSL certificate (like Let&#8217;s Encrypt) installed on your hosting panel.<\/td><\/tr><tr><td><strong>Redirect Loop (ERR_TOO_MANY_REDIRECTS)<\/strong><\/td><td>Your mode is set to <strong>Flexible<\/strong> but your server is forcing HTTPS.<\/td><td>Change your Cloudflare mode to <strong>Full (Strict)<\/strong>.<\/td><\/tr><tr><td><strong>Mixed Content Warning<\/strong><\/td><td>Images or scripts are hardcoded with <code>http:\/\/<\/code> in your site&#8217;s code.<\/td><td>Enable <strong>Automatic HTTPS Rewrites<\/strong> in Cloudflare or use the <strong>Really Simple SSL<\/strong> plugin.<\/td><\/tr><tr><td><strong>Cert Not Active<\/strong><\/td><td>DNS nameservers haven&#8217;t fully propagated.<\/td><td>Wait up to 24 hours. Use <code>whatsmydns.net<\/code> to check propagation status.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Summary_The_%E2%80%9CBulletproof%E2%80%9D_2026_Setup\"><\/span><strong>Summary: The &#8220;Bulletproof&#8221; 2026 Setup<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li><strong>Mode:<\/strong> Full (Strict).<\/li>\n\n\n\n<li><strong>Redirects:<\/strong> Always Use HTTPS (ON).<\/li>\n\n\n\n<li><strong>Rewrites:<\/strong> Automatic HTTPS Rewrites (ON).<\/li>\n\n\n\n<li><strong>HSTS:<\/strong> Enabled (after verifying site stability).<\/li>\n\n\n\n<li><strong>Origin:<\/strong> Ensure a free Let&#8217;s Encrypt certificate is active on your <strong>mybox<\/strong> hosting.<\/li>\n<\/ol>\n<\/div>","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[11,12],"manual_kb_tag":[936,1256,3405,4097,7015,9088,9250,9251,9252,9253],"class_list":["post-7799","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-ssl-certificates","manualknowledgebasecat-cloudflare","manual_kb_tag-cloudflare","manual_kb_tag-lets-encrypt-certificate","manual_kb_tag-cloudflare-dashboard","manual_kb_tag-https-configuration","manual_kb_tag-edge-certificates","manual_kb_tag-mybox-server","manual_kb_tag-universal-certificate","manual_kb_tag-origin-certificate","manual_kb_tag-full-strict-mode","manual_kb_tag-full-mode"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7799","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":1,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7799\/revisions"}],"predecessor-version":[{"id":7800,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb\/7799\/revisions\/7800"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/media?parent=7799"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manualknowledgebasecat?post=7799"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/ro\/wp-json\/wp\/v2\/manual_kb_tag?post=7799"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}