- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-02-2026 01:23 AM
Hi All,
I recently ran into this problem and resolved it so thought I would share it here.
I am currently running a POC for PAA and had installed it with no issues on a MAC, when I can to install on Windows11 I got the above error, after digging into the CLI with epm status command the issue seemed to be an SSL handshake error caused, it seems, by the presence of a self-signed cert in the chain.
The problem actually was that the PAA requires two Go-Daddy certs to be present in the endpoints trusted root cert store for the enrolment to be successful these are,
Go Daddy Root Certificate Authority - G2 (root CA) and the Go Daddy Secure Certificate Authority - G2 (intermediate CA) which for some reason were not present ion my version of Windows11 home edition.
This is from this page in the techdocs CA Certificate Requirements for Endpoint Manager Enrollment once installed all worked exactly as it should.
My main reason for posting this is the error message is completely misleading and had me wasting hours looking through firewall logs and windows firewall logs to see why the endpoint could not reach the server, so I thought I would try and save others the time.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

