Hello @Mark Green ,
Thanks for reaching out.
Looking at above error, it seems that Azure AD connect could not establish SSL/TLS connection to Azure AD with new certificate which was created during installation.
Kindly check if the DigiCert Global Root G2 and DigiCert Global Root CA certificates have been installed on your AAD Connect server, If already present then please make sure the thumbprints match as shown below:
Here are list of Azure TLS certificate changes make sure these certificates are trusted by your AD connect server.
In additional to that, you can also collect network trace to see if there any TLS handshake issue. Hope this helps.
------
Please "Accept the answer" if the information helped you. This will help us and others in the community as well.