Work through this list from top to bottom. Most sites are fixed by step 1 or 2.
1. The site still opens on http
SSL is installed but visitors type yourdomain.pk and land on http://. Add a redirect. Use the HTTPS redirect generator and paste the rules into .htaccess or your Nginx config.
2. Mixed content
The page is https but one image, script, font or iframe loads over http. Chrome hides the padlock. Scan the page with Why No Padlock. On WordPress, change the site URL to https and replace http links in the database.
3. Missing CA bundle
Works on your laptop, fails on phones. Run the SSL checker. If it reports an incomplete chain, install the bundle. See what is a CA bundle.
4. Name mismatch
The certificate was issued for example.pk but you opened shop.example.pk, or the other way round. Either buy a wildcard or reissue with the right name. Reissues are free with SSLWalay.
5. Expired certificate
Certificates last a maximum of 398 days. If yours expired, renew it. If you bought a 2 or 3 year plan, the yearly reissue is free, just request it.
6. Wrong date on the computer
If the visitor's phone or PC clock is wrong, every https site shows an error. Ask them to check the date.
7. Old server software
Servers that only support TLS 1.0 or SHA-1 are rejected by modern browsers. Ask your host to enable TLS 1.2 and 1.3. HostingWalay servers already do.
Written by the SSLWalay team, Karachi. Last reviewed October 2026. Prices quoted are SSLWalay PKR prices at the time of review and can change; the product pages always show the live price.