Out of the box it comes with a self-signed SSL cert (for reddit.local) which will always generate a security warning. Maybe that's what you mean by broken.

I recommend you get a free cert from Let's Encrypt / certbot, and use the DNS method to verify you control your domain. It's 5x easier than using the 'http' verification or whatever the other one is called.

Then you just need to update your nginx file accordingly and change the domain name in multiple Reddit configs if you haven't already.