Observed Signal · Apr 14, 2026 · Technical Troubleshooting · Source: DEV Community · Impact: 1/5 · Sentiment: Neutral
Fix ERR_TOO_MANY_REDIRECTS for WordPress behind AWS ALB
This technical troubleshooting guide documents a production fix for ERR_TOO_MANY_REDIRECTS when migrating WordPress from an Nginx SSL-terminating setup to one using an AWS Application Load Balancer (ALB) for SSL. Two root causes are explained and resolved: (1) ALB health checks failed with 301 because WordPress redirected health paths — solved by adding 301 to ALB success codes or pointing health checks to a 200 endpoint; (2) a redirect loop caused by Nginx redirecting HTTP to HTTPS while ALB performed SSL termination — solved by removing Nginx HTTPS redirects, listening only on port 80, setting fastcgi_param HTTPS on, and adding a wp-config.php snippet that sets $_SERVER['HTTPS']='on' when X-Forwarded-Proto is 'https'. Tested on Ubuntu 22.04, Nginx 1.24, WordPress 6.x.
Operational how-to for web/infrastructure teams; useful for publishers or sites migrating SSL termination to ALB but not industry-shifting.
Track WordPress Signals & Market Shifts in Real-Time
Polaris7 autonomous intelligence agents track regulatory filings, primary sources, executive changes, and deal flow 24/7. Create your free Explorer workspace to monitor these entities.
Key Takeaways & Evidence Grounding
- Migrating SSL termination from Nginx to AWS Application Load Balancer (ALB) can cause ERR_TOO_MANY_REDIRECTS.
- ALB health checks returned HTTP 301 when WordPress redirected the health path; recommended fix is to include 301 in ALB success codes or use a path that returns 200.
- Remove Nginx-level 'return 301 https://...' redirects and configure Nginx to listen on port 80; add fastcgi_param HTTPS on so PHP/WordPress recognizes secure requests.
- Add a wp-config.php snippet to set $_SERVER['HTTPS'] = 'on' when the ALB-sent X-Forwarded-Proto header equals 'https' to prevent WordPress-side redirects.
- Guide tested on Ubuntu 22.04, Nginx 1.24, WordPress 6.x.
Connected Companies & Entities
1 Entity mappedOntology Mapping & Concepts
Related Market Signals & Shifts
Recent verified developments and strategic activity across this market segment.
Fix Mixed Content and SSL 'Not Secure' in WordPress
This technical how-to explains why browsers show a "Not Secure" label after moving a WordPress site to HTTPS (mixed content: some page resources still load over HTTP) and gives a step-by-step remediation. Recommended actions: verify a valid SSL certificate and site URLs in Settings → General; use the browser console to identify insecure http:// resources; run a serialized-safe database search-and-replace (or use trusted plugins) to update old HTTP URLs; force HTTPS site-wide (plugin or .htaccess redirect on Apache); and fully clear all caches. The guide warns against raw SQL replacements that break serialized data and recommends taking a backup before any database-wide changes. It also notes common tools and pitfalls and stresses clearing CDN/host/plugin/browser caches to confirm fixes.
wp-admin inaccessible: 6-step diagnostic protocol
This technical tutorial (published July 18, 2026 by WP Admin Lab on DEV) presents a six-step diagnostic protocol to troubleshoot inaccessible WordPress wp-admin pages. It categorizes three symptom families — 403 Forbidden, login redirect loop, and white screen of death — and gives concrete fixes: clear cookies and test in private mode, deactivate plugins via WP-CLI or by renaming the plugins folder, regenerate or repair .htaccess rules, and purge caches (browser, plugin, server, OPcache). The post includes exact commands (e.g., wp plugin deactivate --all, mv wp-content/plugins wp-content/plugins.off) and links to more detailed guides on wpadminlab.com.
Misleading Healthy Metrics Masked AWS Ingress Outage
During a live migration cutover, a production service experienced a 14-hour outage despite monitoring dashboards showing all health signals as green. The root cause was an ingress design using a public NLB (with fixed Elastic IPs) forwarding to an internal ALB; the NLB’s automated HTTP health probes could not inject a Host header, so hardened ALB listener rules returned HTTP 400 and new ALB nodes failed health checks and never entered service. CloudWatch 1-minute Average rollups smoothed sub-minute target churn, hiding the problem. The team fixed it by adding a priority ALB listener rule that matches the NLB source IPs and returns a 200 fixed response for probes (implemented via Terraform). An eight-month postmortem revealed the upstream static-IP requirement was obsolete, exposing an organizational assumption that drove unnecessary complexity. Lessons include separating probe paths from app security, alerting on sub-minute churn, and using synthetic end-to-end checks.
Track Real-Time Market Signals & Shifts
Set up custom watchlists to receive automated, evidence-grounded executive digests whenever material signals or shifts occur across your tracked landscape.
