If i generate self-signed certificate, it's working. But ith domain certificate doesn't work.
My certificate info:
Certificate identifier: SSL-CRT
Certificate version: 3
Serial number: 1d0000001034c19597fce3d127000000000010
Issuer:
Common name: suhodolskoe-CA, Domain component: ru, Domain component: suhodolskoe
Subject:
Organization: Rehousegroup, Country: RU, Common name: r28.suhodolskoe.ru
Subject string:
C=RU, O=Rehousegroup, CN=r28.suhodolskoe.ru
Alternate subject: email empty, r28.suhodolskoe.ru, 172.28.0.254, ipv6 empty
Validity:
Not before: 04-11-2018 10:16 UTC
Not after: 04-10-2020 10:16 UTC
Public key algorithm: rsaEncryption(2048 bits)
30:82:01:0a:02:82:01:01:00:ab:1d:be:86:7b:5d:77:e4:00:74:9d
f7:1c:fd:52:cf:c2:a8:c2:aa:d6:0b:8a:e1:dc:70:d7:01:09:45:ba
75:d8:f3:46:6a:a7:01:24:58:cf:04:fd:65:93:f9:c0:fc:01:bc:04
67:40:19:43:9e:82:dc:65:14:84:58:87:79:3c:f0:5c:ca:77:69:5f
c4:21:09:e5:77:ab:d6:62:7c:e3:91:cf:7f:22:15:18:ad:9f:59:01
5e:5f:4d:a5:18:03:39:41:30:64:2b:8e:10:ba:c7:bb:1a:65:39:63
fc:49:08:25:97:11:0b:b6:84:10:e9:c0:1a:f0:30:fe:a7:1b:c4:98
67:f7:7d:cb:c3:23:17:9f:cb:f7:eb:eb:a6:ce:24:49:6e:57:8d:89
e5:d9:28:e3:ee:f9:0d:d0:8d:d0:5b:7b:90:03:88:ae:a7:0b:36:10
fd:17:fb:bb:2e:94:d2:e9:40:b4:c4:23:8f:16:d8:d6:28:f1:de:3c
11:c8:71:1a:fd:82:00:5b:e1:40:78:b1:1b:af:29:2a:73:58:41:8d
c0:ca:43:b7:71:c5:22:80:91:39:7e:90:e8:53:c8:84:b6:ed:f6:7f
d6:23:49:eb:3f:30:7b:d5:85:22:d6:ec:ad:09:33:a2:2f:85:6e:aa
ab:64:d3:3f:09:02:03:01:00:01
Signature algorithm: sha256WithRSAEncryption
Distribution CRL:
ldap:///CN=suhodolskoe-CA,CN=DC1,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=suhodolskoe,DC=ru?certificateRevocationList?base?objectClass=cRLDistributionPoint
Use for key: Key encipherment, Digital signature, TLS Web Server Authentication, 1.3.6.1.5.5.7.3.1