How does SSL work if I use Cloudflare?
Cloudflare sits between your visitors and our servers, so there are effectively two connections to secure: visitor-to-Cloudflare, and Cloudflare-to-Dirham A Day. Getting the mode right prevents warnings and redirect loops.
Set Cloudflare's SSL mode to "Full". In your Cloudflare dashboard under SSL/TLS, choose Full (or Full (strict) if you have a valid certificate on our side, which you do). Avoid the Flexible setting: it encrypts only the visitor side and talks to us over plain HTTP, which commonly causes a redirect loop when you also force HTTPS.
Key points:
- Keep our free Let's Encrypt certificate active; with Cloudflare in "Full" it secures the back-end connection.
- Because Cloudflare proxies traffic, our AutoSSL sometimes cannot validate your domain. If a renewal fails, temporarily set the DNS record to "DNS only" (grey cloud), run AutoSSL, then re-enable the proxy; or use a Cloudflare Origin Certificate.
- Enable "Always Use HTTPS" in Cloudflare rather than double-forcing it in two places.
If you see a redirect loop or an SSL handshake error with Cloudflare in front, it is almost always the SSL mode. Send us your setup on WhatsApp +971 58 553 6767 or support@dirhamaday.ae and we will confirm the correct configuration.
Still need a hand? Our UAE-based team is here 24/7.