# Having https end to end

**URL:** <https://linkerd.buoyant.io/t/having-https-end-to-end/414>\
**Category:** Linkerd General Discussion\
**Tags:** proxy, configuration, certificates\
**Created:** [March 15, 2024, 4:44pm UTC](https://linkerd.buoyant.io/t/having-https-end-to-end/414 "2024-03-15T16:44:16Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Msaustral](https://avatars.discourse-cdn.com/v4/letter/m/f0a364/32.png) [@Msaustral](https://linkerd.buoyant.io/u/Msaustral)\
**Post date:** [March 15, 2024, 4:44pm UTC](https://linkerd.buoyant.io/t/having-https-end-to-end/414/1 "2024-03-15T16:44:16Z")

</div>

Hi we have and app that has horizontal scaling by memory consumption, we want to change the scaling by traffic to have a better control over the scaling.

Our app is a nginx with http2 and ssl (server side cloudflare) implemented so we have https end to end certify by cloudflare

We must use the cloudflare certification to be able to use SSL full strict and the pod also need to have https traffic to be able to use nginx with http2

We tray other service mesh but the certificate inside the cluster was created by the mesh, we could no use the cloudflare certificate to use full strict and also the communication between the envoy proxy and the app container was by http so nginx wasn’t working over http2

Can we have this implementation with Linkerd?

---

<div class="post-metadata">

**Author:** ![Mahendran](https://yyz1.discourse-cdn.com/flex029/user_avatar/linkerd.buoyant.io/mahendran/32/217_2.png) [@Mahendran](https://linkerd.buoyant.io/u/Mahendran)\
**Post date:** [January 2, 2025, 1:03am UTC](https://linkerd.buoyant.io/t/having-https-end-to-end/414/2 "2025-01-02T01:03:06Z")

</div>

Yes, Linkerd supports using your Cloudflare certificates for end-to-end HTTPS, enabling strict SSL and HTTP/2. It allows custom certificates and lightweight proxies, ensuring compatibility with your requirements and maintaining secure traffic.
