# HTTPS issue when using letsecrypt

**URL:** <https://community.letsencrypt.org/t/https-issue-when-using-letsecrypt/167021>\
**Category:** Help\
**Created:** [December 5, 2021, 8:17pm UTC](https://community.letsencrypt.org/t/https-issue-when-using-letsecrypt/167021 "2021-12-05T20:17:29Z")\
**Posts on this page:** 1\
**Showing post:** 2

<div class="post-metadata">

**Author:** ![MikeMcQ](https://sea3.discourse-cdn.com/letsencrypt/user_avatar/community.letsencrypt.org/mikemcq/32/52772_2.png) [@MikeMcQ](https://community.letsencrypt.org/u/MikeMcQ)\
**Post date:** [December 5, 2021, 9:57pm UTC](https://community.letsencrypt.org/t/https-issue-when-using-letsecrypt/167021/2 "2021-12-05T21:57:53Z")

</div>

> [@chainagents](#):
>
> Please help me understand what to do.

You will like this answer - do nothing 🙂

There is nothing wrong with your cert chain. whynopadlock gives a false alarm due to expired `DST Root CA X3` at the end of the chain. This is not a problem. This website also has a cert chain ending in the DST cert. We call this the "long chain" and is used for best compatibility with older Android clients.

See other sites that test cert chains better - like [SSL Labs](https://www.ssllabs.com/ssltest/analyze.html?d=armenia-guide.com&hideResults=on)

There are some other issues about your site pointed out by both of these sites you may wish to address but the cert chain is not one of them.

For some background on this issue see:

> [@Long (default) and Short (alternate) Certificate Chains Explained](https://community.letsencrypt.org/t/long-default-and-short-alternate-certificate-chains-explained/162526):
>
> I…

---

_[View the full topic](https://community.letsencrypt.org/t/https-issue-when-using-letsecrypt/167021)._
