Since your external endpoint is of the domain internalsites.local I doubt you have a valid cert there. Use a valid domain and valid cert for your external endpoint, or use an internal CA to sign your certificates and distribute your internal CA to all components.