What certificates did you change? Do your Windows 10 clients have "Validate Server Certificate" enabled? Do they also have specific CA's and a specific server specified on the client that they would connect to?
Mobile devices are much more accepting and allow the end-user to pretty much accept any mismatch or error, while Windows 10 enforces administrator policies. The biggest problem with Windows 10 and changing a server certificate is that the client devices need to have that server certificate and the CA that issued the server certificate in their trusted store prior to the certificates being put onto the clearpass server. You did not give us specific information about what certificates you changed. You should open a case with Aruba TAC for more specific help since this could effectively cause an outage in your network.