So, I did get this working, kind of.
I went through the setup.log file and recreated every cert and updated the appropriate keystores.
However, the whole purpose of this server is for single sign on with comcast xfinityoncampus.com and now, with the new certs, I get a 500 error from comcast that single signon failed.
Does generating new keys make a new metadata file?