Container App custom domain managed certificate is not trusted - Intermediate certificate chain is incorrect

Steve Mandras 41 Reputation points
2025-04-09T16:50:17.2633333+00:00

We use site24x7 to monitor the health of a number of SSL certificates across our enterprise. As we migrate from dedicated nginx servers to container apps for these UIs, we use custom domains within the container app settings. site24x7 is resporting that the managed certificate we installed for a container app (which was successfully added and verified and secured and seems to work correctly) is not trusted. Furthermore, SSL labs is also showing "Incorrect order". See atached redacted screenshots for further info. Any ideas? Would hate to have to go down the path of BYO certificates. Any ideas?
SS 2025-04-09 at 10.43.52 AM

SS 2025-04-09 at 10.40.05 AM

SS 2025-04-09 at 10.35.10 AM

SS 2025-04-09 at 11.05.51 AM

SS 2025-04-09 at 10.47.48 AM

Azure Container Apps
Azure Container Apps
An Azure service that provides a general-purpose, serverless container platform.
691 questions
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.