HTTP 5xx

526 Invalid SSL Certificate

A Cloudflare-specific code: Cloudflare could not validate the origin certificate under Full (Strict) mode.

5xx Server error

What causes it

  • An expired, self-signed, or hostname-mismatched certificate on the origin while Strict SSL is on.

How to fix it

Install a valid, unexpired certificate on the origin, or switch the SSL/TLS mode from Full (Strict) to Full.

Example response

A typical raw HTTP response a client receives for a 526, with the headers this code is defined around.

HTTP/1.1 526 Invalid SSL Certificate
Content-Type: text/html; charset=utf-8

Know before your visitors do.

Sentinel checks your site around the clock from multiple regions and alerts you the moment it starts returning a 5xx error, so you can fix it before it costs you.