Trusting self-signed certs for use with the SurePassID Authentication Server
If you are using self-signed certs then you will need the client systems to trust them. Here is a link to Microsoft's instructions for setting up a GPO to make it happen
How to make domain-joined systems trust a cert: Microsoft How To on Trusting Certs