In iManager, if you create a CSR in iManager, sign it in the CA (Using an AD CA in this case), you need to Import the Main CA, the intermediate CA, and then finally the signed public key from the CA. In that order.
(iManager, Certificate Server section…