I'm running iManager 3.1.3 and cannot edit dynamic groups. The error is get is

Unable to obtain a valid LDAP context.

Creating secure SSL LDAP context failed:
simple bind failed: x.x.x.x:636
I have tried importing the CA cert into the java cacerts file, deleting /var/opt/novell/tomcat8/webapps/nps/WEB-INF/iMKS, and the IP addresses are already in the ldap server ldapInterfaces attribute.

Anyone have other options to try get this working? It works fine with my old iManager server running