Traefik: tls private key does not match public key

self signed certificates, combined pem

In case you’re using self-signed x509 certificates you may see this error message within the traefik logs – the solution is quite easy: the first certificate of your combined pem file (ca+intermediate+server) has to be the server certificate!

# wrong
cat ca.crt ica.crt server.crt > server.pem

# correct
cat server.crt ca.crt ica.crt > server.pem