I have tried some tools to diagnose my SSL certificate installation.
Some related to correct certificate, and more on certificate chain issues.
SSL Certificates are trusted from its parent, or issued by its high lever certificate. It looks like a chain, one connect to other one and gos to the CA root.
Say, I have a SSL certificate for domain seo.g2soft.net.
- Certificate of seo.g2osft.net is issued by Comodo RSA domain Validation Secure Server CA
- Comodo RSA domain Validation Secure Server CA is issued by Comodo RSA certification Authority
- Comodo Rsa Certification Authority is issued by AddTrust External CA Root.
The last one, AddTrust External CA Root is one of root CAs. It is issued by itself. Root Certificates was installed in every computer or browsers already. It is trusted and in the trust store.
The above is a corrected installation.
Geocerts SSL Checker