The certificate is real. It's signed by a genuine CA, it's nowhere near expiry, and the chain is complete. And the browser still slams the door:

Your connection is not private

NET::ERR_CERT_COMMON_NAME_INVALID

Enter fullscreen mode

Exit fullscreen mode