When moving from one ADFS server to another I imported a full certificate chain and private key into Machine certs on the new Windows 2016.
The certificate displayed fine and chain is complete.
However viewing the certificate properties via ADFS the certificate information gives the error “Windows does not have enough information to verify the certificate”
Move the intermediate certificate to the Intermediate Certificate Authorities > Certificates store
It seems stupidly obvious in retrospect but Windows itself could view the cert fine, and the import was done via Machine Certificates so you’d think it would put things in the right place.