Looks like you have SSL configuration issuer. Check that you have necessary public and private keys in you keystores on both servers and that a public key for your CA is added to your trusted JKS.