Let encrypt update for dst root ca x3

By default, Let's Encrypt has an "extra" cert in the intermediate chain (we call it the "long chain") which was signed by "DST Root CA X3". This provides better compatibility for a wide range of older Android devices. You can also use the "short chain" which does not have this extra cert in it.

This topic helps guide you to choosing which is best