Cannot configure identity source due to Failed to probe provider connectivity [URI: ldaps://XXXXX:636 ]; tenantName [XXXXX.XXXX], userName [cn=XXXX,dc=ad,dc=XXXX,dc=XX] Caused by: Can't contact LDAP server.

vCenter Server 8.x
vCenter Server 7.x
This is an expected behaviour. A per KB article 316596 - Configuring a vCenter Single Sign-On Identity Source using LDAP with SSL (LDAPS):
"If updating or replacing the SSL certificate, the identity source must be removed and re-added."
In order to update or replace the existing LDAPS Certificates remove the existing Identity Source and re-add it using the new certificates.