Webrtc ...live certificate problem ..Asterisk 14.2

I have purchased certificates for my domain to use for Webrtc and the error says can’t apply the certificates for SRTP calls. The certificates work well with web-server (apache2)
and other webrtc servers.

Asterisk running on Debian 8.5


Sip.conf
;sip.conf
[general]
udpbindaddr = 0.0.0.0:5060
realm = 192.168.0.107 ; replace with your Server’s Public IP Address
transport = udp,ws,wss
;externaddr = 192.168.0.107 ; replace with your Server’s Public IP Address
websocket_enabled = true
nat=force_rport,comedia
videosupport=yes

[1000]
host=dynamic
secret=12345
context=from-internal
type=friend
encryption=yes
avpf=yes
;force_avp=yes
icesupport=yes
directmedia=no
disallow=all
dial = SIP/1000
disallow=all
allow=ulaw
allow=alaw
allow=speex
allow=gsm
videosupport=yes
allow=h263
allow=h264
allow=vp8
dtlsenable=yes
dtlsverify=fingerprint
dtlscertfile=/etc/asterisk/keys/mydomain.co.uk.pem
dtlscafile=/etc/asterisk/keys/mydomain.co.uk.key.chained.pem
;dtlscafile=/etc/asterisk/keys/gd_bundle-g2-g1.pem
;dtlscertfile=/etc/asterisk/keys/mydomain.pem
;dtlscafile=/etc/asterisk/keys/ca.crt
dtlssetup=actpass
nat=force_rport,comedia

[2000]
host=dynamic
secret=12345
context=from-internal
type=friend
encryption=yes
avpf=yes
;force_avp=yes
icesupport=yes
directmedia=no
disallow=all
dial = SIP/2000
disallow=all
allow=ulaw
allow=alaw
allow=speex
allow=gsm
videosupport=yes
allow=h263
allow=h264
allow=vp8
dtlsenable=yes
dtlsverify=fingerprint
dtlscertfile=/etc/asterisk/keys/mydomain.co.uk.pem
;dtlscafile=/etc/asterisk/keys/gd_bundle-g2-g1.pem
dtlscafile=/etc/asterisk/keys/mydomain.co.uk.key.chained.pem
;dtlscertfile=/etc/asterisk/keys/asterisk.crt
;dtlscafile=/etc/asterisk/keys/ca.crt
dtlssetup=actpass
nat=force_rport,comedia


;rtp.conf
[general]
rtpstart=10000
rtpend=20000
icesupport=yes
stunaddr:19302=stun.l.google.com


;extensions.conf
[from-internal]
exten => 1000,1,Answer()
same => n,Dial(SIP/6001)
same => n,Hangup()

exten => 2000,1,Answer()
same => n,Dial(SIP/6001)
same => n,Hangup()

; For Testing Audio
exten => 1111,1,Answer()
same => n,Playback(demo-thanks)
same => n,Hangup()
; For testing SIP to SIP calling
exten => _X.,1,Dial(SIP/${EXTEN})
exten => _X.,n,Hangup()


http.conf

[general]
enabled=yes
bindaddr=0.0.0.0
bindport=8088
tlsenable=yes
tlsbindaddr=0.0.0.0:7443
tlscertfile=/etc/asterisk/keys/mydomain.co.uk.pem
tlsprivatekey=/etc/asterisk/keys/mydomain.co.uk.key


Asterisk status and Error
Connected to Asterisk 14.2.1 currently running on osboxes (pid = 2868)
osboxes*CLI> http show status
HTTP Server Status:
Prefix:
Server: Asterisk/14.2.1
Server Enabled and Bound to 0.0.0.0:8088

HTTPS Server Enabled and Bound to 0.0.0.0:7443

Enabled URI’s:
/httpstatus => Asterisk HTTP General Status
/phoneprov/… => Asterisk HTTP Phone Provisioning Tool
/static/… => Asterisk HTTP Static Delivery
/ari/… => Asterisk RESTful API
/ws => Asterisk HTTP WebSocket

Enabled Redirects:
None.
[Jan 24 12:53:32] NOTICE[2907]: res_stun_monitor.c:151 stun_monitor_request: Old external address/port 0.0.0.0:0 now seen as 89.197.91.230:22175.
== WebSocket connection from ‘192.168.0.128:59798’ for protocol ‘sip’ accepted using version ‘13’
– Registered SIP ‘2000’ at 192.168.0.128:59798
> Saved useragent “IM-client/OMA1.0 sipML5-v1.2015.03.18” for peer 2000
== WebSocket connection from ‘192.168.0.102:57958’ for protocol ‘sip’ accepted using version ‘13’
– Registered SIP ‘1000’ at 192.168.0.102:57958
> Saved useragent “IM-client/OMA1.0 sipML5-v1.2015.03.18” for peer 1000
== DTLS ECDH initialized (secp256r1), faster PFS enabled
[Jan 24 12:54:31] ERROR[2959][C-00000001]: res_rtp_asterisk.c:1452 ast_rtp_dtls_set_configuration: Specified private key file ‘/etc/asterisk/keys/mydomain.co.uk.pem’ for RTP instance ‘0x7f6c84002268’ could not be used
[Jan 24 12:54:31] ERROR[2959][C-00000001]: chan_sip.c:5946 dialog_initialize_dtls_srtp: Attempted to set an invalid DTLS-SRTP configuration on RTP instance ‘0x7f6c84002268’
[Jan 24 12:54:31] NOTICE[2959][C-00000001]: chan_sip.c:26213 handle_request_invite: Failed to authenticate device "2000"sip:2000@mydomain.co.uk;tag=NSWI9SDG9KwdQwUPCbEf
== DTLS ECDH initialized (secp256r1), faster PFS enabled
[Jan 24 12:54:40] ERROR[2962][C-00000002]: res_rtp_asterisk.c:1452 ast_rtp_dtls_set_configuration: Specified private key file ‘/etc/asterisk/keys/mydomain.co.uk.pem’ for RTP instance ‘0x7f6c880109b8’ could not be used
[Jan 24 12:54:40] ERROR[2962][C-00000002]: chan_sip.c:5946 dialog_initialize_dtls_srtp: Attempted to set an invalid DTLS-SRTP configuration on RTP instance ‘0x7f6c880109b8’
[Jan 24 12:54:40] NOTICE[2962][C-00000002]: chan_sip.c:26213 handle_request_invite: Failed to authenticate device "1000"sip:1000@mydomain.co.uk;tag=gzGFM6XXL7WWS8WHOQXx