Reverse proxy, domain check fails

Support intro

Getting help

In order to help you as efficiently (andDocker nginx reverse proxy domain.tld/cloud setup quickly!) as possible, please fill in as much of the below requested information as you can.

Before clicking submit: Please check if your query is already addressed via the following resources:

(Utilizing these existing resources is typically faster. It also helps reduce the load on our generous volunteers while elevating the signal to noise ratio of the forums otherwise arising from the same queries being posted repeatedly).

Some or all of the below information will be requested if it isn’t supplied; for fastest response please provide as much as you can. :heart:

The Basics

  • Nextcloud Server version (e.g., 29.x.x):

    • I'm trapped in setup so a version number is impossible to find. I pulled :latest less than 10 minutes ago.
  • Operating system and version (e.g., Ubuntu 24.04):

    • Arch Linux, Kernel version 6.18.34-1
  • Web server and version (e.g, Apache 2.4.25):

    • whatever's included in the official docker image
  • Reverse proxy and version _(e.g. nginx 1.27.2)

    • caddy 2.11.3
  • PHP version (e.g, 8.3):

    • whatever's included in the official docker image
  • Is this the first time you’ve seen this error? (Yes / No) yes

When did this problem seem to first start?

  • immediately on install

  • Installation method (e.g. AlO, NCP, Bare Metal/Archive, etc.)

    • aio
  • Are you using CloudfIare, mod_security, or similar? (Yes / No)

    • no

Summary of the issue you are facing:

AIO installer attempts to get some code from the domain check container and fails, getting nothing instead

Steps to replicate it (hint: details matter!):

  1. attempt to install nextcloud AIO

  2. see error about response of the connection attempt is empty string

  3. suffer

Log entries

Nextcloud

NOTICE: PHP message: Please follow https://github.com/nextcloud/all-in-one/blob/main/reverse-proxy.md#how-to-debug in order to debug things!NOTICE: PHP message: The response of the connection attempt to "https://drive.arkevorkhat.net:443" was:
NOTICE: PHP message: Expected was: 59a9e992f85a66177da9333efe6756e11d471ce557e144e4

2026-06-15 03:39:07: (../src/h1.c.441) unexpected TLS ClientHello on clear port (192.168.0.52)

Hello @Arkevorkhat,

welcome to the Nextcloud community! :handshake:

The error is more than clear - TLS request is received on clear HTTP port - depending on your setup something is wrong with reverse proxy or port forwarding. Please carefully review the docs and compare with your system. Post more details if further help is required.

That may be clear to you, but a) not everyone knows what a “clear port” is, and b) nowhere in the quickstart nor the referenced debugging guide is this mentioned. Additionally, most reverse proxies automatically terminate SSL/TLS for good reason. Nextcloud is the only piece of software I have ever encountered that requires localhost traffic to be run over a secure connection.

Ultimately I’m more tempted to use another self-hosted cloud solution, one that doesn’t try to be cute and hijack my docker socket to start random containers outside of my compose workflow, and that doesn’t expect to be the only service running on my server.

When drafting your response, please note that the escalation in this thread from “support request” to “argument” was caused solely by your decision to take a condescending tone. But of course, per the forum rules, your behavior is totally acceptable, and I’m in the wrong for not being happy to hear you call me an idiot in not so few words.

I didn’t do but I’m sorry if you feel so

Reverse proxies often terminate TLS but using TLS to the backend is still fully valid option and it is the task of the system admin to adjust the system in a right way. AIO reverse proxy docs covers everything.

the knowledge about TLS and plain http is a foundation for self-hosting.

If you don’t know you are welcome to learn and we would love to support you if you don’t want to learn better avoid self-hosting. take a look at 101: Self-hosting information for beginners for more detailed explanation.

AiO is one specific installation variant. It has some assumptions and ideas I also disagree but it remains your choice: feel free choose AiO or the micro-services image, or Snap or VM - many options exist.

Wow, gaslighting too.

It’s genuinely shocking to me that you are allowed to be a moderator here when you lack even the most basic social skills. This conversation is over, I will not be using nextcloud. There is zero reason for me to trust code from a company that allows this kind of behavior from the people who represent them.

If I wanted to be abused, I would have posted this on StackOverflow.

Sorry, but instead of immediately getting defensive, you could have provided a few more details about your setup. For example, you could have briefly explained where you installed the Caddy reverse proxy and posted your Caddyfile as well as your AIO Docker run command or compose.yaml. That would have given people something to work with.

Just for your information: this is not a customer help desk. It’s a community forum where people voluntarily try to help each other to the best of their abilities. To do that effectively, however, we need sufficient information about the setup and the problem.

And since we’re talking about tone: your post, written in the typical support-ticket style but without providing many details, didn’t come across as particularly friendly either. Rather, it gave off the impression of a typical customer expectation that someone else should solve the problem for you. That’s not necessarily an issue in itself, but then you probably shouldn’t be surprised if you receive similarly brief or direct replies in return.

Hey @Arkevorkhat, welcome to the Nextcloud community :waving_hand:

the community forum is a community of volunteer enthusiasts helping and supporting fellow users. The community has a huge knowledge base and some clued up folks who gladly share their knowledge and expertise in the spirit of open source. Community support is neither affiliated and nor obligatory!

This discussion has no sign of abuse, sorry you feel that way!

This support experience is why I don’t use software written in rust. Clearly I need to extend that to software written in PHP as well.

yes, and if you don’t think you have enough information, the normal thing that well adjusted people do is simply not respond. wwe chose to respond AND not ask a single clarifying question. There is no value in his response, and doubling down on being useless is going to piss off any normal person.

Yeah, sure, and eventually you won’t use anything at all, because with every project or programming language you’ll likely run into some issues (I don’t quite understand what the programming language has to do with this, but whatever). But even then, people like you likely won’t realize that their attitude, unrealistic expectations, and unwillingness to approach things proactively and constructively might actually be part of the problem.

People in the Nextcloud ecosystem, and in FOSS projects in general, build software and make it available completely free of charge under open-source licenses. These people have absolutely no obligation to the users who use this software for free.

And how exactly would that have helped you?

See, the same principle that applies to FOSS projects also applies to volunteer community forums, maybe even more so. @wwe posted links that might point you in the right direction, and based on the limited information you provided, offered a suggestion on where you might look to find the problem. This is a perfectly legitimate response to your post. After that, it was entirely up to you which direction the thread took.

Again, this isn’t a support hotline. We don’t have to go to every possible length to solve your problem, especially when the signals from your side suggest that you’re not particularly interested in cooperating proactively and constructively or in taking some initiative yourself.