I should specify that I’m using Windows Server 2016, not Linux. Your issue sounded so similar to mine that I suppose I overlooked that, haha.
Rats. Still no dice for me.
Are you using a cert published by your domain controller itself? We purchased a third-party cert (GoDaddy, if that’s important).
I’ve been having the same issue, but so far haven’t made any progress. Any luck yourself?