Hello, I attempted to migrate anyconnect from ASA to FTD. We currently authenticate users using certificates only. The certs are issue to domain machine via our internal PKI. I exported the pkcs for the public cert and enrolled in FMC and that worked. I also installed the internal root CA cert in FMC under trusted CA's. When I go to connect it's giving an error with invalid cert found. What am I missing here. Does the FTD need a cert signed by my internal CA?