It indicates that the certificate chain is incomplete
It looks like cert-manager created that cert instead of Let’s Encrypt.
What version of cert-manger are you running?
when I use latest version,install rancher-server will find one fault,It reports an k8s apiversion error.so I use v0.10.0 cert-manager and v2.3.3 helm .