Control: close -1
Staring at "openssl s_client -connect wiki.x2go.org:443", https://www.ssllabs.com/ssltest/analyze.html?d=wiki.x2go.org and https://letsencrypt.org/certificates/ suggests to a layman that the server certificate is signed by the R3 certificate, but the X3 certificate is sent along?
Thanks for reporting and "debugging" this.
Yeah, we were concatenating the old X3 cross-signed cert.
Switched to R3 and regenerated the affected certificates. Should be fixed now.
Mihai