If you use the cloudflare service to proxy traffic to your site and protect against ddos attacks, you can use their SSL certificates.
To do this, log in to the cloudflare control panel and go to SSL/TLS

Here are 4 options for using an SSL certificate:
- Off – Off.
- Flexible – encrypts traffic between the visitor and the cloudflare service, and traffic between cloudflare and the hosting is transmitted via http (used if you can not configure SSL on the hosting side)
- Full – encrypts traffic between the visitor and cloudflare, as well as to the hosting, with the hosting certificate can be self-signed (no validation is performed).
- Full (strict) – fully encrypts all traffic between the server and the visitor, and the hosting must also be installed on the valid certificate.